No items found.
Event

OWASP St. Louis

Date
January 13, 2026
Time
6:00PM - 7:30 PM
Event Type
In person
Location
North America

Join us for the OWASP St Louis Meetup: Lessons from npm's Dark Side - These Are Not the Packages You're Looking For

Malware is all about scale and time: How can I hit the most people in the shortest time? But not all ecosystems are equally vulnerable. The JavaScript ecosystem, particularly its package manager npm, is arguably the most vulnerable to supply chain malware attacks. And with JavaScript being the language of the web, this is a problem that impacts an estimated 27.4 million developers. So what are we to do? In this session learn about:

  • Why attackers target JavaScript/npm
  • A case study of 5 attacks
  • Whether we can trust maintainers to adopt security controls (research!)
  • What you can do to protect yourself and your company from malware
The first part of the EU Cyber Resiliency Act comes into effect on September 11th. Are you ready?
The first part of the EU Cyber Resiliency Act comes into effect on September 11th. Are you Ready?
Read more
Better models are making agent patch review more expensive, not less
Agent fixes got 47% cheaper to generate. Review still costs ten times more.
Read more
GPT-6 Astra on Codex - the Biggest Codex Leap to Date
GPT-6 Astra on Codex - the Biggest Codex Leap to Date
Read more
The first part of the EU Cyber Resiliency Act comes into effect on September 11th. Are you ready?
The first part of the EU Cyber Resiliency Act comes into effect on September 11th. Are you Ready?
Read more
Better models are making agent patch review more expensive, not less
Agent fixes got 47% cheaper to generate. Review still costs ten times more.
Read more
GPT-6 Astra on Codex - the Biggest Codex Leap to Date
GPT-6 Astra on Codex - the Biggest Codex Leap to Date
Read more

Want to stay in the loop?

Sign up for our newsletter.