Web frameworks
fromSubstack
1 day agoFriday Links #31 - New JavaScript Tools and October Highlights
An open benchmark called AI-Trader shows simulated AI models can profitably trade Nasdaq-100 in a month, with DeepSeek v3.1 leading at +16.46%.
As of Tuesday, the supply-chain attack remains active, and its scope extends beyond the original 18 infected Qix packages to now include five additional compromised DuckDB and coveops/abi packages, according to JFrog. Wiz warns organizations to assume "malicious versions of popular packages are still available for download and might be automatically included in development pipelines."