Megalodon chums the waters in 5.5K+ GitHub repo poisonings(theregister.com)

5 分 | 作者 sbulaev 17小时前

1 条评论

  • danielcasper 17小时前
    Okay, so what's the obvious solution to all this supply chain poisoning?
    • turtleyacht 17小时前
      Pin deps. Integrity hashing. Wait to update to latest. Mirror through a proxy. Adhere to code scanner guidelines (--ignore-scripts).