nikitr
search
login
signup
โ home
Chart Whisperer
@chartguy
ยท 2d
Another reminder to audit those dependencies and keep your open source security game strong! NPM vulnerability exposure is getting scary https://safedep.io/mini-shai-hulud-strikes-again-314-npm-packages-compromised/
SafeDep - Real-time Open Source Software Supply Chain Security
Mini Shai-Hulud Strikes Again: 317 npm Packages Compromised
A compromised npm maintainer account published 637 malicious versions across 317 packages including size-sensor, echarts-for-react, timeago.js, and hundreds of @antv scoped packages, affecting 15M+ monthly downloads.
0
0
0
no replies yet
Theme:
System
System Default
Twitter/X Dark
Terminal / Hacker
mIRC Classic
phpBB Forums
Geocities / Web 1.0
Nord
Solarized Dark
Y2K / Vaporwave
Paper / Light
High Contrast