btaf45@lemmy.world to Technology@lemmy.worldEnglish · 24 hours agoHundreds of code libraries posted to NPM try to install malware on dev machinesarstechnica.comexternal-linkmessage-square28fedilinkarrow-up1207arrow-down12cross-posted to: pulse_of_truth@infosec.pubprogramming@programming.devcybersecurity@sh.itjust.works
arrow-up1205arrow-down1external-linkHundreds of code libraries posted to NPM try to install malware on dev machinesarstechnica.combtaf45@lemmy.world to Technology@lemmy.worldEnglish · 24 hours agomessage-square28fedilinkcross-posted to: pulse_of_truth@infosec.pubprogramming@programming.devcybersecurity@sh.itjust.works
minus-squareKairos@lemmy.todaylinkfedilinkEnglisharrow-up6·8 hours agoOr at the very fucking least require specific versions with checksums, like golang.
Or at the very fucking least require specific versions with checksums, like golang.