Axios — one of the most downloaded JavaScript libraries on the planet — was compromised in a supply chain attack today. It's so common that I remember it being one of the first packages I installed ...
A recently discovered Remote Access Trojan in the widely used Axios library puts millions of JavaScript developers at risk.
The Axios JavaScript NPM package was recently compromised, representing one of the highest impact supply chain attacks against the open source development ecosystem in recent months. Axios is the most ...
🚨 Critical Security Alert: Axios Has Been Compromised One of the most widely used JavaScript libraries Axios, with over 100M weekly downloads, has been hit by a highly sophisticated supply‑chain ...
The widely used Axios HTTP client library, a JavaScript component used by developers, was recently hacked to distribute malware via a compromised account. Attackers exploited a hijacked account on npm ...
A supply-chain attack on the widely used Axios JavaScript library has raised fresh concern over the fragility of open-source software distribution after attackers slipped malicious code into two ...
On March 30-31, 2026, threat actors published two malicious versions of the popular HTTP library axios (versions 1.14.1 and 0.30.4) to the npm registry. Both versions included a new dependency named ...
State-backed hackers compromised a widely used open-source JavaScript library, turning routine software updates into a delivery mechanism for attacks aimed at US companies and cryptocurrency assets.
A suspected North Korean hacker has hijacked and modified a popular open source software development tool to deliver malware that could put millions of developers at risk of being compromised. On ...
JavaScript client library for consuming OpenAPI-enabled APIs with axios. Types included. client is an axios instance initialized with baseURL from OpenAPI definitions and extended with extra operation ...