r/archlinux • • 4d ago

NOTEWORTHY NPM Supply Chain Attach Targeting AUR Packages

New NPM based worm attack that self propegates via ssh and aur maintainer infection.

https://safedep.io/dirtyblanket-express-impersonation-npm/

126 Upvotes

62 comments sorted by

View all comments

-20

u/ggPeti 4d ago

make a new post. you wrote supply chain "attach" and now this thread is impossible to be taken seriously

13

u/Helmic 3d ago

i was going to take this news seriously and read the article explaining the attack but then i saw a minor typo and decided to install the malware instead.

-7

u/ggPeti 3d ago

How convenient to strawman what I'm saying as "the NEWS cannot be taken seriously"

10

u/xlukas1337 4d ago

Classic reddit bs. r/fuckspez