Sandworm
One In Two New Npm Packages Is SEO Spam Right Now
More than half of all new packages that are currently (29 Mar 2023) being submitted to npm are SEO spam. That is - empty packages, with just a single README file that contains links to various malicious websites.
https://datawrapper.dwcdn.net/ZkWKj/2...
https://datawrapper.dwcdn.net/ZkWKj/2...
๐ค9๐ฅ8๐3๐คฏ3๐ข2๐คฃ2๐คฌ1
New York
The New Light Is Bad
Have you started to notice, too?
๐ฉ9๐4โก3โค1๐1๐1