Popular JavaScript developer tool removes malicious package that tried to steal data, in latest attack on software supply chain

Popular JavaScript developer tool removes malicious package that tried to steal data, in latest attack on software supply chain
But Google-backed Kotlin is fastest-growing language in percentage terms, while Python and Java continue to add developers at a steady clip
Soft skills still top of the requirement list for tech employers, according to data from online career and hiring marketplace Digital Profile. Learn which skills your business needs to stay competitive and profitable.
Data science and AI help Python grow to the second most popular language on GitHub this year, while Google's Dart and Mozilla's Rust show strongest growth
Mozilla has removed features that exposed the browser to code injection attacks via its about: pages and JavaScript's 'dangerous' eval() function
Popular JavaScript library injected with malicious code to steal coins from cryptocurrency wallet
The bug could allow hackers to use Edge to launch malicious Javascript code, getting around a security feature introduced last year
IN DEPTH: Node.js, the JavaScript runtime of choice for high-performance, low latency apps, continues to gain popularity among developers on the strength of JavaScript
Linux Foundation will oversee the JS Foundation's bid to act as a hub for the JavaScript community as projects become more important to business
A newly discovered ransomware variant does away with downloading a malicious file, carrying out the dirty work itself
JavaScript vulnerability had put users at risk of encountering malware when browsing eBay items
Flaw in eBay custom descriptions could allow for the execution of malicious JavaScript, but no fix appears to be on the horizon
Google security researcher reveals vulnerability in Trend Micro security software
By January 2016, Microsoft will have opened Edge’s ChakraCore repository onto GitHub
Amazon Web Services' new SDK for JavaScript allows browser-based applications to make direct calls to AWS services without the need for server-side code
Snap.svg, a JavaScript library for interactive SVG content, is now available on GitHub
Microsoft and its partners have launched BrowserSwarm, an open-source tool for testing JavaScript frameworks
Malware used to identify Tor users contacted an IP address owned by US government agency, researchers claim
Google has created a tool to fix software programs that fail to release computer memory back to the operating system
Mozilla's mobile platform is 100 percent open, but developers can make money, says Brendan Eich
Code will be executed on Twitter servers, not in users' browsers
Visual Studio 11, Microsoft's flagship development platform with Windows 8 support, will include improved support for JavaScript developers
Yahoo has open-sourced its Mojito JavaScript framework to give developers a platform-flexible HTML5 toolset
Matthew-Baxter Reynolds -- author of ?Multimobile Development: Building Applications for iPhone and Android? and ?Multimobile Development: Building Applications for Windows Phone 7 and BlackBerry -- presents this jQuery Mobile course for Skills Matter.
A poisoned Website is tricking innocent visitors into becoming an unwitting part of the Anonymous DDoS army
Facebook said it has identified the people who used a cross-site scripting vulnerability to spam users
Drive-by attackers injected JavaScript code that sent MySQL.com visitors to a site hosting BlackHole malware
An outbreak of SQL injection attacks has infected over 380,000 sites
Google is working on a fix to a zero-day flaw that could see Android users' data being accessed by hackers
Exploits are getting more complex, reports HP TippingPoint DVLabs, Qualys and The SANS Institute