News

In a supply chain attack, attackers injected malware into NPM packages with over 2.6 billion weekly downloads after ...
Browser extensions boost productivity—but also open the door to hidden risks like data exfiltration and AitM attacks. Keep ...
Ready to go beyond console.log? In just 100 seconds, discover powerful JavaScript console features that can boost your debugging game—like console.table, console.group, console.time, and more. Whether ...
"debug" package attack failed; malicious update detected early, minimal impact. Developers urged to check their installations ...
Malware hidden in widely used libraries like chalk and debug hijacked crypto transactions via browser APIs, exposing deep ...
A JavaScript supply chain attack has delivered a crypto-clipper via 18 npm packages; Ledger’s CTO has warned ...
Billions (No, that's not a typo, Billions with a capital B) of files were potentially compromised. If you thought Node Package Manager (npm), the Billions of downloads were potentially compromised ...
Aikido Security Ltd. today disclosed what is being described as the largest npm supply chain compromise to date, after ...
An attack targeting the Node.js ecosystem was just identified — but not before it compromised 18 npm packages that account ...
On September 8, 2025, a single phishing email triggered one of npm’s most damaging supply chain attacks, compromising 18 ...
Hackers launched the largest NPM crypto attack in history and compromised 18 JavaScript packages with billions of downloads.
A new cyberattack is silently targeting crypto from users during transactions amid an incident that security researchers ...