NPM, part of GitHub, announced a new version of the npm package manager with several security improvements, including disabling install scripts
First seen on infosecurity-magazine.com
Jump to article: www.infosecurity-magazine.com/news/github-update-npm-supply-chain/
![]()

