Skip to content

npm attack: calamity averted, what now?

Protect yourself from malicious "phish" swimming upstream in OSS package consumption.

npm attack: calamity averted, what now?
Image credit: https://unsplash.com/@pinjasaur

A successful phishing attack on a single developer let hackers inject malicious code into open-source software that is downloaded over two billion times per week. A potentially cataclysmic supply chain incident was only averted because the attackers deployed easily spotted malware. 

This content is for members only

Subscribe
Add The Stack on Google