๐Ÿ’ฃ Destructive malware is increasingly showing up in open source packages.

Our 2025 report documents sabotage-focused attacks that delete code, break builds, and wipe repos across npm, PyPI, NuGet, and Go.

Read the full report โ†“

socket.dev/blog/2025-report-de

0

If you have a fediverse account, you can quote this note from your own instance. Search https://fosstodon.org/users/SocketSecurity/statuses/115773240545442085 on your instance and quote it. (Note that quoting is not supported in Mastodon.)