Sponsored: What npm 12 fixes… and what it doesn’t
Show notes
In this Risky Business sponsored interview, Casey Ellis chats with Socket founder Feross Aboukhadijeh about npm 12’s move to disable install scripts by default. Attackers are already shifting payloads into package source code, and Feross explains why teams need to understand what third-party code actually does before allowing it into their environments.
Show notes
← Previous
Risky Bulletin: US will let private companies carry out offensive cyber ops
Next →
Risky Bulletin: The EU publishes its upcoming cybersecurity standards