Jules performs better than Gemini CLI despite using the same model, and more like Claude Code and OpenAI Codex.
Attackers are exploiting a major weakness that has allowed them access to the NPM code repository with more than 100 credential-stealing packages since August, mostly without detection.