npm Updates Supply Chain Security Measures Key Considerations for Users
In December 2025, npm implemented a significant authentication overhaul following the Sha1-Hulud incident to combat supply-chain attacks. Although this reform ...
In December 2025, npm implemented a significant authentication overhaul following the Sha1-Hulud incident to combat supply-chain attacks. Although this reform ...
Cybersecurity researchers have revealed a "sustained and targeted" spear-phishing campaign involving the publication of 27 malicious packages on the npm ...
A new set of four malicious packages has been identified in the npm package registry, designed to steal cryptocurrency wallet ...
Cybersecurity researchers have identified a malicious npm package named nodejs-smtp, which mimics the legitimate library nodemailer, to stealthily inject harmful ...
Cybersecurity researchers have reported a supply chain attack targeting popular npm packages through a phishing campaign aimed at stealing maintainers' ...
Cybersecurity researchers have identified three malicious npm packages targeting the macOS version of the AI code editor Cursor, which have ...
Copyright © 2026 News Wave
News Wave is not responsible for the content of external sites.