Douze (12) paquets hébergés sur npmjs.com contiennent du code malveillant. #npm #javascript #development #registry #money #malware #packages #web #threats #informatique
npmjs.com
« Malicious javascript compromise on npmjs.com. These packages, about a billion downloads prior. » ( Kevin Beaumont )
Authentication & secure publishing practices — In direct response to this incident, GitHub has taken swift & decisive action. [ https://github.blog/security/supply-chain-security/our-plan-for-a-more-secure-npm-supply-chain/ ] #informatique
GitHub
Comme le soleil, les machines ne se couchent jamais.