N
Hacker Next
new
past
show
ask
show
jobs
submit
login
▲
Megalodon chums the waters in 5.5K+ GitHub repo poisonings
(
theregister.com
)
5 points by
sbulaev
22 hours ago
|
2 comments
add comment
Rendered at 21:06:06 GMT+0000 (Coordinated Universal Time) with Cloudflare Workers.
danielcasper 22 hours ago
[-]
Okay, so what's the obvious solution to all this supply chain poisoning?
turtleyacht 21 hours ago
[-]
Pin deps. Integrity hashing. Wait to update to latest. Mirror through a proxy. Adhere to code scanner guidelines (--ignore-scripts).