New IronWorm malware hits 36 packages in npm supply-chain attack
(bleepingcomputer.com)
1.
2.
3.
Dozens of Red Hat packages backdoored through its official NPM channel
(arstechnica.com)
4.
Red Hat npm packages compromised to steal developer credentials
(bleepingcomputer.com)
5.
GitHub introduces staged publishing and new install-time controls for NPM
(news.ycombinator.com)
6.
7.
SecurityScorecard Snags Driftnet to Level Up Threat Intelligence
(darkreading.com)
8.
Postmortem: TanStack NPM supply-chain compromise
(news.ycombinator.com)
9.
Postmortem: TanStack npm supply-chain compromise
(news.ycombinator.com)
10.
11.
DAEMON Tools trojanized in supply-chain attack to deploy backdoor
(bleepingcomputer.com)
12.
13.
14.
16.
AI has suddenly become more useful to open-source developers
(news.ycombinator.com)
17.
Opinion | Anthropic and Hegseth Need a Truce
(feeds.content.dowjones.io)
18.
19.
21.
Trivy supply-chain attack spreads to Docker, GitHub repos
(bleepingcomputer.com)
22.
AppsFlyer Web SDK hijacked to spread crypto-stealing JavaScript code
(bleepingcomputer.com)
23.
24.
25.
Anthropic’s Pentagon Battle Matters to Every Business
(feeds.content.dowjones.io)
26.
27.
Pentagon Formally Labels Anthropic Supply-Chain Risk
(news.ycombinator.com)
Today's top topics:
apple
google
data centers
meta
android authority
amazon
android
samsung
microsoft
spacex