News

Yesterday, a popular open-source package, Faker.js, was abruptly taken down from GitHub. Its readme simply said “What really happened to Aaron Swartz?”. Let’s take a look at why Open Source ...
This isn't the first time a developer deliberately sabotaged their own open-source code. Back in 2016, Azer Koçulu deleted a 17-line npm package called 'left-pad, 'which killed thousands of Node ...
Open source developer Marak Squires appears to have intentionally pushed corrupt updates to two of his libraries on npm and GitHub. ... Squires introduced the faker.js commit on January 4th, ...
Users of popular open-source libraries 'colors' and 'faker' were left stunned after they saw their applications, using these libraries, printing gibberish data and breaking. Some surmised if the ...
Faker.js was similarly sabotaged with the publishing of version 6.6.6. ... Apache Log4j is an open-source library that is used extensively in many Java applications.
Faker.js has been stalled due to financial difficulties, but its working capital will be solicited through the Open Source Collective, a non-profit organization that helps build a sustainable and ...
A developer sabotaged their own open-source libraries, breaking thousands of apps, ... The other, called "Faker.js," has 2.4 million weekly downloads and over 2,500 projects that use it.
Two open source libraries found on the GitHub repository have been purposefully corrupted by ... Faker, on the other hand, gets 2.8 million downloads a week on the same platform, and powers 2,500 ...