EPISODE · Oct 3, 2025 · 1H 35M
npm under siege (what to do about it) (Changelog & Friends #111)
Over the past two months, we’ve seen some of the most serious supply chain attacks in npm history: phishing campaigns, maintainer account takeovers, and malware published to packages with billions of weekly downloads. What is going on?! What can we do about it? Our old friend, Feross Aboukhadijeh, joins us to help make sense of it all.
Embed this episode
NOW PLAYING
npm under siege (what to do about it) (Changelog & Friends #111)
0:00
1:35:20
1×
No transcript for this episode yet
Similar Episodes
No similar episodes found.
Similar Podcasts
No similar podcasts found.
Frequently Asked Questions
How long is this episode of Changelog Master Feed?
This episode is 1 hour and 35 minutes long.
When was this Changelog Master Feed episode published?
This episode was published on October 3, 2025.
Is there a transcript available for this episode?
Yes, a full transcript is available for this episode. You can read the complete transcript on the episode page.
Can I download this Changelog Master Feed episode?
Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!