Global Feed Post Login
Replying to Avatar Mike Dilger ☑️

FYI there is a massive cyberattack on NPM right now, package developers being attacked, nasty commits being added and published, tokens being stolen and used to corrupt more packages. The ecosystem is currently widely corrupted. We just got an advisory from the NZ government about it.

Avatar
O Expedicionário 3mo ago

This seems to be the move forward https://github.blog/security/supply-chain-security/our-plan-for-a-more-secure-npm-supply-chain/

Reply to this note

Please Login to reply.

Discussion

No replies yet.