←back to thread

1369 points universesquid | 1 comments | | HN request time: 0.22s | source
Show context
dist-epoch ◴[] No.45170028[source]
Given that most of these kind of attacks are detected relatively quickly, NPM should implement a feature where it doesn't install/upgrade packages newer than 3 days, and just use the previous version.
replies(3): >>45170138 #>>45170232 #>>45170382 #
1. ◴[] No.45170382[source]