Blogs

OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack

Socket

Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Visit Site

Blogs Socket

BlogsPopular npm Packages in the keyv and Cacheable Namespaces Compromised in Active Supply Chain AttackSocket BlogsUpdated and Ongoing Supply Chain Attack Targets CrowdStrike npm PackagesSocket BlogsSupply Chain Attack on Axios Pulls Malicious Dependency from npmSocket BlogsRe-Enabled GitHub Actions Expose Thousands of Repositories to Mini Shai-HuludSocket BlogsHappy Birthday, Shai-HuludSocket BlogsSuno Breached via Shai-Hulud Worm, Leaked Code Exposes AI Music ScrapingSocket LearnPlaying With P5.js: Creating a Voice-Controlled Game - Deepgram Blog ⚡️Deepgram NewsOData or GraphQL? The Best Tech for Developing an API Is Neither or Both!Thenewstack BlogsHow We Eliminated Long-Lived CI Secrets Across 70+ ReposPulumi BlogsServer-Side React RenderingCss Tricks BlogsSvelte for the Experienced React DevCss Tricks BlogsAnalyze JSON Data Using SQL and DuckDBMotherduck BlogsBuilding a Remote MCP Server: OAuth, Tool Design & Lessons from 4,000+ AI Queries | MotherDuckMotherduck EventsIt's Ducking Easy: From Zero to Insight with MotherDuck and dbtMotherduck ResourcesNO_EXTERNAL_CSS_AT_IMPORTSVercel BlogsBest Docusaurus Alternatives in 2026Mintlify BlogsAutogenerating API documentation from OpenAPIMintlify BlogsHow Mondelez Accelerates Supply Chain Training Across 150+ Global Manufacturing PlantsSynthesia BlogsAnthropic Identifies Biased Reasoning and Recklessness as Drivers of Claude’s PyPI AttackSocket BlogsAnnouncing Socket Certified Patches: One-Click Fixes for Vulnerable DependenciesSocket