cyrano@piefed.social to Technology@lemmy.worldEnglish · 1 day agoShai-Hulud Returns: Over 300 NPM Packages Infectedhelixguard.aiexternal-linkmessage-square14fedilinkarrow-up179arrow-down13file-textcross-posted to: [email protected]
arrow-up176arrow-down1external-linkShai-Hulud Returns: Over 300 NPM Packages Infectedhelixguard.aicyrano@piefed.social to Technology@lemmy.worldEnglish · 1 day agomessage-square14fedilinkfile-textcross-posted to: [email protected]
minus-squareEldritch@piefed.worldlinkfedilinkEnglisharrow-up5·1 day agoArch checking in. It may happen less. But it still does.
minus-squareorclev@lemmy.worldlinkfedilinkEnglisharrow-up7·1 day agoTo be fair to Arch, the AUR was always advertised as a caveat emptor type thing. It never really claimed to be secure in the first place.
It happens in python pip too.
Arch checking in. It may happen less. But it still does.
To be fair to Arch, the AUR was always advertised as a caveat emptor type thing. It never really claimed to be secure in the first place.
That is fair.