正在发声
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
lemmyreader@lemmy.ml to Security@lemmy.ml · 3 years ago

Invisible npm malware - evading security checks with crafted versions | JFrog

jfrog.com

external-link
message-square
0
link
fedilink
0
external-link

Invisible npm malware - evading security checks with crafted versions | JFrog

jfrog.com

lemmyreader@lemmy.ml to Security@lemmy.ml · 3 years ago
message-square
0
link
fedilink
Invisible npm malware - evading security checks with crafted versions
jfrog.com
external-link
The npm CLI has a very convenient and well-known security feature – when installing an npm package, the CLI checks the package and all of its dependencies for well-known vulnerabilities – The check is triggered on package installation (when running npm install) but can also be triggered manually by running npm audit. This is an …
alert-triangle
You must log in or # to comment.
  • duskfall@lemmy.worldBanned
    link
    fedilink
    arrow-up
    1
    ·
    edit-2
    7 months ago

    Removed by mod

Security@lemmy.ml

security@lemmy.ml

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

Confidentiality Integrity Availability

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 31 users / day
  • 34 users / week
  • 83 users / month
  • 428 users / 6 months
  • 1 local subscriber
  • 6.11K subscribers
  • 224 Posts
  • 128 Comments
  • Modlog
  • mods:
  • ghost_laptop@lemmy.ml
  • BE: 0.19.12
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org