News

In a supply chain attack, attackers injected malware into NPM packages with over 2.6 billion weekly downloads after ...
JavaScript’s low bar to entry has resulted in one of the richest programming language ecosystems in the world. This month’s ...
"debug" package attack failed; malicious update detected early, minimal impact. Developers urged to check their installations ...
A large-scale supply chain attack on the JavaScript ecosystem has prompted an urgent warning from Ledger’s chief technology ...
Malware hidden in widely used libraries like chalk and debug hijacked crypto transactions via browser APIs, exposing deep ...
On September 8, 2025, a single phishing email triggered one of npm’s most damaging supply chain attacks, compromising 18 ...
Hackers launched the largest NPM crypto attack in history and compromised 18 JavaScript packages with billions of downloads.
A new cyberattack is silently targeting crypto from users during transactions amid an incident that security researchers ...
A new digital supply chain attack has targeted popular open-source npm packages with at least two billion downloads per week. On Sept. 8, Josh Junon, a package maintainer whose account was at the ...
Binance reassures customers after a massive NPM supply chain attack injects malicious code into 18 popular JavaScript ...