π¨ Major active supply chain attack just hit npm. Popular package @βctrl/tinycolor was trojanized β and it didnβt stop there. Over 40 packages were silently modified to steal secrets from dev machines & CI pipelines. Our team at Socket caught it. Full reportβ¦
~ we are hiring new leads ~ 1. socials & growth 2. design Zodiac + @enclavee3 βββββββββπββββββ βββββββββββββββββββ ββββββββββββββββββ ββββββββββββββββββββ ββββββββββββββββββββββ
Rather than writing out a response or hot take to the recent assassination of Charlie Kirk, I thought it would be more interesting instead to point out two pieces of content from my library that I've been thinking about a lot in light of it. π§΅
Today marks 3 years since The Ethereum Merge.
We've always sat at the intersection of protocols distributing value and consumers earning ownership in the protocols they use and contribute to. Since launching our marketplace in early 2024, we have distributed more than $40M in tokens and ownership to userβ¦