Hacker News new | ask | show | jobs
by matbanik 25 days ago
The real vulnerability isn't the supply chain, it's the muscle memory of running install and update reflexively without reading what changed.