(https://phpc.social/@davidbisset/110112148398329298)

50% of new #NPM packages are spam:

https://blog.sandworm.dev/one-in-two-new-npm-packages-is-seo-spam-right-now

"That is – empty packages, with just a single README file that contains links to various malicious websites."


Posted

by

Hashtags: NPM