npm under siege (what to do about it) (Changelog & Friends #111) episode artwork

EPISODE · Oct 3, 2025 · 1H 35M

npm under siege (what to do about it) (Changelog & Friends #111)

from Changelog Master Feed

Over the past two months, we’ve seen some of the most serious supply chain attacks in npm history: phishing campaigns, maintainer account takeovers, and malware published to packages with billions of weekly downloads. What is going on?! What can we do about it? Our old friend, Feross Aboukhadijeh, joins us to help make sense of it all.

Episode metadata supplied by the publisher feed · Published Oct 3, 2025

Embed this episode

NOW PLAYING

npm under siege (what to do about it) (Changelog & Friends #111)

0:00 1:35:20

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Changelog Master Feed?

This episode is 1 hour and 35 minutes long.

When was this Changelog Master Feed episode published?

This episode was published on October 3, 2025.

Is there a transcript available for this episode?

Yes, a full transcript is available for this episode. You can read the complete transcript on the episode page.

Can I download this Changelog Master Feed episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!