400+ AUR Packages Hijacked: What the "Atomic Arch" Campaign Means for Supply-Chain Security #CyberSecurity #OpenSource #DevSecOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383201Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383201Copy
Don't have an account? Find a server at joinmastodon.org
Jun 18, 2026 Prevent npm and Python Supply Chain Attacks on Developer Machines with Package Configs #Security #SupplyChain #DevSecOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383191Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383191Copy
Don't have an account? Find a server at joinmastodon.org
Jun 18, 2026 Mastra npm Supply Chain Attack: 140+ Packages Backdoored via easy-day-js Typosquat #Security #SupplyChain #OpenSource
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383181Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383181Copy
Don't have an account? Find a server at joinmastodon.org
Jun 18, 2026 Microsoft's durabletask PyPI Package Compromised in Supply Chain Attack #CyberSecurity #SupplyChain #DevSecOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383256Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383256Copy
Don't have an account? Find a server at joinmastodon.org
Jun 9, 2026 Miasma Worm Hits Microsoft Again: Azure Functions Action and 72 Other Repositories Disabled After Supply Chain Attack Targeting AI Coding Agents #CyberSecurity #SupplyChain #AI
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383247Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383247Copy
Don't have an account? Find a server at joinmastodon.org
Jun 9, 2026 The Hades Campaign: Graph ML PyPI Packages Deploy Cross-Platform Memory Scrapers, AI Analyst Misdirection, and a Wiper Deterrent #CyberSecurity #OpenSource #AI
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383238Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383238Copy
Don't have an account? Find a server at joinmastodon.org
Jun 9, 2026 Pythagora-io/gpt-pilot Compromised on GitHub - Shai-Hulud Credential Stealer Blocked by Python Linter #Security #OpenSource #DevOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383230Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383230Copy
Don't have an account? Find a server at joinmastodon.org
Jun 9, 2026 New in the Threat Center: Compromised Components, Now Available via API #Security #DevSecOps #SupplyChain
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383221Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383221Copy
Don't have an account? Find a server at joinmastodon.org
Jun 9, 2026 Miasma npm Supply Chain Attack: Self-Spreading Worm via Phantom Gyp #CyberSecurity #SoftwareSupplyChain #OpenSource
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383263Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383263Copy
Don't have an account? Find a server at joinmastodon.org
Jun 4, 2026 Nx Console VS Code Extension Compromised #CyberSecurity #DevSecOps #VSCode
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383309Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383309Copy
Don't have an account? Find a server at joinmastodon.org
Jun 2, 2026 Dev Machine Guard Now Scans Extensions Across Every Modern IDE #Security #DevOps #SoftwareDevelopment
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383298Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383298Copy
Don't have an account? Find a server at joinmastodon.org
Jun 2, 2026 Laravel-Lang Supply Chain Attack: Every Tag Across Multiple Composer Packages Rewritten to Steal CI Secrets #Security #SupplyChain #DevSecOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383282Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383282Copy
Don't have an account? Find a server at joinmastodon.org
Jun 2, 2026 Multiple redhat-cloud-services npm Packages compromised #Security #SupplyChain #OpenSource
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383273Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383273Copy
Don't have an account? Find a server at joinmastodon.org
Jun 2, 2026 Megalodon: Mass GitHub Actions Secret Exfiltration Across 5,500+ Public Repositories #Security #GitHub #DevOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383317Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383317Copy
Don't have an account? Find a server at joinmastodon.org
May 22, 2026 5 Supply Chain Attacks in 48 Hours: Why Securing One Layer Is Not Enough #CyberSecurity #SupplyChain #DevSecOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383326Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383326Copy
Don't have an account? Find a server at joinmastodon.org
May 21, 2026 Dev Machine Guard Now Supports Windows #Security #DevOps #Windows
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383341Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383341Copy
Don't have an account? Find a server at joinmastodon.org
May 20, 2026 Dev Machine Guard Now Supports Linux #Security #DevOps #Linux
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383335Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383335Copy
Don't have an account? Find a server at joinmastodon.org
May 20, 2026 Shai-Hulud: Here We Go Again. Mass npm Supply Chain Attack Hits the AntV Ecosystem #CyberSecurity #SoftwareSupplyChain #Npm
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383351Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383351Copy
Don't have an account? Find a server at joinmastodon.org
May 19, 2026 Active Supply Chain Attack: Malicious node-ipc Versions Published to npm #Security #SupplyChain #OpenSource
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383381Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383381Copy
Don't have an account? Find a server at joinmastodon.org
May 19, 2026 Introducing Secure Registry: install-time defense for the npm supply chain #Security #SupplyChain #DevSecOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383370Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383370Copy
Don't have an account? Find a server at joinmastodon.org
May 19, 2026 actions-cool/issues-helper GitHub Action Compromised: All Tags Point to Imposter Commit That Exfiltrates CI/CD Credentials #Security #DevOps #CICD
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383361Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383361Copy
Don't have an account? Find a server at joinmastodon.org
May 19, 2026 TeamPCP's Mini Shai-Hulud Is Back: A Self-Spreading Supply Chain Attack Compromises TanStack npm Packages #SupplyChain #Security #OpenSource
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383390Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383390Copy
Don't have an account? Find a server at joinmastodon.org
May 12, 2026 Announcing Dependabot Configuration Enhancements: Cooldown and Group Support #DevSecOps #GitHub #Security
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383464Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383464Copy
Don't have an account? Find a server at joinmastodon.org
May 4, 2026 CanisterSprawl: pgserve Compromised on npm: Malicious Versions Harvest Credentials and Exfiltrate to a Decentralized ICP Canister #Security #SupplyChain #Malware
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383457Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383457Copy
Don't have an account? Find a server at joinmastodon.org
May 4, 2026 TeamPCP Injects Two-Stage Credential Stealer into xinference PyPI Package #CyberSecurity #SupplyChain #Malware
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383450Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383450Copy
Don't have an account? Find a server at joinmastodon.org
May 4, 2026 Bitwarden CLI Hijacked on npm: Bun-Staged Credential Stealer Targets Developers, GitHub Actions, and AI Tools #Security #SupplyChain #DevOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383438Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383438Copy
Don't have an account? Find a server at joinmastodon.org
May 4, 2026 elementary-data Compromised on PyPI and GHCR: Forged Release Pushed via GitHub Actions Script Injection #Security #SupplyChain #GitHubActions
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383431Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383431Copy
Don't have an account? Find a server at joinmastodon.org
May 4, 2026 A Mini Shai-Hulud Has Appeared: Obfuscated Bun Runtime Payloads Hit SAP-Related npm Packages #CyberSecurity #SoftwareSupplyChain #BunJS
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383422Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383422Copy
Don't have an account? Find a server at joinmastodon.org
May 4, 2026 lightning: Obfuscated JavaScript Credential Stealer Bundled in PyPI Wheel #Security #SupplyChain #Malware
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383413Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383413Copy
Don't have an account? Find a server at joinmastodon.org
May 4, 2026 Shai-Hulud Worm Pivots to Multi-Cloud: intercom-client@7.0.4 Hijacked -- 361,000 Weekly Downloads, AWS, GCP, and Azure Credentials Now in Scope #CyberSecurity #CloudSecurity #DevOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383403Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383403Copy
Don't have an account? Find a server at joinmastodon.org
May 4, 2026 Top 2024 Predictions for CI/CD Security #DevSecOps #CICD #Security
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383491Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383491Copy
Don't have an account? Find a server at joinmastodon.org
Apr 12, 2026 Introducing StepSecurity Dev Machine Guard: Protecting Developer Machines from Supply Chain Attacks #Security #DevOps #SupplyChain
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383483Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383483Copy
Don't have an account? Find a server at joinmastodon.org
Apr 12, 2026 Securing Vibe Coding and AI Coding Agents: An End-to-End Approach with StepSecurity #AISecurity #DevSecOps #SoftwareSupplyChain
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383473Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383473Copy
Don't have an account? Find a server at joinmastodon.org
Apr 12, 2026 StepSecurity's Unified Protection Across the SDLC Infrastructure Threat Framework (SITF) #Security #DevSecOps #SupplyChain
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383570Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383570Copy
Don't have an account? Find a server at joinmastodon.org
Apr 9, 2026 Cline Supply Chain Attack Detected: cline@2.3.0 Silently Installs OpenClaw #Security #SupplyChain #OpenSource
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383561Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383561Copy
Don't have an account? Find a server at joinmastodon.org
Apr 9, 2026 hackerbot-claw: An AI-Powered Bot Actively Exploiting GitHub Actions - Microsoft, DataDog, and CNCF Projects Hit So Far #CyberSecurity #GitHubActions #AI
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383551Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383551Copy
Don't have an account? Find a server at joinmastodon.org
Apr 9, 2026 Datadog's DevSecOps 2026 Report Validates What We've Been Building #DevSecOps #Security #CICD
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383541Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383541Copy
Don't have an account? Find a server at joinmastodon.org
Apr 9, 2026 Dev Machine Guard Is Now Open Source: See What's Really Running on Your Developer Machine #OpenSource #Security #DevOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383531Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383531Copy
Don't have an account? Find a server at joinmastodon.org
Apr 9, 2026 axios Compromised on npm - Malicious Versions Drop Remote Access Trojan #Security #OpenSource #SoftwareSupplyChain
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383523Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383523Copy
Don't have an account? Find a server at joinmastodon.org
Apr 9, 2026 Behind the Scenes: How StepSecurity Detected and Helped Remediate the Largest npm Supply Chain Attack #CyberSecurity #SupplyChain #DevSecOps
0Boost from your server Enter the server your account is on. The post opens there so you can boost it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383510Copy
Don't have an account? Find a server at joinmastodon.org
0Favorite from your server Enter the server your account is on. The post opens there so you can favorite it.
or
Or paste this post's address into your app's search: https://robot.villas/users/stepsecurity/posts/22383510Copy
Don't have an account? Find a server at joinmastodon.org
Apr 9, 2026