Read news on npm with our app.
Read more in the app
Claude Code source code accidentally leaked in NPM package
Claude Code full source code leaked on NPM
Claude Code's source code has been leaked via a map file in their NPM registry
Axios compromised on NPM – Malicious versions drop remote access trojan
Qite.js – Frontend framework for people who hate React and love HTML
GlassWorm malware hits 400+ code repos on GitHub, npm, VSCode, OpenVSX
NPM install is stealing your passwords – I built a tool to catch it
NPMX – a fast, modern browser for the NPM registry
ChatGPT Containers can now run bash, pip/npm install packages and download files
Hackers can bypass npm’s Shai-Hulud defenses via Git dependencies
NPM to implement staged publishing after turbulent shift off classic tokens
Lotusbail npm package found to be harvesting WhatsApp messages and contacts
GitLab discovers widespread NPM supply chain attack
SHA1-Hulud the Second Comming – Postman, Zapier, PostHog All Compromised via NPM
NPM flooded with malicious packages downloaded more than 86,000 times
Cleaning house in Nx monorepo, how i removed unused deps safely
NPM package caught using QR Code to fetch cookie-stealing malware
Show HN: Tips to stay safe from NPM supply chain attacks
Oh no, not again a meditation on NPM supply chain attacks
Which NPM package has the largest version number?