Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
npm
Follow
Hide
Node Package Manager
Posts
Left menu
👋
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
Right menu
Desenvolvendo aplicações web com Node.js: do primeiro servidor ao seu próprio roteador de URLs
Moprius
Moprius
Moprius
Follow
May 15
Desenvolvendo aplicações web com Node.js: do primeiro servidor ao seu próprio roteador de URLs
#
javascript
#
webdev
#
node
#
npm
Comments
Add Comment
13 min read
Attempt to stop npm postinstall scripts from stealing your secrets
Alex
Alex
Alex
Follow
May 14
Attempt to stop npm postinstall scripts from stealing your secrets
#
npm
#
supplychainattack
#
shaihulud
1
reaction
Comments
Add Comment
4 min read
npm Is on Fire: Why the Architecture Is the Product
Vivian Voss
Vivian Voss
Vivian Voss
Follow
May 14
npm Is on Fire: Why the Architecture Is the Product
#
npm
#
supplychain
#
security
#
freebsd
Comments
Add Comment
10 min read
attw script in CopilotKit codebase.
Ramu Narasinga
Ramu Narasinga
Ramu Narasinga
Follow
May 14
attw script in CopilotKit codebase.
#
attw
#
opensource
#
copilotkit
#
npm
Comments
Add Comment
3 min read
42 @tanstack/* Packages Were Compromised on npm: What Happened, How It Works, and What You Must Do Right Now
VIKAS
VIKAS
VIKAS
Follow
May 13
42 @tanstack/* Packages Were Compromised on npm: What Happened, How It Works, and What You Must Do Right Now
#
javascript
#
security
#
npm
#
webdev
Comments
Add Comment
10 min read
The TanStack npm Attack Shows Why pnpm 11 Matters
Chioma Halim
Chioma Halim
Chioma Halim
Follow
May 13
The TanStack npm Attack Shows Why pnpm 11 Matters
#
cicd
#
javascript
#
npm
#
security
2
reactions
Comments
Add Comment
3 min read
LibKill: Scan Your Machine for Compromised npm, pip, and Bun Packages
Firat Celik
Firat Celik
Firat Celik
Follow
May 13
LibKill: Scan Your Machine for Compromised npm, pip, and Bun Packages
#
security
#
npm
#
ai
#
programming
Comments
Add Comment
3 min read
I got tired of calculating commercial lease billing by hand, so I built a tool
Coco
Coco
Coco
Follow
May 13
I got tired of calculating commercial lease billing by hand, so I built a tool
#
realestate
#
javascript
#
npm
#
proptech
Comments
Add Comment
2 min read
The Worm in the Registry
Vektor Memory
Vektor Memory
Vektor Memory
Follow
May 13
The Worm in the Registry
#
ai
#
cybersecurity
#
npm
#
github
2
reactions
Comments
Add Comment
10 min read
TanStack Was Not the Whole Story: Mini Shai-Hulud Was an npm/PyPI Supply-Chain Worm
Teruo Kunihiro
Teruo Kunihiro
Teruo Kunihiro
Follow
May 13
TanStack Was Not the Whole Story: Mini Shai-Hulud Was an npm/PyPI Supply-Chain Worm
#
security
#
npm
#
pypi
#
githubactions
6
reactions
Comments
1
comment
8 min read
I Built My Own Config Format for Node.js That Separates Server and Client Secrets
KANISHQ R PUROHIT
KANISHQ R PUROHIT
KANISHQ R PUROHIT
Follow
May 11
I Built My Own Config Format for Node.js That Separates Server and Client Secrets
#
node
#
npm
#
security
#
opensource
1
reaction
Comments
2
comments
5 min read
Supply chain en npm vs PyPI: comparé mis dos simulaciones y el vector más peligroso no es el que todos creen
Juan Torchia
Juan Torchia
Juan Torchia
Follow
May 8
Supply chain en npm vs PyPI: comparé mis dos simulaciones y el vector más peligroso no es el que todos creen
#
spanish
#
espanol
#
npm
#
node
Comments
Add Comment
10 min read
Supply chain npm vs PyPI: I compared both simulations and the most dangerous vector isn't what everyone thinks
Juan Torchia
Juan Torchia
Juan Torchia
Follow
May 8
Supply chain npm vs PyPI: I compared both simulations and the most dangerous vector isn't what everyone thinks
#
english
#
npm
#
node
#
devops
Comments
Add Comment
9 min read
Stop Shipping Broken Env Configs — I Built a Fix
Rohan Mirjankar
Rohan Mirjankar
Rohan Mirjankar
Follow
May 8
Stop Shipping Broken Env Configs — I Built a Fix
#
npm
#
javascript
#
node
#
webdev
Comments
Add Comment
2 min read
Add Real Business Trust Signals to Claude Desktop in 60 Seconds
Pico
Pico
Pico
Follow
May 8
Add Real Business Trust Signals to Claude Desktop in 60 Seconds
#
npm
#
security
#
javascript
#
supplychain
Comments
Add Comment
2 min read
👋
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account