News
Deno Land recently released Deno 2.3, an update of the Deno runtime that adds support for local NPM packages. Deno 2.3 also ...
NPM packages with more than a million weekly downloads were compromised to deliver a RAT The attack could turn into a major ...
A significant supply chain attack hit NPM after 15 popular Gluestack packages with over 950,000 weekly downloads were ...
Two malicious NPM packages contain code that would delete production systems when triggered with the right credentials.
Two malicious packages have been discovered in the npm JavaScript package index, which masquerades as useful utilities but, ...
The packages carry backdoors that first collect environment information and then delete entire application directories.
Security researchers at Veracode stumbled upon two seemingly harmless software packages on the npm repository.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results