1 day ago · Tech · hide · 0 comments

A fake startup called Worklo used LinkedIn recruiters, a polished website, and a rigged take-home assignment to deliver npm supply chain malware via a private scoped package with an embedded auth token.

No comments yet. Log in to reply on the Fediverse. Comments will appear here.