The npm blog archive reports on a malicious module named getcookies that masqueraded as a cookie parsing library but contained a backdoor, leading to the unpublishing of three packages and three versions of a fourth package from the npm Registry.
FEATURES
SIMILAR TOOLS
InfoRisk Today is a key resource for news and insights on information risk management and cybersecurity education.
Graham Cluley offers expert cybersecurity insights and commentary through various media including podcasts and speaking engagements.
CyberScoop is a leading media brand providing news and event coverage to top cybersecurity leaders through its website, newsletter, events, radio, and TV.
A leading technology media brand providing news, analysis, and opinion on IT leadership and digital transformation.
GBHackers offers up-to-date cybersecurity news and insights, focusing on threats, vulnerabilities, and innovative defense strategies.
A cybersecurity blog from Microsoft, featuring articles and guides on various security topics, including AI, threat intelligence, cloud security, and incident response.
Sysreptor offers a customizable reporting solution for offensive security assessments.
A subscription-based service offering ad-free access to cybersecurity news, podcasts, briefings, articles, and events.
Brian Krebs is a cybersecurity journalist and blogger, known for his in-depth reporting on cybercrime and cybersecurity issues.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.