Hacker News new | ask | show | jobs
by bin_bash 1473 days ago
Any ecosystem where you’re running code from unvetted third parties is susceptible to this problem.

We either need solutions to improve the supply chain safety or never use third party dependencies.