
Research
/Security News
PolinRider Spreads Through Compromised GitHub Accounts and Packagist
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.
@trishchuk/fetch-linux-x64-gnu
Advanced tools
Fetch API-shaped HTTP client for Node.js (buffered bodies, no streaming yet), backed by a Rust (wreq/hyper/BoringSSL) native addon with TLS/HTTP2 fingerprint emulation
@trishchuk/fetch-linux-x64-gnuThis is the x86_64-unknown-linux-gnu binary for @trishchuk/fetch
FAQs
Fetch API-shaped HTTP client for Node.js (buffered bodies, no streaming yet), backed by a Rust (wreq/hyper/BoringSSL) native addon with TLS/HTTP2 fingerprint emulation
We found that @trishchuk/fetch-linux-x64-gnu demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.

Company News
Allow myself to introduce... myself.