TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Slopsquatting: AI Hallucinations Fuel New Class of Supply Chain Attacks

12 pointsby adriandabout 1 month ago

1 comment

sabslikesobsabout 1 month ago
I saw this in action when a friend was live-streaming while vibe coding in Javascript. He noted that dozens of unknown npm packages were installed and running unchecked on his computer (without any containerization, no less). Encouraging AI coding in containers, or with different languages, would help, but Javascript probably has the most available content.<p>Note also that this article climaxes with a &quot;by the way, did you know our product solves this issue...?&quot; ad.
评论 #43665409 未加载