logoalt Hacker News

moi2388today at 7:28 AM2 repliesview on HN

Because of course it’s npm


Replies

type0today at 8:11 AM

Does npm stand for "newly packaged malware"?

show 2 replies
matheusmoreiratoday at 10:24 AM

Every programming language package manager is affected. Any random person can sign up and push packages. They are all equivalent to the Arch Linux User Repository and have the exact same caveats.

show 1 reply