TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

The JavaScript Supply Chain Paradox: SRI, CSP and Trust in Third Party Libraries

6 pointsby oferzeligover 7 years ago

1 comment

Corradoover 7 years ago
It looks like this is being exploited in the wild [0].<p>[0] <a href="https:&#x2F;&#x2F;twitter.com&#x2F;mszustak&#x2F;status&#x2F;963322531729018880" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;mszustak&#x2F;status&#x2F;963322531729018880</a>