Forem

npm

Node Package Manager

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Axios Was Compromised. Here's What It Means for Your Repo.
Cover image for Axios Was Compromised. Here's What It Means for Your Repo.

Axios Was Compromised. Here's What It Means for Your Repo.

Comments
3 min read
A North Korean Backdoor Lived Inside Axios for 3 Hours. Millions of Pipelines Pulled It.
Cover image for A North Korean Backdoor Lived Inside Axios for 3 Hours. Millions of Pipelines Pulled It.

A North Korean Backdoor Lived Inside Axios for 3 Hours. Millions of Pipelines Pulled It.

Comments
8 min read
What Your Linter Can't Catch: The Invisible Unicode Attacks Hitting GitHub

What Your Linter Can't Catch: The Invisible Unicode Attacks Hitting GitHub

1
Comments
4 min read
I Built a Lightweight i18n Library for JavaScript — Meet globaly-i18n

I Built a Lightweight i18n Library for JavaScript — Meet globaly-i18n

1
Comments
3 min read
I Haven't Opened the npm Website in Months. Here's How.
Cover image for I Haven't Opened the npm Website in Months. Here's How.

I Haven't Opened the npm Website in Months. Here's How.

1
Comments
4 min read
How the Axios Supply Chain Attack Worked - And How to Detect It Earlier

How the Axios Supply Chain Attack Worked - And How to Detect It Earlier

Comments
3 min read
MCP Connector Poisoning: How Compromised npm Packages Hijack Your AI Agent

MCP Connector Poisoning: How Compromised npm Packages Hijack Your AI Agent

Comments 2
5 min read
Axios got compromised. They attacked the human, not code.

Axios got compromised. They attacked the human, not code.

3
Comments
4 min read
npm install puede infectar tu máquina: cómo protegerte
Cover image for npm install puede infectar tu máquina: cómo protegerte

npm install puede infectar tu máquina: cómo protegerte

2
Comments 1
7 min read
I'm 12 and I built a 2KB 0 dependency alternative to CASL!

I'm 12 and I built a 2KB 0 dependency alternative to CASL!

Comments 1
1 min read
I open-sourced salt-theme-gen
Cover image for I open-sourced salt-theme-gen

I open-sourced salt-theme-gen

8
Comments 6
3 min read
I Built a Zero-Dependency Supply-Chain Security Scanner for Node.js — 21 Checks, One Command
Cover image for I Built a Zero-Dependency Supply-Chain Security Scanner for Node.js — 21 Checks, One Command

I Built a Zero-Dependency Supply-Chain Security Scanner for Node.js — 21 Checks, One Command

1
Comments 3
5 min read
AI Wrote Code But You Don't Have npm? Here's What to Do
Cover image for AI Wrote Code But You Don't Have npm? Here's What to Do

AI Wrote Code But You Don't Have npm? Here's What to Do

1
Comments
8 min read
The Axios npm Supply Chain Attack (March 2026): A 2-Second Breach Window That Compromised the JavaScript Ecosystem
Cover image for The Axios npm Supply Chain Attack (March 2026): A 2-Second Breach Window That Compromised the JavaScript Ecosystem

The Axios npm Supply Chain Attack (March 2026): A 2-Second Breach Window That Compromised the JavaScript Ecosystem

5
Comments 1
5 min read
Whole-laptop scanner for the Axios supply chain attack
Cover image for Whole-laptop scanner for the Axios supply chain attack

Whole-laptop scanner for the Axios supply chain attack

5
Comments
3 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.