Shai-Hulud 2.0 exploited CI/CD pipelines in 2025, exposing shift-left flaws and driving curated catalogs to reduce CVE risk by 99%.
The infamous GlassWorm malware has infected dozens more Open VSX software packages, according to new research.