Luckily, projects using more secure language ecosystems like C and C++ are spared this kind of problems :-)
The virus fest of the 90s would like a word with you and your C
you can't get infected through the package manager if your language doesn't have a package manager :) turns out C and C++ were playing 4D chess all along
[dead]
No, instead the code that isn't from a dependency is what will cause you to get pwned