Open Source Sabotage Incident Hits Software Supply Chain
Two widely used JavaScript packages have been hit in an act of apparent sabotage, highlighting software supply chain risks.
Marak Squires Open Source Security Top Code Debugging Code Security Github Sponsorships Mitigate Dependency
Source: esecurityplanet.com