News
"debug" package attack failed; malicious update detected early, minimal impact. Developers urged to check their installations ...
On September 8, 2025, a single phishing email triggered one of npm’s most damaging supply chain attacks, compromising 18 ...
According to ReversingLabs' 2025 Software Supply Chain Security Report, 14 of the 23 crypto-related malicious campaigns in ...
Ledger CTO cautions that there is an NPM supply chain attack on the rampage. He encouraged users to cease risky on-chain ...
A significant supply chain attack hit NPM after 15 popular Gluestack packages with over 950,000 weekly downloads were compromised to include malicious code that acts as a remote access trojan (RAT).
In a supply chain attack, attackers have injected malware into NPM packages with over 2.6 billion weekly downloads after ...
Results that may be inaccessible to you are currently showing.
Hide inaccessible results