ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)

Aikido researchers uncovered ChainDrop, a Shai-Hulud variant infecting over 1,300 npm packages with an infostealer. Attackers compromised GitHub accounts tied to Keyv, Cacheable, flat-cache, and file-entry-cache, pushing tainted releases with 2B monthly downloads. Malware exfiltrates credentials to a public GitHub repo; admins should treat systems as compromised.
Tap to vote and see what everyone thinks.
Summary by ByteBrief