Malicious node-IPC Versions Published to NPM
1–4 of 4 posts
Re: Malicious node-IPC Versions Published to NPM
#2[dead]
Re: Malicious node-IPC Versions Published to NPM
#3Not again and it is NPM once more.
> Any project that installs one of these versions, directly or transitively, will pull the compromised release.
Hope you have pinned your dependencies in your package.json.
What a disaster.
Re: Malicious node-IPC Versions Published to NPM
#4Why why why it's npm, almost always?