News

The popular Nx build system, boasting 4 million downloads each week, was exploited in the first supply chain breach to use AI assistants.
GitHub’s CodeQL is a robust query language originally developed by Semmle that allows you to look for vulnerabilities in the ...
Attacks on the NX build system and React packages highlight escalating threats to enterprise software development pipelines.
Visual Studio Code extensions have been identified exploiting a loophole that allows reuse of names from removed packages ...