Tarnnn
@tarn__k
Full Stack SWE | 🇨🇦 🇺🇸 | YYZ - SFO | Sikh
ID: 755111728665522176
18-07-2016 18:47:20
2,2K Tweet
202 Followers
199 Following
🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest [email protected] now pulls in [email protected], a package that did not exist before today. This is a live compromise. This is textbook supply chain installer malware. axios
We agree. Thank you Treasury Secretary Scott Bessent for saying it. It's time to pass the Clarity Act. Grateful for all the bipartisan work among Senators and staff over the past several months to make this a strong bill.