Hacker News new | ask | show | jobs
by arianvanp 14 days ago
Given they use nx my bet is on developer laptop compromise through the nx vscode extension that also compromised GitHub engineer's laptop
1 comments

the security of their packages should not depend on one laptop being compromised