#NPM

2025-06-19

This instantly came to my mind after seeing a few packages again...

xkcd comic 2347 "Dependency", modified for the web development ecosystem. It shows a large tower of rectangles (projects) beginning large at the bottom and then getting smaller and smaller to the top. The tower is captioned with "MODERN WEBDEV". Near the bottom of it, there is a single inconsistently thin rectangle, supporting all others on top, that is labeled "Sindre Sorhus" - the name of a well known open source maintainer of many wide-spread npm packages.
2025-06-18

"DPRK IT Worker-Related Account Takeover" published by Ketman. #ITWorker, #NPM, #DPRK, #CTI ketman.org/dprk-it-worker-rela

TWiT PodcastsTWiT
2025-06-18

⚠️ Under siege: the NPM repository. Plus, Apple denies iMessage security flaws, bots are scanning everywhere, and AI reveals insights on @SGgrc's Microsoft security stance.
🎧 Security Now: twit.tv/shows/security-now/epi

Security Now Episode Thumbnail
2025-06-16

"npmgraph - NPM Dependency Diagrams" - Graph / visualize of npm dependencies
npmgraph.js.org/
#Npm #DevJs • New #link just added to #Otter.

2025-06-16

"Malicious crypto-theft package targets Web3 developers in North Korean operation" published by Aikido. #NPM, #DPRK, #CTI aikido.dev/blog/malicious-pack

Rad Web Hostingradwebhosting
2025-06-15

How to Install on

Here's a step-by-step guide detailing how to install Directus on AlmaLinux VPS.
What is Directus?
Directus is an open-source and data platform that allows you to manage and interact with your database through a RESTful API or GraphQL API. It provides a modern, user-friendly admin interface for ...
Continued 👉 blog.radwebhosting.com/how-to-

2025-06-13

⛵ 💻 Just published a fun little CLI toy: @konstantindenerz/yacht-animation
Let a yacht sail across your terminal like it’s 1995 ⛵️🌊

```
npm install -g @konstantindenerz/yacht-animation yacht-animation ```
📦 npm: npmjs.com/package/@konstantind

#nodejs #cli #devfun #npm #ascii #yacht #sailing #nautics

Chris CarringtonsirHC77@me.dm
2025-06-13

Just launched a CLI tool that turns your Postman collection into a fully-typed TypeScript SDK. 🚀

✅ Axios or Fetch
✅ Auth via Postman config (Bearer/API key/Basic)
✅ Auto-inferred types
✅ Folder-based namespaces
✅ .d.ts output optional

Install it with:
npm install -g @sirHC77/postman-sdk-gen

Docs & repo: github.com/megafarad/postman-s

#typescript #postman #devtools #sideproject #npm

Dirk Holtwickholtwick
2025-06-12

While and some other central services have I wonder if there is some is some or solution for this? Otherwise world is pretty fucked up if / pulls the plug status.npmjs.org/

N-gated Hacker Newsngate
2025-06-11

In a long-awaited to the saga no one asked for, our protagonist returns from the to regale us with of heart-driven 🌳❤️. Eight years on, and the legendary 'left-pad' incident is finally documented as if it were the Moon landing 🚀. Spoiler: and , not code, are what make Azer tick. 🏕️✨
azerkoculu.com/posts/left-pad -pad

2025-06-10

📢 Découverte de packages npm malveillants avec des portes dérobées destructrices
📝 L'équipe de recherche sur les menaces de Socket a mis en lumière une menace sérieuse concernant des packages npm malveillants...
📖 cyberveille : cyberveille.ch/posts/2025-06-0
🌐 source : socket.dev/blog/destructive-np
#malware #npm #Cyberveille

2025-06-09

🚨 Hidden backdoors found in npm packages allow attackers to remotely wipe entire systems, raising serious supply chain security concerns.

Read: hackread.com/backdoors-npm-pac

#CyberSecurity #NPM #Malware #Backdoor #DevOps

複数のMarkdownファイルを一つにまとめるCLIツール「md-concatter」を作ってみた
dev.classmethod.jp/articles/md

#dev_classmethod #Markdown #業務効率化 #業務改善 #生成AI #CLI #npm #コマンド

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst