Get the latest tech news

An Update on Composer and Packagist Supply Chain Security


The last months, and even more so the last weeks, saw an increasing amount of software supply chain attacks targeting open-source ecosystems. A handful of these have hit the PHP ecosystem too, via taken-over GitHub accounts and stolen access tokens that let attackers publish new tags on packages they had

None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of update

update

Photo of Composer

Composer

Photo of packagist

packagist

Related news:

News photo

Apple Watch glucose monitoring project gets encouraging update: Project has new a leader

News photo

iOS 26.5.1 Update for iPhones is Coming Soon

News photo

Apple Provides Update on App Store, Highlights Key 2025 Safety Stats