May 21, 2026npx Confusion, Dependency Confusion, Supply Chain Attack, npm, Bug Bounty, AI Agentsnpx Used Confusion and It’s Super EffectiveRead the Post>>
May 14, 2026Supply Chain Attack, node-ipc, Email Takeover, npm, DNS Tunneling, Depinode-ipc Compromised: A Dormant Maintainer, an Expired Domain, and What We Think HappenedRead the Post>>
May 11, 2026Supply Chain Attack, TanStack, GitHub Actions, Cache Poisoning, npm, DepiTanStack Compromised: Inside the GitHub Actions Cache Poisoning That Hit the npm EcosystemRead the Post>>
May 14, 2026node-ipc Compromised: A Dormant Maintainer, an Expired Domain, and What We Think HappenedRead the Post>>
May 11, 2026TanStack Compromised: Inside the GitHub Actions Cache Poisoning That Hit the npm EcosystemRead the Post>>
Apr 02, 2026First Week, First Hack: Compromising a Package with 40 Million Weekly DownloadsRead the Post>>
Mar 27, 2025We hacked Google’s A.I Gemini and leaked its source code (at least some part)Read the Post>>