Package Managers

Feeds to Scour
SubscribedAll
Scoured 558 posts in 20.9 ms

Config Files That Run Code: Supply Chain Security Blindspot

 🕸️WebAssembly
safedep.io··Hacker News

OWASP Incubator Project Helps Developers Find and Fix Vulnerable Dependencies in Seconds

 🕸️WebAssembly
securityweek.com·

local MCP tools for coding agents

 🗣️Domain-Specific Languages
glidermcp.com··Hacker News

France to test its own AI-powered battlefield command in June NATO exercise

 🔄Language Evolution  Content type: News
defensenews.com·

fix(security): block build tool env overrides (#92007) · openclaw/openclaw@e15b646

 Systems Programming  Content type: Code
github.com·

Miasma Malware Hits 32 Red Hat Packages via Compromised GitHub Account

 🕸️WebAssembly
hackread.com·

Error after updating Yunohost - "dpkg/APT (the system package managers) seems to be in a broken state"

 🔨Build Systems  Content type: Discussion
forum.yunohost.org·

Self-replicating Miasma worm hits 73 Microsoft GitHub repositories in supply chain attack

 🔗Content Addressing  Content type: News
thenextweb.com·

SAST vs SCA: Key Differences for AppSec Teams

 🔍Static Analysis
orca.security·

fix(release): prepare ClawHub publish deps after target checkout · openclaw/openclaw@5f6ee9f

 🔨Build Systems  Content type: Code
github.com·

#171

 🔗Content Addressing
vulnu.com·

The Worm in the Supply Chain: How Defender for Endpoint and Sentinel for SAP BTP Caught Shai-Hulud

 🔗Content Addressing

I wish Deno would keep doing what it does best

 🔍Static Analysis

Risky Bulletin: RubyGems adds dependency cooldowns to counter supply chain attacks

 🕸️WebAssembly
news.risky.biz·

docs(release): fix sequential patch numbering · openclaw/openclaw@fb9dc86

 🔄Language Evolution  Content type: Code
github.com·

AgentGG uses AI agents to reduce false positives in open source code scanning

 Formal Verification
4sysops.com·

IronWorm Malware Shares Shai-Hulud Traits, Takes Threat to ‘Next Level’

 🔗Content Addressing
devops.com·

Looking for feedback on TestChronicle’s new local npm sync

 🔄Language Evolution

I was tired of repos that say they run but don't

 🔨Build Systems  Content type: Code
github.com··Hacker News

Shai-Hulud Descends to Hades: Miasma Worm Campaign Spreads with New PyPI Wave

 🔗Content Addressing  Content type: Blog
socket.dev·
Sign up or log in to see more results

Keyboard Shortcuts

Navigation

Next / previous item
j/k
Open post
oorEnter
Preview post
v

Post Actions

Love post
a
Like post
l
Dislike post
d
Undo reaction
u
Save / unsave
s

Recommendations

Add interest / feed
Enter
Not interested
x

Go to

Home
gh
Interests
gi
Feeds
gf
Likes
gl
History
gy
Changelog
gc
Settings
gs
Browse
gb
Search
/

General

Show this help
?
Submit feedback
!
Close modal / unfocus
Esc

Press ? anytime to show this help