Threat actors are exploiting the recent Claude Code source code leak by using fake GitHub repositories to deliver Vidar ...
Suspected North Korean hackers have compromised Axios, one of the most widely used JavaScript libraries in American software development, by hijacking a maintainer’s npm account and publishing tainted ...
'This is unironically a malware nuclear missile.' ...
Attackers stole a long-lived npm token from the lead axios maintainer and published two poisoned versions that drop a ...
The leak provides competitors—from established giants to nimble rivals like Cursor—a literal blueprint for how to build a ...
The widely used Axios HTTP client library, a JavaScript component used by developers, was recently hacked to distribute ...
On March 31, 2026, the popular HTTP client Axios experienced a supply chain attack, causing two newly published npm packages ...
Within days of each other, Anthropic first leaked the source code to Claude Code, and then a critical vulnerability was found ...
After details of a yet-to-be-announced model were revealed due to the company leaving unpublished drafts of documents and ...
In order to spread Vidar information-stealing malware, threat actors are taking advantage of the recent Claude Code source ...
Anthropic says it accidentally leaked the source code for Claude Code, which is closed source, but the company says no ...
A version of the AI coding tool in Anthropic's npm registry included a source map file, which leads to the full proprietary ...