Security News GitHub Mandates 2FA and Short-Lived Tokens to Strengthen npm Supply Chain Security TheHackerNews Daniel Bender 23 Sep 2025 GitHub enforces FIDO 2FA and seven-day token limits after Shai-Hulud npm attack to boost supply chain security.