Latest Articles
Aug 7, 2026 | Supply Chain Security
Shai-Hulud Returns: ChainDrop Worm Hits npm, Infecting Hundreds of Packages
The self-propagating worm is back. This time it poisoned keyv, an npm caching library that ships in millions of builds, and it plants a second trigger that fires the next time a developer just opens the project.
Jul 24, 2026 | Cross Domain Security
Harvest Now, Decrypt Later: Why PQC and QKD Matter Today
Jul 23, 2026 | Supply Chain Security
MetaDefender Software Supply Chain™ v4.0.0: Rebuilt Interface, Smarter Risk Analysis, and Stronger Automation
Jun 8, 2026 | Industry News
CVE-2026-25049: Expression Sandbox Escape Leading to Remote Code Execution in n8n
Jun 8, 2026 | Industry News
React2Shell (CVE-2025-55182): Critical Remote Code Execution in React Server Components
Jun 2, 2026 | Supply Chain Security
Mini Shai-Hulud: TanStack, OpenAI, and the npm Supply Chain Trap
May 4, 2026 | Product Announcements
MetaDefender Software Supply Chain™ v3.3.0: Cross Domain Transfer, Expanded Integrations, and Deeper Visibility
Sign up for the OPSWAT Newsletter
Get the latest OPSWAT company updates along with event information and
the news that's driving the industry forward.