Skip to content

Security Report

Security, technology, and expert analyses

Primary Menu

Security Report

  • News
  • Vlog
  • Opinions
  • Get in Touch
  • Home
  • dependency confusion

dependency confusion

optical glass triangular prism
  • Editor's Pick
  • News
  • Security

Where did these mysterious PrismJS npm versions come from?

Ax Sharma April 15, 2021 0

In 2015, strange 9000.0.x versions of PrismJS appeared on npm downloads, and nobody had a clue where they came from,...

Read MoreRead more about Where did these mysterious PrismJS npm versions come from?
  • News
  • Security

Grayhat pollutes npm, PyPI with thousands of fake supply chain dependencies

Ax Sharma March 4, 2021 0

A gray hat hacker has published over 7,000 dependency confusion packages to npm and PyPI repositories and continues to do...

Read MoreRead more about Grayhat pollutes npm, PyPI with thousands of fake supply chain dependencies

© Security Report Ltd. All Rights Reserved. | CoverNews by AF themes.