Someone was typosquatting npm libraries to steal env vars. Check your libraries and roll your secrets.https://iamakulov.com/notes/npm-malicious-packages/ …
Replying to @0xdabbad00 @diogomonica
And stop putting secrets in the environment! Even without malware, it puts them at a high risk of exposure through otherwise-harmless vulns.
4:32 PM - 2 Aug 2017
0 replies
0 retweets
2 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.