Remix.run Logo
Malicious node-IPC Versions Published to NPM(github.com)
6 points by varunsharma07 6 hours ago | 3 comments
freakynit 5 hours ago | parent | next [-]

Why why why it's npm, almost always?

rvz 5 hours ago | parent | prev | next [-]

Not again and it is NPM once more.

> Any project that installs one of these versions, directly or transitively, will pull the compromised release.

Hope you have pinned your dependencies in your package.json.

What a disaster.

varunsharma07 6 hours ago | parent | prev [-]

[dead]