/home/siddhi
  • Home
  • About
  • General
  • Programming
  • Startup
  • Archive
  • Home
  • About
  • General
  • Programming
  • Startup
  • Archive

More supply chain attacks, this time Axios

Posted 31st March 2026 at 10:00 am
In Programming
linkedin security javascript

Things getting wild right now. Axios probably one of the most widely used JS libraries.

The lesson from these recent supply chain attacks is you should ALWAYS pin your ALL dependencies to EXACT versions. Under no circumstance should your app pull in a newer version of a dependency unless you manually update the version in you package.json or pyproject.toml

Wes Bos tweet about Axios being compromised

Recent Articles

  • • Thinking Like a Freelancer Apr 02, 2026
  • • The Real Cost of Agentic Coding Mar 30, 2026
  • • Claude Code as My Personal Agentic Framework Mar 26, 2026
  • • LiteLLM Supply Chain Attack Mar 24, 2026

Tags

agentic-ai 2 agile 3 ai 4 artificial-intelligence 4 bangalore 1 bookreview 3 career 1 claude-code 2 coding 1 computing 1 conference 1 education 2 event 1 functional 2 haskell 1 innovation 1 javascript 2 keyboard 1 keyboards 3 knowledge-management 4 learning 1 linkedin 2 management 2 mentalmodels 1 neovim 3 networking 1 obsidian 4 openai 1 probability 2 process 1 product-management 4 productivity 1 programming 6 pyscript 1 python 14 quantum-computing 2 recursion 1 rust 1 scheme 1 security 2 selfhelp 1 softskills 1 statistics 5 tdd 2 testing 1 travel 1 unconference 2

Categories

  • General (30)
  • Programming (36)
  • Startup (5)

Share

Playful Python Twitter YouTube About

© 2026 Siddharta Govindaraj