Hacker News new | ask | show | jobs
Software supply-chain attacks are no longer rare events (wired.com)
3 points by latentframe 20 days ago
1 comments

They are not stealing the package. They are using it as a door into developer machines, CI, tokens, and customer systems.