Address
:
[go:
up one dir
,
main page
]
Include Form
Remove Scripts
Accept Cookies
Show Images
Show Referer
Rotate13
Base64
Strip Meta
Strip Title
Session Cookies
Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
npm
Follow
Hide
Node Package Manager
Posts
Left menu
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
Right menu
20 one-shot prompts that turn Kanban into an autonomous coding machine
Tony Loehr
Tony Loehr
Tony Loehr
Follow
Apr 6
20 one-shot prompts that turn Kanban into an autonomous coding machine
#
ai
#
automation
#
community
#
npm
1
 reaction
Comments
Add Comment
11 min read
A North Korean Backdoor Lived Inside Axios for 3 Hours. Millions of Pipelines Pulled It.
Gabriel Anhaia
Gabriel Anhaia
Gabriel Anhaia
Follow
Apr 5
A North Korean Backdoor Lived Inside Axios for 3 Hours. Millions of Pipelines Pulled It.
#
security
#
javascript
#
npm
#
node
Comments
Add Comment
8 min read
Axios Was Compromised. Here's What It Means for Your Repo.
Joseph Yeo
Joseph Yeo
Joseph Yeo
Follow
Apr 6
Axios Was Compromised. Here's What It Means for Your Repo.
#
security
#
npm
#
supplychain
#
opensource
Comments
Add Comment
3 min read
npm package commitment scores: zod has 139M weekly downloads and one maintainer
Pico
Pico
Pico
Follow
Apr 5
npm package commitment scores: zod has 139M weekly downloads and one maintainer
#
security
#
npm
#
opensource
#
webdev
Comments
Add Comment
4 min read
The Axios Attack Proved npm audit Is Broken. Here's What Would Have Caught It
Pool Camacho
Pool Camacho
Pool Camacho
Follow
Apr 6
The Axios Attack Proved npm audit Is Broken. Here's What Would Have Caught It
#
npm
#
security
#
javascript
#
opensource
1
 reaction
Comments
Add Comment
6 min read
The Documentation Attack Surface: How npm Libraries Teach Insecure Patterns
Ethan Kreloff
Ethan Kreloff
Ethan Kreloff
Follow
Apr 4
The Documentation Attack Surface: How npm Libraries Teach Insecure Patterns
#
security
#
javascript
#
npm
#
webdev
Comments
Add Comment
4 min read
I built Material Symbols SVG, an icon library for using Material Symbols as SVG components
k-s-h-r
k-s-h-r
k-s-h-r
Follow
Apr 4
I built Material Symbols SVG, an icon library for using Material Symbols as SVG components
#
react
#
npm
#
typescript
#
frontend
Comments
Add Comment
5 min read
Why Your AI Coding Agent Keeps Recommending Dead Packages
The BookMaster
The BookMaster
The BookMaster
Follow
Apr 4
Why Your AI Coding Agent Keeps Recommending Dead Packages
#
agents
#
ai
#
npm
#
programming
1
 reaction
Comments
Add Comment
2 min read
A gentle intro to npm workspaces, with visuals
Carlos Precioso
Carlos Precioso
Carlos Precioso
Follow
for
Wasp
Apr 7
A gentle intro to npm workspaces, with visuals
#
javascript
#
node
#
npm
#
tutorial
19
 reactions
Comments
3
 comments
13 min read
Malicious npm Packages Disguised as Strapi Plugins Enable Data Exfiltration and Remote Code Execution
Artyom Kornilov
Artyom Kornilov
Artyom Kornilov
Follow
Apr 4
Malicious npm Packages Disguised as Strapi Plugins Enable Data Exfiltration and Remote Code Execution
#
npm
#
strapi
#
malware
#
exfiltration
Comments
Add Comment
7 min read
Supply Chain Security measures
0xkoji
0xkoji
0xkoji
Follow
Apr 3
Supply Chain Security measures
#
security
#
npm
#
uv
#
githubactions
Comments
Add Comment
1 min read
I'm 12 and I built a 2KB 0 dependency alternative to CASL!
CreeperGuy14
CreeperGuy14
CreeperGuy14
Follow
Apr 3
I'm 12 and I built a 2KB 0 dependency alternative to CASL!
#
showdev
#
npm
#
typescript
#
node
Comments
Add Comment
1 min read
The Axios/npm Incident & Why AI Won’t Replace Devs
Cyber Janitor
Cyber Janitor
Cyber Janitor
Follow
Apr 4
The Axios/npm Incident & Why AI Won’t Replace Devs
#
ai
#
javascript
#
npm
#
security
Comments
Add Comment
1 min read
I built an npm malware scanner and found 21 malicious packages in 24 hours
Yuri Borges
Yuri Borges
Yuri Borges
Follow
Apr 3
I built an npm malware scanner and found 21 malicious packages in 24 hours
#
security
#
npm
#
javascript
#
opensource
Comments
1
 comment
1 min read
How the axios@1.14.1 supply chain attack worked (and how to protect yourself)
bigjenkie
bigjenkie
bigjenkie
Follow
Apr 3
How the axios@1.14.1 supply chain attack worked (and how to protect yourself)
#
javascript
#
opensource
#
security
#
npm
Comments
Add Comment
4 min read
đź‘‹
Sign in
for the ability to sort posts by
relevant
,
latest
, or
top
.
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account