JS Party: JavaScript, CSS, Web Development cover image

The massive bug at the heart of npm

JS Party: JavaScript, CSS, Web Development

00:00

How to Dig Yourself Out of This Whole Darcy Thing

AI tools like chat GPT are a real boost to developer productivity, but be careful out there. When the attacker finds a recommendation for an unpublished package, they can publish their own malicious package in its place. What about the RUSs? Rodents of unusual size? I don't think they exist.

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app