Get the latest tech news

Active NPM supply chain attack: Tinycolor and 40 Packages Compromised


None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of packages

packages

Photo of Tinycolor

Tinycolor

Related news:

News photo

More packages poisoned in npm attack, but would-be crypto thieves left pocket change

News photo

Survey Finds More Python Developers Like PostgreSQL, AI Coding Agents - and Rust for Packages

News photo

This new Arch Linux tool takes the hassle out of keeping packages up to date - here's how