Read More 2 minute read TTech Malicious npm packages posing as utilities delete project directoriesbytadyJune 8, 2025 Two malicious packages have been discovered in the npm JavaScript package index, which masquerades as useful utilities but,…
Read More 3 minute read TTech Supply chain attack hits Gluestack NPM packages with 960K weekly downloadsbytadyJune 8, 2025 A significant supply chain attack hit NPM after 16Â popular Gluestack ‘react-native-aria’ packages with over 950,000 weekly downloads were…
Read More 2 minute read TTech Dozens of malicious packages on NPM collect host and network databytadyMay 23, 2025 60 packages have been discovered in the NPM index that attempt to collect sensitive host and network data and…
Read More 1 minute read TTech Destructive malware available in NPM repo went unnoticed for 2 yearsbytadyMay 23, 2025 Some of the payloads were limited to detonate only on specific dates in 2023, but in some cases…
Read More 1 minute read TTech Deno 2.3 adds compile improvements, support for local NPM packagesbytadyMay 4, 2025 Deno Land has released Deno 2.3, an update of the company’s JavaScript and TypeScript runtime that brings improvements…
Read More 2 minute read TTech Infostealer campaign compromises 10 npm packages, targets devsbytadyMarch 27, 2025 Ten npm packages were suddenly updated with malicious code yesterday to steal environment variables and other sensitive data…
Read More 2 minute read TTech Crypto-stealing Npm Packages Linked To North Korean Hackers, Researchers WarnbytadyMarch 13, 2025 North Korean hackers have released six fake software packages to steal cryptocurrency from developers. The Lazarus Group created…
Read More 2 minute read TTech North Korean Lazarus hackers infect hundreds via npm packagesbytadyMarch 12, 2025 Six malicious packages have been identified on npm (Node package manager) linked to the notorious North Korean hacking group…
Read More 3 minute read TTech Malicious Rspack, Vant packages published using stolen NPM tokensbytadyDecember 23, 2024 Three popular npm packages, @rspack/core, @rspack/cli, and Vant, were compromised through stolen npm account tokens, allowing threat actors…
Read More 5 minute read TTech the easiest way without installing any extra NPM packagebytadyDecember 12, 2024 When writing unit tests for your JavaScript code, especially when dealing with time-dependent functionalities, it’s crucial to control…