Today, we are sharing details of recent incidents on the npm registry, the details of our investigations. These investments include the requirement of two-factor authentication (#2FA) during #authentication for maintainers and admins of popular packages on #npm, starting with a cohort of top packages in the first quarter of 2022. #cyber #threats #informatique
https://github.blog/2021-11-15-githubs-commitment-to-npm-ecosystem-security/