Avoiding npm substitution attacks - The GitHub Blog
fetched at February 12, 2021
Supply chain attacks are a reality in modern software development, but you can reduce attack surface by taking precautions and managing dependencies.