Conversation

Last year, npm was compromised, and everybody had their own "easy", "obvious" solution. Looks like RubyGems was just compromised in a similar way. Back in Jan I wrote an 8,000 word postmortem on why none of the easy obvious solutions work:
7
100