Latest news
ChainDrop Turns Stolen npm Tokens Into an Automated Package-Infection Engine - cyberpress.orgcyberpress.org · Fri, 07 Aug 2026 08:07:35 GMTVS Code Agent Plugins Go Cross-Client with New Open Standard - Visual Studio MagazineVisual Studio Magazine · Fri, 07 Aug 2026 00:16:50 GMTkeyv npm Supply Chain Attack Hides Malware in AI Agent Files Scanners Never Read - Tech TimesTech Times · Wed, 05 Aug 2026 12:49:36 GMTOpen VSX Removes 77 Malicious Evil Twin Extensions Exfiltrating Developer Data - The Hacker NewsThe Hacker News · Wed, 05 Aug 2026 09:23:00 GMTnpm Packages with 2 Billion Monthly Downloads Mass-Contaminated in Self-Propagating Malware Attack Stealing Credentials - finance.biggo.comfinance.biggo.com · Wed, 05 Aug 2026 03:36:00 GMTnpm Attack Hits Keyv and Cacheable Packages, Security Alert - SQ MagazineSQ Magazine · Tue, 04 Aug 2026 18:51:38 GMTKeyv-Linked npm Worm Poisons Hundreds of Packages, Plants Claude Code and VS Code Hooks - The Hacker NewsThe Hacker News · Tue, 04 Aug 2026 13:30:00 GMTInside the keyv npm Supply Chain Compromise - SnykSnyk · Tue, 04 Aug 2026 13:04:50 GMT