
Security News
/Research
npm Phishing Email Targets Developers with Typosquatted Domain
A phishing attack targeted developers using a typosquatted npm domain (npnjs.com) to steal credentials via fake login pages - watch out for similar scams.
@automatons/typescript-client-axios
Advanced tools
[](https://github.com/openapi-automatons/typescript-client-axios/actions/workflows/ci-cd.yml) [](https://github.com/openapi-automatons/typescript-client-axios/actions/workflows/ci-cd.yml) [ to steal credentials via fake login pages - watch out for similar scams.
Security News
Knip hits 500 releases with v5.62.0, refining TypeScript config detection and updating plugins as monthly npm downloads approach 12M.
Security News
The EU Cyber Resilience Act is prompting compliance requests that open source maintainers may not be obligated or equipped to handle.