
Security
npm Introduces 2FA-Gated Publishing and Package Controls to Combat Supply Chain Attacks
5/24/2026

Vulnerabilities
Project Glasswing: An Initial Update
5/22/2026
Cybersecurity
CISA Announces No‑Cost Cybersecurity Services for Siemens ROS‑2 Deployments
5/14/2026

Vulnerabilities
20,000 Linux Users Compromised: Malicious Cemu Build Steals Credentials
5/14/2026
Security
Debian Enforces Reproducibility, Adds loong64 Architecture in Release Cycle Update
5/10/2026

Security
Canonical and Ubuntu Servers Disrupted by Sustained Cyber Attack, Services Offline for Over 24 Hours
5/2/2026

Vulnerabilities
Ongoing Supply Chain Attacks Worm into SAP npm Packages
5/1/2026
Vulnerabilities
Security Researcher Discovers Critical Vulnerabilities in Forgejo, Proposes 'Carrot Disclosure' Approach
4/29/2026

Vulnerabilities
npm Supply Chain Worm Compromises Developer Environments, Steals Secrets and Spreads Like Wildfire
4/23/2026

Cybersecurity
The New Economics of Cybersecurity: When Security Becomes a Token Arms Race
4/16/2026
Vulnerabilities
Brocards for Vulnerability Triage: A Practical Framework for Security Analysis
4/12/2026

Vulnerabilities
Trivy Supply Chain Attack Exposes Critical Security Gaps in Open Source Tooling
4/3/2026

Vulnerabilities
axios Supply Chain Compromise Exposes Vulnerabilities in Open Source Ecosystem
4/3/2026