Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
npm
Follow
Hide
Node Package Manager
Posts
Left menu
👋
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
Right menu
Deep Dive: TanStack npm supply-chain compromise
Shruti Kapoor
Shruti Kapoor
Shruti Kapoor
Follow
May 15
Deep Dive: TanStack npm supply-chain compromise
#
githubactions
#
javascript
#
npm
#
security
Comments
Add Comment
3 min read
I built a supply chain security scanner in Rust — here's what I learned
Daniel
Daniel
Daniel
Follow
May 15
I built a supply chain security scanner in Rust — here's what I learned
#
npm
#
bunjs
#
security
Comments
Add Comment
4 min read
No, the AI didn't compromise your npm packages. You did.
PRANTA Dutta
PRANTA Dutta
PRANTA Dutta
Follow
May 15
No, the AI didn't compromise your npm packages. You did.
#
security
#
javascript
#
npm
#
ai
1
reaction
Comments
1
comment
13 min read
I Published My First npm Package — Here's Everything I Wish I Knew
Alex Chen
Alex Chen
Alex Chen
Follow
May 15
I Published My First npm Package — Here's Everything I Wish I Knew
#
beginners
#
javascript
#
npm
#
tutorial
Comments
Add Comment
5 min read
I Published My First npm Package — Here's Everything I Wish I Knew
Alex Chen
Alex Chen
Alex Chen
Follow
May 15
I Published My First npm Package — Here's Everything I Wish I Knew
#
beginners
#
javascript
#
npm
#
tutorial
Comments
Add Comment
4 min read
The TanStack Attack: How a Worm Slipped Through the npm Pipeline
jesus manrique
jesus manrique
jesus manrique
Follow
May 15
The TanStack Attack: How a Worm Slipped Through the npm Pipeline
#
security
#
devsecops
#
npm
#
supplychain
Comments
Add Comment
6 min read
Your AI keeps recommending these dead npm/PyPI packages — here is the exact migration for each
Freshdeps
Freshdeps
Freshdeps
Follow
May 15
Your AI keeps recommending these dead npm/PyPI packages — here is the exact migration for each
#
javascript
#
python
#
npm
#
devtools
Comments
Add Comment
9 min read
Attempt to stop npm postinstall scripts from stealing your secrets
Alex
Alex
Alex
Follow
May 14
Attempt to stop npm postinstall scripts from stealing your secrets
#
npm
#
supplychainattack
#
shaihulud
1
reaction
Comments
Add Comment
4 min read
npm Is on Fire: Why the Architecture Is the Product
Vivian Voss
Vivian Voss
Vivian Voss
Follow
May 14
npm Is on Fire: Why the Architecture Is the Product
#
npm
#
supplychain
#
security
#
freebsd
Comments
Add Comment
10 min read
attw script in CopilotKit codebase.
Ramu Narasinga
Ramu Narasinga
Ramu Narasinga
Follow
May 14
attw script in CopilotKit codebase.
#
attw
#
opensource
#
copilotkit
#
npm
Comments
Add Comment
3 min read
Desenvolvendo aplicações web com Node.js: do primeiro servidor ao seu próprio roteador de URLs
Moprius
Moprius
Moprius
Follow
May 15
Desenvolvendo aplicações web com Node.js: do primeiro servidor ao seu próprio roteador de URLs
#
javascript
#
webdev
#
node
#
npm
1
reaction
Comments
Add Comment
13 min read
The TanStack npm Attack Shows Why pnpm 11 Matters
Chioma Halim
Chioma Halim
Chioma Halim
Follow
May 13
The TanStack npm Attack Shows Why pnpm 11 Matters
#
cicd
#
javascript
#
npm
#
security
2
reactions
Comments
Add Comment
3 min read
42 @tanstack/* Packages Were Compromised on npm: What Happened, How It Works, and What You Must Do Right Now
VIKAS
VIKAS
VIKAS
Follow
May 13
42 @tanstack/* Packages Were Compromised on npm: What Happened, How It Works, and What You Must Do Right Now
#
javascript
#
security
#
npm
#
webdev
Comments
Add Comment
10 min read
LibKill: Scan Your Machine for Compromised npm, pip, and Bun Packages
Firat Celik
Firat Celik
Firat Celik
Follow
May 13
LibKill: Scan Your Machine for Compromised npm, pip, and Bun Packages
#
security
#
npm
#
ai
#
programming
Comments
Add Comment
3 min read
I got tired of calculating commercial lease billing by hand, so I built a tool
Coco
Coco
Coco
Follow
May 13
I got tired of calculating commercial lease billing by hand, so I built a tool
#
realestate
#
javascript
#
npm
#
proptech
Comments
Add Comment
2 min read
👋
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account