News

Over 100,000 sites have been impacted in a supply chain attack by the Polyfill.io service after a Chinese company acquired the domain and the script was modified to redirect users to malicious and ...
An update to tiny "is-promise" library impacted millions of JavaScript projects.
A protest via a developer against Russia’s invasion of Ukraine has turned into a supply chain attack in a popular JavaScript developer module. Detailed Wednesday by researchers at Snyk Ltd., the ...
The legitimate Solana JavaScript SDK was temporarily compromised yesterday in a supply chain attack, with the library backdoored with malicious code to steal cryptocurrency private keys and drain ...
A software supply chain attack has hit the popular JavaScript package is, which has almost 2.7 million downloads per week.
Agoric, a JavaScript-native smart contract platform, has confirmed the introduction of its public chain (after the completion of a private token sale).