A North Korea-nexus threat actor compromised the widely used axios npm package, delivering a cross-platform remote access ...
Cloudflare unveiled EmDash, a new open-source CMS with sandboxed plugin security, aiming to be a “spiritual successor” to ...
On March 31, 2026, the popular HTTP client Axios experienced a supply chain attack, causing two newly published npm packages ...
Overview On March 31, NSFOCUS CERT detected that the npm repository of the HTTP client library Axios was poisoned by the supply chain. The attacker bypassed the normal GitHub Actions CI/CD pipeline of ...
Security teams are grappling with a major supply chain attack on Axios, a popular JavaScript library with over 100 million ...