logoalt Hacker News

alkindiffietoday at 6:26 AM1 replyview on HN

> for example the stream of issues from npm et al.

Curious, what distros where affected by npm supply chain attacks?


Replies

throw_a_grenadetoday at 8:25 AM

It's npm that's affected, therefore it's not even considered when choosing language/ecosystem for writing distro tools. You'll find no sane distro writing package manager in javascript precisely to avoid this joke of a supply chain.

show 2 replies