Hacker News new | ask | show | jobs
by sixtyj 19 days ago
Yes, every time I get message that some dependency is needed to update, I get anxious what could go wrong not to mention recent situation with malware or robware silent distribution.

It doesn’t matter whether it is Wordpress, Python, Nodejs, PHP, to name a few.

I understand that updates are necessary but we need to change the way we do them.

If I had a solution, I would post it here…