Episode

Risky Bulletin: Damaging worm rips through npm ecosystem

Podcast
Risky Bulletin
Published
May 13, 2026
Duration seconds
469
Processing state
not_requested
Canonical source
https://risky.biz/RBNEWS563/
Audio
https://dts.podtrac.com/redirect.mp3/media3.risky.biz/RBNEWS563.mp3
JSON
/v1/public/podcasts/risky-bulletin-5423259/episodes/risky-bulletin-damaging-worm-rips-through-npm-ecosystem
Markdown
/podcast/risky-bulletin-5423259/risky-bulletin-damaging-worm-rips-through-npm-ecosystem.md

Actions

  • POST https://stenobird.com/v1/public/podcasts/risky-bulletin-5423259/episodes/risky-bulletin-damaging-worm-rips-through-npm-ecosystem/transcription-requests
    Idempotently request low-priority transcript generation for this episode.
  • GET https://stenobird.com/podcast/risky-bulletin-5423259/risky-bulletin-damaging-worm-rips-through-npm-ecosystem.md
    Read the agent-friendly Markdown representation of this episode resource.

Summary

RubyGems disables sign-ups after an attack on staff, Instructure paid the ransom, the Gentlemen ransomware operation gets hacked, and another major supply chain attack on npm (yawn).