Snyk社が公開した「SHA1-Hulud, npm supply chain incident」について、Snykでスキャンしてみた
https://dev.classmethod.jp/articles/snyk-sha1-hulud-npm-supply-chain-incident-snyk/
If you have a fediverse account, you can quote this note from your own instance. Search https://rss-mstdn.studiofreesia.com/users/dev_classmethod/statuses/115610272024273616 on your instance and quote it. (Note that quoting is not supported in Mastodon.)
DevelopersIO