Binary code depicted in waves. (iStock/Getty Images) Shai-Hulud worm returns stronger and more automated than ever before Self-replicating malware has infected almost 500 open-source packages, exposing more than 26,000 GitHub repositories in less than 24 hours. 4 days ago By Matt Kapko
(Getty Images) The npm incident frightened everyone, but ended up being nothing to fret about Disaster was averted after widely used open-source packages were compromised via social engineering. Sep 10, 2025 By Matt Kapko
Digital generated image of html code over deep black background. (Getty Images) Open-source security spat leads companies to join forces for new tool A company’s licensing change to a static analysis tool has forced 10 companies together to create Opengrep. Jan 27, 2025 By Greg Otto