The widely used Axios HTTP client library, a JavaScript component used by developers, was recently hacked to distribute ...
Hackers hijacked the npm account of the Axios package, a JavaScript HTTP client with 100M+ weekly downloads, to deliver ...
Google links Axios npm supply chain attack to UNC1069 after trojanized versions 1.14.1 and 0.30.4 spread WAVESHAPER.V2, ...
Howard University has rebuilt its hospital’s C-suite, six months after cleaning house of execs employed by its former ...
Critical digital infrastructure is increasingly maintained by under‑resourced individuals, yet exploits have economic and ...
Across the country, conversations about school safety often focus on policies, surveillance technology and emergency ...
The leak provides competitors—from established giants to nimble rivals like Cursor—a literal blueprint for how to build a ...
On March 31, 2026, the popular HTTP client Axios experienced a supply chain attack, causing two newly published npm packages ...
A supply-chain attack backdoored versions of Axios, a popular JavaScript library that's present in many different software ...
North Korean hackers published backdoored versions of the Axios NPM package using a compromised long-lived access token.
Apple has now made it possible for more iPhones still running iOS 18 to receive security updates that protect against the ...
The exposure traces back to version 2.1.88 of the @anthropic-ai/claude-code package on npm, which was published with a 59.8MB ...