Malicious npm packages found in Red Hat's JavaScript clients
Hacker News·1mo·kurmiashish
Red Hat discovered compromised packages in its official JavaScript client library, affecting developers who depend on it for cloud services integration. This is a reminder that supply chain security matters even for established vendors—indie makers using third-party packages need to stay alert to dependency vulnerabilities.
Original story
Read the original on Hacker NewsRelated stories

Devtools
Vivix lets you watch JavaScript execute step-by-step in the browserHacker News Show HN·1mo·hlude
Devtools
Capstone: Open-source disassembly framework crosses platforms and architecturesHacker News·1mo·gregsadetsky

Devtools
Open Repair Data Standard aims to unify how repair shops track fixesHacker News·1mo·cassepipe