TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

NPM run hack:me – a supply chain attack journey

3 pointsby ronxjansen2 months ago

1 comment

ronxjansen2 months ago
I got hacked a week ago. I did pretty extensive technical research on how they pulled it off and what I (&#x2F;we) can try to prevent this from happening in the future, or at least minimise the scope as much as possible.<p>I hope this will help a few others, either by bringing more attention to how vulnerable the whole Node.js ecosystem is or just to help more people become aware how attackers try to play you.