
Security News
Re-Enabled GitHub Actions Expose Thousands of Repositories to Mini Shai-Hulud
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.
@babel/helper-compilation-targets
Advanced tools
Helper functions on Babel compilation targets
See our website @babel/helper-compilation-targets for more information.
Using npm:
npm install --save @babel/helper-compilation-targets
or using yarn:
yarn add @babel/helper-compilation-targets
The browserslist package is used to share target browsers and Node.js versions between different front-end tools. It is similar to @babel/helper-compilation-targets in that it helps determine the set of browsers to support for tools like Autoprefixer, eslint-plugin-compat, and stylelint-unsupported-browser-features. However, it is a more general tool and not specific to Babel.
core-js-compat provides information about compatibility and required polyfills for different environments. It is similar to @babel/helper-compilation-targets in that it helps to determine which features need to be polyfilled based on the target environment. However, core-js-compat focuses on polyfills provided by core-js rather than Babel transformations.
FAQs
Helper functions on Babel compilation targets
The npm package @babel/helper-compilation-targets receives a total of 96,525,167 weekly downloads. As such, @babel/helper-compilation-targets popularity was classified as popular.
We found that @babel/helper-compilation-targets demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 4 open source maintainers collaborating on the project.

Security News
Two compromised GitHub Actions were re-enabled with malicious tags intact, exposing thousands of downstream repositories to Mini Shai-Hulud.

Research
/Security News
A malicious Firefox extension fetches its payload after installation to evade detection, steal Google session cookies, and automate account takeover.

Research
/Security News
The compromise affects MemTensor's MemOS, an open source memory framework for large language models (LLMs) and AI agents. Both npm package @memtensor/memos-cloud-openclaw-plugin and the PyPI package MemoryOS are compromised. They drop cross-platform Go binaries that exfiltrate developer secrets.