The 2024 XZ incident illustrates how open-source software (OSS) has become strategic infrastructure in the global economy, ...
Spread the loveIn a chilling reminder of the vulnerabilities inherent in open source software, two significant supply chain attacks occurred in March 2026, targeting widely used tools that affect a ...
FEATURE Two supply chain attacks in March infected open source tools with malware and used this access to steal secrets from ...
Hackers linked to North Korea compromised the widely used Axios npm package by tricking a maintainer into installing malware ...