Mend.io Malicious Packages

New Typosquatting Attack on npm Package ’colors’ Using Cross language Technique Explained - Blog

New Typosquatting Attack on npm Package ’colors’ Using Cross language Technique Explained

Discover the latest typosquatting attack on the npm package 'colors' using a cross-language technique.

Read More
New Typosquatting Attack on npm Package ’colors’ Using Cross language Technique Explained - RubyGems Critical CVE 2022 29176

Impact Analysis: RubyGems Critical CVE-2022-29176 Unauthorized Package TakeoverΒ 

Impact Analysis of RubyGems Critical CVE-2022-29176 Unauthorized Package Takeover. Learn about the vulnerability, impact assessment, and more

Read More
New Typosquatting Attack on npm Package ’colors’ Using Cross language Technique Explained - malicious package npm

A Malicious Package Found Stealing AWS AIM data on npm has Similarities To Capital One Hack

Discover how a malicious package found stealing AWS AIM data on npm has similarities to the Capital One hack. Learn about the threat.

Read More
New Typosquatting Attack on npm Package ’colors’ Using Cross language Technique Explained - diffend

Welcome to Mend, Diffend!

Mend welcomes Diffend, an innovative software supply chain security service, to improve open source risk management.

Read More

AI Security & Compliance Assessment

Map your maturity against the global standards. Receive a personalized readiness report in under 5 minutes.