DEV Community

Discussion on: How do we improve security in the npm ecosystem?

Collapse
 
rhymes profile image
rhymes

Yeah but then a smart attacker would just release an innocuous major version and then slip in the malware in the next minor one.