Do you review changes in auto-generated lock files such as package-lock.json? If not, attackers might be exploiting the cognitive load of reviewing auto-generated changes to introduce malware in code
Share this post
Lockfile Poisoning: An Attack Vector to…
Share this post
Do you review changes in auto-generated lock files such as package-lock.json? If not, attackers might be exploiting the cognitive load of reviewing auto-generated changes to introduce malware in code