News

Qix is an open source maintainer account that was compromised by a phishing attack. This allowed attackers to infect 18 popular npm packages with malicious code. Together, these packages are ...
Note: If you’re using MetaMask, Phantom, Trust Wallet, or any crypto app, the advice is simple, take your time, check every ...
NPM developer qix's account compromise potentially puts user funds at risk by compromising library dependencies used by ...
According to Guillemet, the malicious code — already pushed into packages with over 1 billion downloads — is designed to ...
Earlier this week, the Npm package manager suffered what may be its worst security incident to date. Unknown cybercriminals ...
The "biggest supply chain attack" in the history of npm took place recently, affecting almost two dozen packages.