As featured in
Follow
Overview
News
Technologies
Salaries
Products
People
Growth
Financials
Overview
Detect, prevent, and respond to software supply chain attacks. End-to-end protection for AI agents, developer machines, open source packages, and CI/CD pipelines.
News
ChainDrop credential stealing worm infects over 400 npm packages
The Shai Hulud variant's blast radius includes several highly popular packages thus far.. Security teams are urged to perform full audits of all developer machines.
Read more
Report
18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users
Malicious npm packages impersonate Alibaba tools to deliver a cross-platform RAT with command execution, persistence, and lateral movement.
Read more
Report
Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js
Two @joyfill npm beta packages run an import-time implant that uses Tron, Aptos, and BSC to deliver a DEV#POPPER-linked Node.js RAT.
Read more
Report
SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines
Three malicious RubyGems packages in the SleeperGem attack skip CI runners, target developer machines, and install persistent native malware.
Read more
Report
AsyncAPI npm packages infected with credential-stealing malware
Five malicious versions of AsyncAPI packages were published to the Node Package Manager (npm) in a supply-chain attack that delivered a remote access trojan with info-stealing capabilities.
Read more
Report
Pro access
Upgrade to see all 40 mentions
Upgrade to a paid plan to read every media mention of this company - funding news, awards, product launches and press releases from all the outlets writing about it.
Every media mention and press release
Funding news, awards and product launches
Fresh coverage from every outlet writing about the company
Upgrade now
Cancel anytime. Secure checkout. Instant activation.
