DEV Community

npm

Node Package Manager

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
How a sandwich defeats North Korea's hackers (and the US couldn't for 70 years)

How a sandwich defeats North Korea's hackers (and the US couldn't for 70 years)

Comments
5 min read
هجوم سلسلة الإمداد على axios@1.14.1: ماذا تفعل الآن؟

هجوم سلسلة الإمداد على axios@1.14.1: ماذا تفعل الآن؟

Comments
2 min read
Tấn Công Chuỗi Cung Ứng axios@1.14.1: Cần Làm Gì Ngay?

Tấn Công Chuỗi Cung Ứng axios@1.14.1: Cần Làm Gì Ngay?

Comments
10 min read
axios 1.14.1 โดนโจมตี: วิธีรับมือและป้องกัน

axios 1.14.1 โดนโจมตี: วิธีรับมือและป้องกัน

Comments
3 min read
axios@1.14.1 Supply Chain Attacke: Was jetzt zu tun ist

axios@1.14.1 Supply Chain Attacke: Was jetzt zu tun ist

Comments
7 min read
axios@1.14.1 Tedarik Zinciri Saldırısı: Şimdi Ne Yapmalı

axios@1.14.1 Tedarik Zinciri Saldırısı: Şimdi Ne Yapmalı

Comments
8 min read
512,000 Lines of Claude Code Leaked Through a Single .npmignore Mistake

512,000 Lines of Claude Code Leaked Through a Single .npmignore Mistake

Comments
7 min read
Case Study: How I Dogfood DevRadar Guard on a 954-Dependency Project

Case Study: How I Dogfood DevRadar Guard on a 954-Dependency Project

1
Comments
4 min read
Copy-Paste Components vs npm Packages: shadcn/ui vs Ninna UI in 2026

Copy-Paste Components vs npm Packages: shadcn/ui vs Ninna UI in 2026

Comments
5 min read
Attaque de la chaîne d'approvisionnement axios@1.14.1 : Que faire maintenant

Attaque de la chaîne d'approvisionnement axios@1.14.1 : Que faire maintenant

1
Comments
9 min read
Compromised npm Maintainer Account Publishes Malicious Axios Versions with Backdoor via `plain-crypto-js` Dependency

Compromised npm Maintainer Account Publishes Malicious Axios Versions with Backdoor via `plain-crypto-js` Dependency

Comments
11 min read
The axios Supply Chain Attack Just Proved Why Static Analysis Matters More Than Ever

The axios Supply Chain Attack Just Proved Why Static Analysis Matters More Than Ever

Comments
4 min read
npm's Implicit Dependency Execution Exposes Users to Security Risks: Explicit Confirmation Needed

npm's Implicit Dependency Execution Exposes Users to Security Risks: Explicit Confirmation Needed

Comments
9 min read
How I Turned 4 Sites and a Shared Lib Into One pnpm Workspace

How I Turned 4 Sites and a Shared Lib Into One pnpm Workspace

1
Comments
11 min read
API 개발자를 위한 NPM 의존성 보안 완벽 가이드: 공급망 보안 강화

API 개발자를 위한 NPM 의존성 보안 완벽 가이드: 공급망 보안 강화

Comments
3 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.