Malicious npm packages evade install-script defenses at runtime
(bleepingcomputer.com)
1.
2.
North Korean WaterPlum hackers infected 30,000 devices worldwide
(bleepingcomputer.com)
3.
Oracle’s 6am layoff emails hit staff amid new wave of cuts
(news.ycombinator.com)
4.
Oracle's Cold 6AM Layoff Emails Hit Staff Amid New Wave of Cuts
(news.ycombinator.com)
5.
OpenAI’s rogue AI tried to hack another company in May
(theverge.com)
6.
Why Cheap Link Building Is the Most Expensive Marketing You Can Buy
(feeds.feedburner.com)
7.
Massive ChainDrop npm supply-chain attack infects hundreds of packages
(bleepingcomputer.com)
8.
GitHub, PyPI add time-based defenses against supply chain attacks
(bleepingcomputer.com)
9.
LLM Usage in Debian: Three Proposals
(news.ycombinator.com)
10.
AsyncAPI npm packages infected with credential-stealing malware
(bleepingcomputer.com)
11.
AsyncAPI npm packages infected with credential-stealing malware
(bleepingcomputer.com)
12.
13.
14.
Fake Paysafe, Skrill SDKs on NPM and PyPi steal credentials
(bleepingcomputer.com)
15.
Malicious PyPI packages give hackers control of Telegram bot servers
(bleepingcomputer.com)
16.
17.
Too many R packages: CRAN is inundated with submissions
(news.ycombinator.com)
18.
Microsoft links Mastra AI supply chain attack to North Korean hackers
(bleepingcomputer.com)
19.
21.
22.
Arch Linux Now Believes Malware Incident Under Control: More Than 1,500 Packages
(news.ycombinator.com)
23.
Over 400 Arch Linux packages compromised to push rootkit, infostealer
(bleepingcomputer.com)
24.
25.
AUR packages compromised with Infostealer and Rootkit
(news.ycombinator.com)
26.
AUR Packages Compromised with Infostealer and Rootkit
(news.ycombinator.com)
27.
28.
New Shai-Hulud attack trojanizes 19 science-focused PyPI packages
(bleepingcomputer.com)
29.
30.
Why roaming packages are an anachronism in the digital age
(androidauthority.com)
Today's top topics:
openai
anthropic
apple
ai safety
google
iphone 18 pro
artificial intelligence
ios 27
dario amodei
nvidia