Hacker News new | ask | show | jobs
by tored 1559 days ago
At the same those folders are probably the biggest backdoor into your system if you are a software developer, software developers are smart enough to not download crap from the internet, but they will gladly run npm install with full user privileges.