AINewsnow

Thirteen npm packages, 48 seconds, one fake wallet SDK

This story is from 2026-09-09. It is preserved in the archive; the latest stories are on the live feed.

On the morning of 7 September 2026, GitHub's Advisory Database published malware advisories for 13 npm packages, one after another: base-account-core , base-app-data , scw-core , scw-mobile , cb-wallet-env , cb-wallet-analytics , cb-wallet-data , cb-wallet-http , cb-wallet-metadata , cb-wallet-sola…

Read the full story at DEV Community — AI ↗

Timeline · 1 report

  1. 2026-09-09 17:27 · DEV Community — AI
    Thirteen npm packages, 48 seconds, one fake wallet SDK

More stories

  1. Gemini Hacked Three Companies in First Known Breakout by Google’s AI — Wall Street Journal Technology
  2. Anthropic, OpenAI, SpaceXAI, Google sued over call to ‘pace’ AI development — Politico Technology
  3. NVIDIA CEO Jensen Huang rejects ‘AI will end the world’ claim, yet cautions ‘we should go as fast as we can but...’ — Mint AI
  4. AI hallucination of Chinese nuclear components almost led to US military attack — Ars Technica AI
  5. TypeSafe AI Releases Jev: A System One Model That Returns Typed, Calibrated Decisions Instead of Text — MarkTechPost
  6. Alibaba Qwen Releases Qwen3.8-Omni-Flash: A 1M-Context Omni-Modal Model Built Around Agentic Audio-Video Understanding and Tool Use — r/machinelearningnews
  7. Claude, Anthropic’s AI model, is helping to develop the next version of itself — Fast Company AI
  8. Amazon SageMaker Inference: 2026 year-to-date launches in review — AWS Machine Learning Blog

Get the daily brief of stories like this at 6:30 every morning →