Developers Hit as Fake WhatsApp API Package Emerges on npm

By Abdul Wasay ⏐ 1 month ago ⏐ Newspaper Icon 3 min read

Security researchers discovered a fake WhatsApp API package on npm that steals developer credentials, raising fresh alarms about the growing risks facing the open source…

Massive npm Supply-Chain Attack: Shai-Hulud Worm Infects Over 180 Packages

By Abdul Wasay ⏐ 4 months ago ⏐ Newspaper Icon 3 min read

A new, alarming software supply-chain attack dubbed ‘Shai-Hulud’ has been uncovered targeting the JavaScript npm ecosystem. Researchers from several security firms, including Palo Alto Networks…

Critical npm Supply Chain Attack Exposes Global Firms

By Sabica Tahira ⏐ 5 months ago ⏐ Newspaper Icon 2 min read

A critical supply chain compromise has been disclosed in the npm JavaScript ecosystem, exposing enterprises worldwide to risks of cryptocurrency theft, credential leakage, and unauthorized…

Get Alerts