Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
vhcr
41 days ago
|
parent
|
context
|
favorite
| on:
Keyv and friends compromised in active Shai-Hulud ...
Yes, it gets boring that each time one of these supply chain attack article appears everybody starts talking about cooldowns, 2FA, MFA, etc. Just don't give Node the permissions to your complete filesystem / network.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: