Blogs

Updated and Ongoing Supply Chain Attack Targets CrowdStrike npm Packages

Socket

Socket detected multiple compromised CrowdStrike npm packages, continuing the "Shai-Hulud" supply chain attack that has now impacted nearly 500 packages.

Visit Site

Blogs Socket

BlogsPopular npm Packages in the keyv and Cacheable Namespaces Compromised in Active Supply Chain AttackSocket BlogsSupply Chain Attack on Axios Pulls Malicious Dependency from npmSocket BlogsOpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain AttackSocket BlogsHow to Protect Your Projects from the Risks of Deprecated npm PackagesSocket BlogsIntroducing Socket Firewall: Free, Proactive Protection for Your Software Supply ChainSocket BlogsAnthropic Identifies Biased Reasoning and Recklessness as Drivers of Claude’s PyPI AttackSocket BlogsNew Spanish and Turkish Language Models and Updated General Models - Deepgram Blog ⚡️Deepgram BlogsHow We Eliminated Long-Lived CI Secrets Across 70+ ReposPulumi BlogsGodoc: documenting Go code - The Go Programming LanguageGo BlogsGo.dev: a new hub for Go developers - The Go Programming LanguageGo ResourcesManaging dependencies - The Go Programming LanguageGo BlogsReal-Time Computational Physics with Wafer-Scale Processing [updated]Cerebras ResourcesNO_EXTERNAL_CSS_AT_IMPORTSVercel ResourcesIssue a new certVercel BlogsBest Documentation Platforms for AI Agents in 2026Mintlify ResourcesArchitectureOpentelemetry BlogsHow Mondelez Accelerates Supply Chain Training Across 150+ Global Manufacturing PlantsSynthesia BlogsUnderstanding Redis Enterprise Software Support PackagesRedis BlogsAnnouncing Socket Certified Patches: One-Click Fixes for Vulnerable DependenciesSocket BlogsIntroducing Dependency Divergence GitHub ActionSocket