GitHub pulls pin on npm's auto-run scripts

The Register The Register

Shai-Hulud worm exploited exactly this.

Better late than never, says everyone except the malware authors

Read full article at The Register →