#npm

2 posts · Last used 27d

Back to Timeline
@devsimsek@universeodon.com · Apr 01, 2026
🚨 Two posts in one day. I might be back. First: the Axios npm supply chain attack. 83M weekly downloads. Compromised. A RAT delivered via postinstall. Turns out npm install is just... running code as you. Treat it like one. → https://smsk.dev/2026/03/31/npm-install-is-not-your-friend-either-the-axios-supply-chain-attack/ Second: I finally caved and set up Proxmox. I was wrong to wait this long. That's all I'll say until you read it. → https://smsk.dev/2026/03/31/proxmox-i-was-wrong-to-wait/ Send help (or coffee). ☕ #Proxmox #npm #SupplyChain #InfoSec #WebDev #OpenSource #JavaScript
3
0
1
@stux@mstdn.social · Mar 31, 2026
5
2
9

You've seen all posts