ugh, npm has the same issue
Phishing for development packages. This is not good at all, especially if it becomes a trend. And after that report, it likely will.
-
-
-
Rust doesn’t do any better. “cargo install” can run any code. That’s really scary if malicious crates ever get uploaded.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.