/home/siddhi
  • Home
  • About
  • General
  • Programming
  • Startup
  • Archive
  • Home
  • About
  • General
  • Programming
  • Startup
  • Archive

More supply chain attacks, this time Axios

Posted 31st March 2026 at 10:00 am
In Programming
security javascript

Things getting wild right now. Axios probably one of the most widely used JS libraries.

The lesson from these recent supply chain attacks is you should ALWAYS pin your ALL dependencies to EXACT versions. Under no circumstance should your app pull in a newer version of a dependency unless you manually update the version in you package.json or pyproject.toml

Wes Bos tweet about Axios being compromised

Recent Articles

  • • Is Clean Code Still Relevant in the AI Age? May 04, 2026
  • • AI Agents Need Hard Boundaries Apr 24, 2026
  • • Managing Context in Agentic Coding Apr 22, 2026
  • • AI Agents Need to Learn to Forget Apr 20, 2026
  • • Are enterprise coding agents getting unaffordable? Apr 17, 2026

Tags

agentic-ai 5 agile 3 ai 9 artificial-intelligence 4 bangalore 1 bookreview 3 career 1 claude-code 2 coding 3 computing 1 conference 1 education 2 event 1 functional 2 haskell 1 innovation 1 javascript 2 keyboard 1 keyboards 3 knowledge-management 4 learning 1 management 2 mentalmodels 1 neovim 3 networking 1 obsidian 4 openai 1 probability 2 process 1 product-management 4 productivity 1 programming 6 pyscript 1 python 14 quantum-computing 2 recursion 1 rust 1 scheme 1 security 3 selfhelp 1 softskills 1 statistics 5 tdd 2 testing 1 travel 1 unconference 2

Categories

  • General (31)
  • Programming (40)
  • Startup (5)

Share

Playful Python Twitter YouTube LinkedIn About

© 2026 Siddharta Govindaraj