ByteBrief
We're a portrait publication through and through. Turn your phone back and your briefing picks up right where you left it.
(We tried widescreen once. It wasn't us.)
ChainDrop, a Shai-Hulud variant, infected 444 npm packages downloaded about 2 billion times monthly. It spreads via tarballs and dev-tool hooks, bypassing source code review. Targets include keyv, flat-cache, and cache-manager. Infected packages were yanked from npm.
Tap to vote and see what everyone thinks.
Summary by ByteBrief
BdThemes plugins supply-chain hack creates rogue WordPress admins