ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)

Malicious Nx packages published to npm on August 26, 2025, used a post-install hook to scan for installed AI coding agents and invoked them with permission-bypass flags to enumerate credentials. The s1ngularity campaign targeted Claude, Gemini, and Q CLIs on macOS and Linux machines.
Tap to vote and see what everyone thinks.
Summary by ByteBrief