React Native 0.81 brings platform consistency and faster compiles

The latest version of the React Native framework is less about flashy new APIs and more about keeping pace with Android and iOS platform advancements, while also delivering some quality-of-life improvements that developers have been asking for. Perhaps the most pressing change for developers in React Native 0.81 is the framework’s alignment with the upcoming …

Python targets phantom dependencies threat with SBOM proposal

A whitepaper from the Python Software Foundation’s (PSF) own Security Developer-in-Residence, Seth Larson, sounds the alarm on “phantom dependencies” and offers a solution with the PEP 770 proposal for a SBOM. This work, sponsored by the Alpha-Omega initiative, addresses an issue first brought to mainstream attention by Endor Labs in September 2023. They came up …

RubyGems malware campaign steals passwords

Security researchers from Socket have found that a group of attackers has been exploiting the RubyGems code repository for over two years, turning seemingly helpful tools into password-stealing malware. We build amazing things using shared, open-source code, trusting that the building blocks we use are safe. But the discovery by Socket is a reminder of …

Google Sans Code font blends tech and history to boost readability

Google has released a new font called Sans Code that is designed for developers and blends tech and history to boost readability. If you spend your days staring at lines of code, you know that the little things can make a huge difference. The right chair, the right coffee, and definitely, the right font. Google …

Mistral launches full AI coding stack alongside Codestral 25.08

Mistral has rolled out a complete AI coding stack, including Codestral 25.08, that aims to solve the key problems stopping generative AI from taking hold in enterprise software development. The integrated suite of tools is designed to create a secure, customisable, and efficient AI-native development environment. While AI coding assistants have shown immense promise over …

Lazarus Group hackers increase open-source weaponisation

North Korea’s infamous Lazarus Group hackers are increasing their weaponisation of open-source software, according to a new Sonatype report. The state-sponsored hackers are hiding malicious code inside seemingly normal software packages to steal secrets from developers in advanced supply chain attacks. Since the start of 2025, researchers have found 234 unique malicious packages linked to …

Developers adopt AI tools but question their accuracy

Developers are adopting AI tools faster than ever before, but their trust in what they produce is also falling off a cliff. This is the core story from Stack Overflow’s 2025 Developer Survey, an annual check-in with the global developer community that has become a real bellwether for the industry. Drawing on the experiences of …