
Wow! This is a truly terrifying, yet fictional scenario. Malware by npm: https://hackernoon.com/im-harvestin...

  • 2
    Yet entirely possible.
  • 2
    @ThaOneDude Thats what makes it so scary...
  • 3
    That's fucking scary
  • 1
    This is really the result of lazy developers, and getting pwned by this kind of shit is your own damn fault. If you don't know what you're installing, you're really asking for it. As the author said:

    "Lucky for me, we live in an age where people install npm packages like they’re popping pain killers."
  • 2
    @threevolve Totally agree from the service providers perspective. Not so much from the perspective of an average web user that gets his data stolen.
  • 1
Add Comment