
Research
/Security News
OpenAPI React Query Codegen Compromised in Mini Shai-Hulud npm Supply Chain Attack
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.
MCP server exposing Cronus Capital on-chain, x402-paid market signals (Arc / Circle Gateway) as agent tools.
MCP server exposing Cronus Capital on-chain, x402-paid market signals (Arc / Circle Gateway) as agent tools.
npx cronus-mcp@latest
{
"mcpServers": {
"cronus": {
"command": "npx",
"args": ["-y", "cronus-mcp@latest"]
}
}
}
traceHash (re-verifiable at /api/trace).CRONUS_BASE_URL — override the API base (defaults to the live deployment).Thin client only: no business logic is duplicated: every tool proxies the live Cronus HTTP endpoints. MIT.
FAQs
MCP server exposing Cronus Capital on-chain, x402-paid market signals (Arc / Circle Gateway) as agent tools.
We found that cronus-mcp demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Ten malicious OpenAPI React Query Codegen versions were published to npm in the Mini Shai-Hulud attack, all with valid provenance.

Security News
Socket joins more than 100 technology, cybersecurity, and financial organizations calling for a global surge in cyber defense.

Product
Enterprise security teams can now detect malware, credential theft, suspicious network activity, and risky updates across Microsoft Edge extensions.