Session

npm Account Takeovers: Preventing the next Shai-Hulud

Account takeovers - the compromise of legitimate OSS packages - were a big trend in 2025. In this talk, we look at why the npm ecosystem is a target for malware, what we can learn from several campaigns, the viability of npm security measures, and what OSS consumers can do to protect themselves.

Jenn Gile

Co-Founder, OpenSourceMalware.com

Seattle, Washington, United States

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top