minus-squarewkk@lemmy.worldtoProgramming@programming.dev•Hundreds of code libraries posted to NPM try to install malware on dev machineslinkfedilinkarrow-up13·16 days agoPython with PyPI, C# with Nuget, Docker with Dockerhub, Java with Maven Central, hell even just regular Linux packages from dodgy repositories… Supply chain attacks concern almost everything everyone everywhere. linkfedilink
Python with PyPI, C# with Nuget, Docker with Dockerhub, Java with Maven Central, hell even just regular Linux packages from dodgy repositories…
Supply chain attacks concern almost everything everyone everywhere.