<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Npm on Terminal Wars</title><link>https://terminalwars.com/tags/npm/</link><description>Recent content in Npm on Terminal Wars</description><generator>Hugo -- gohugo.io</generator><language>en</language><managingEditor>ender@terminalwars.com (Ender)</managingEditor><webMaster>ender@terminalwars.com (Ender)</webMaster><copyright>© 2013-2026 Terminal Wars</copyright><lastBuildDate>Sat, 04 Apr 2026 20:00:00 -0400</lastBuildDate><atom:link href="https://terminalwars.com/tags/npm/index.xml" rel="self" type="application/rss+xml"/><item><title>Supply Chain Attacks: LiteLLM, PyPI, and Axios</title><link>https://terminalwars.com/posts/supply-chain-attacks-litellm-pypi-axios/</link><pubDate>Sat, 04 Apr 2026 20:00:00 -0400</pubDate><author>ender@terminalwars.com (Ender)</author><guid>https://terminalwars.com/posts/supply-chain-attacks-litellm-pypi-axios/</guid><description>LiteLLM backdoored through a poisoned security scanner. PyPI flooded with hundreds of malicious packages. Axios compromised by North Korean state actors. The supply chain is under siege.</description><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://terminalwars.com/posts/supply-chain-attacks-litellm-pypi-axios/featured.png"/></item></channel></rss>