top | item 45188270 (no title) deepanwadhwa | 5 months ago What makes you so sure that the exploit is over? Maybe they wanted their secondary exploit to get caught to give everyone a sense of security? Their primary exploit might still be lurking somewhere in the code? discuss order hn newest pixl97|5 months ago Well, because it is really easy to diff an npm package.The attacker had access to the user's npm repository only.
pixl97|5 months ago Well, because it is really easy to diff an npm package.The attacker had access to the user's npm repository only.
pixl97|5 months ago
The attacker had access to the user's npm repository only.