npm Package Lottie-Player Compromised in Supply Chain Attack

A targeted supply chain attack involving the widely used npm package @lottiefiles/lottie-player has been uncovered, highlighting vulnerabilities in software dependencies. According to research published by ReversingLabs last week, malicious versions of the package were released earlier this year. Key Details…

Sony is reportedly working on a PS5 portable

Bloomberg reports that Sony is “in the early stages” of work on a fully portable console that can play PlayStation 5 software. The device is still “likely years away from launch,” according to “people familiar with its development” that spoke…