ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)

Threat actors linked to North Korea uploaded two new malicious npm packages mimicking legitimate Rollup polyfill tools for developer data theft. The lookalike projects install second-stage utilities that fetch encrypted malware from external servers and execute payloads enabling remote access, screenshot capture, clipboard monitoring, and credential harvesting across cloud environments.
Tap to vote and see what everyone thinks.
Summary by ByteBrief