It seems like attackers have discovered a way to leverage NPM packages to deliver malicious binaries without needing to make any changes to the NPM package itself.
It seems like attackers have discovered a way to leverage NPM packages to deliver malicious binaries without needing to make any changes to the NPM package itself.
1 Comments
Unicent@discuss.tchncs.de · 3 pts · 3y
Interesting! I wonder how much of this is already happening that people just haven't noticed yet.