Blogs

Attackers Are Hunting High-Impact Node.js Maintainers in a Coordinated Social Engineering Campaign

Socket

Multiple high-impact npm maintainers confirm they have been targeted in the same social engineering campaign that compromised Axios.

Visit Site

Blogs Socket

BlogsUK Cyber Test: AI Agent Attempted to Social Engineer Open Source Maintainer Into Merging MalwareSocket BlogsWhat's Really Going On Inside Your node_modules Folder?Socket BlogsOpen VSX Unblocks Extension IDs Used in Malware CampaignSocket BlogsGPT-6 Astra Attempts Supply Chain Attacks Against Open Source Maintainers in TestingSocket BlogsAWS Security Hub Adds Socket for Supply Chain SecuritySocket BlogsSocket for ClickUp Is Now AvailableSocket BlogsAndrew Becherer Joins Socket as Chief Information Security OfficerSocket NewsWhat I Look Forward To: The Cloud Foundry Summit 2021Thenewstack NewsMeasuring CI/CD Adoption Rates Is a ProblemThenewstack NewsThe Hardware and Software Used in SpaceThenewstack BlogsNode.js Native Binary Compilation Using vercel/pkgPulumi BlogsWhat Exactly Is Cloud Engineering?Pulumi BlogsCelebrating 20 years of Apache LuceneElastic BlogsTracee Release: Rules Detect Attackers Out-of-the-BoxAquasec BlogsNew npm Flaws Let Attackers Better Target Packages for Account TakeoverAquasec EventsSimplifying the Transformation LayerMotherduck EventsAgents in ProdMotherduck Events[Data Council Session] Instant Preview Mode: Real-Time Feedback to Make SQL Data Exploration FlyMotherduck EventsAgentic Retrieval SF MeetupMotherduck EventsLet Your Agent Try MotherDuckMotherduck