Media Summary: This episode explores how attackers exploit infrastructure that became load-bearing before anyone secured it from a malicious sponsor this channel: this video was made possible by: coderabbit / ai Get 20% off Mobbin Pro to make your apps not ugly - Yesterday, npm got rocked by a record-breaking ...

Vs Code Supply Chain Attack - Detailed Analysis & Overview

This episode explores how attackers exploit infrastructure that became load-bearing before anyone secured it from a malicious sponsor this channel: this video was made possible by: coderabbit / ai Get 20% off Mobbin Pro to make your apps not ugly - Yesterday, npm got rocked by a record-breaking ... Axios, one of the most widely used JavaScript packages, was recently compromised in a coordinated In this episode of Bad Dependencies, Mackenzie Jackson and Charlie Eriksen dive into one of the most sophisticated malware ... I break down exactly how it happened, explain what a

Glassworm is not just another malware strain. It is a ... using tj-actions/changed-files in your GitHub Actions workflow, your secrets may be at risk due to a recent Mark and Rohan break down the recent Shai-Hulud NPM

Photo Gallery

VS Code Supply Chain Attack, Microsoft Exchange Zero-Day, and AI-Accelerated Vulnerability Discovery
This Supply Chain Attack Is Terrifying
The largest supply-chain attack ever…
The BEST way to PROTECT yourself against Supply Chain Attacks
VS Code Extension Hijacked: 2.2M Developers Targeted in 11-Minute Attack | Nx Console Breakdown
The Axios Supply Chain Attack Explained
VS Code - Supply Chain Attack Explained
E9: The OpenVSX Supply Chain Attack: Invisible Malware in VS Code - Bad Dependencies Podcast
the WORST hack of 2026
Glassworm Malware Analysis: The Invisible Supply Chain Attack Infecting VS Code & npm
tj-actions Supply Chain Attack – How to Check & Fix It NOW
TanStack was compromised, and it's bad
View Detailed Profile
VS Code Supply Chain Attack, Microsoft Exchange Zero-Day, and AI-Accelerated Vulnerability Discovery

VS Code Supply Chain Attack, Microsoft Exchange Zero-Day, and AI-Accelerated Vulnerability Discovery

This episode explores how attackers exploit infrastructure that became load-bearing before anyone secured it from a malicious

This Supply Chain Attack Is Terrifying

This Supply Chain Attack Is Terrifying

sponsor this channel: https://nunomaduro.com/sponsorships this video was made possible by: coderabbit / ai

The largest supply-chain attack ever…

The largest supply-chain attack ever…

Get 20% off Mobbin Pro to make your apps not ugly - https://mobbin.com/fireship Yesterday, npm got rocked by a record-breaking ...

The BEST way to PROTECT yourself against Supply Chain Attacks

The BEST way to PROTECT yourself against Supply Chain Attacks

We've seen a huge wave of

VS Code Extension Hijacked: 2.2M Developers Targeted in 11-Minute Attack | Nx Console Breakdown

VS Code Extension Hijacked: 2.2M Developers Targeted in 11-Minute Attack | Nx Console Breakdown

A trusted

The Axios Supply Chain Attack Explained

The Axios Supply Chain Attack Explained

Axios, one of the most widely used JavaScript packages, was recently compromised in a coordinated

VS Code - Supply Chain Attack Explained

VS Code - Supply Chain Attack Explained

Hi,

E9: The OpenVSX Supply Chain Attack: Invisible Malware in VS Code - Bad Dependencies Podcast

E9: The OpenVSX Supply Chain Attack: Invisible Malware in VS Code - Bad Dependencies Podcast

In this episode of Bad Dependencies, Mackenzie Jackson and Charlie Eriksen dive into one of the most sophisticated malware ...

the WORST hack of 2026

the WORST hack of 2026

I break down exactly how it happened, explain what a

Glassworm Malware Analysis: The Invisible Supply Chain Attack Infecting VS Code & npm

Glassworm Malware Analysis: The Invisible Supply Chain Attack Infecting VS Code & npm

Glassworm is not just another malware strain. It is a

tj-actions Supply Chain Attack – How to Check & Fix It NOW

tj-actions Supply Chain Attack – How to Check & Fix It NOW

... using tj-actions/changed-files in your GitHub Actions workflow, your secrets may be at risk due to a recent

TanStack was compromised, and it's bad

TanStack was compromised, and it's bad

https://tanstack.com/blog/npm-

Riding the Worm: Lessons from the NPM Supply Chain Attack | Let's Talk ASPM #96

Riding the Worm: Lessons from the NPM Supply Chain Attack | Let's Talk ASPM #96

Mark and Rohan break down the recent Shai-Hulud NPM