News

NPM developer qix's account compromise potentially puts user funds at risk by compromising library dependencies used by ...
The credential stealer harvested username, password, and 2FA codes before sending them to a remote host. With full access, ...
An attack targeting the Node.js ecosystem was just identified — but not before it compromised 18 npm packages that account ...
Crypto intelligence platform Security Alliance released a report on Sep. 8 to reveal that Ethereum and Solana wallets have ...
Threat actors injected malicious code into multiple popular NPM packages after their maintainers fell for a well-crafted ...
A cryptocurrency thief got into the npm account of a hard-working developer via spearphishing. node.js packages with billions ...
Charles Guillemet, CTO at the crypto wallet platform Ledger, warned the crypto community to be cautious while executing ...
Over the holidays, the npm package registry was flooded with more than 3,000 packages, including one called "everything," and others named a variation of the word. These 3,000+ packages make it ...
A monthly overview of things you need to know as an architect or aspiring architect. Unlock the full InfoQ experience by logging in! Stay updated with your favorite authors and topics, engage with ...
Relatively easy to learn and highly scalable, Node.js has become a very popular platform for developing apps. Now npm, a package manager that installs, publishes and manages node programs, has raised ...