News

"debug" package attack failed; malicious update detected early, minimal impact. Developers urged to check their installations ...
Ready to go beyond console.log? In just 100 seconds, discover powerful JavaScript console features that can boost your debugging game—like console.table, console.group, console.time, and more. Whether ...
A JavaScript supply chain attack has delivered a crypto-clipper via 18 npm packages; Ledger’s CTO has warned ...
Aikido Security Ltd. today disclosed what is being described as the largest npm supply chain compromise to date, after ...
In a supply chain attack, attackers injected malware into NPM packages with over 2.6 billion weekly downloads after ...
A major supply chain attack on the NPM repository briefly threatened crypto users worldwide. Malicious code was pushed into ...
Binance reassures customers after a massive NPM supply chain attack injects malicious code into 18 popular JavaScript ...
SwissBorg has reported SOL losses after a partner breach; API provider Kiln has been compromised, with the treasury covering ...
Security researchers have identified at least 187 npm packages compromised in an ongoing supply chain attack. The coordinated ...
On September 8, 2025, a single phishing email triggered one of npm’s most damaging supply chain attacks, compromising 18 ...
During the two-hour window on Monday in which hijacked npm versions were available for download, malware-laced packages ...