Hackers can bypass npmβs Shai-Hulud defenses via Git dependencies
26 January 2026 at 15:02
The defense mechanisms that NPM introduced after the 'Shai-Hulud'Β supply-chain attacks have weaknesses that allow threat actors to bypass them via Git dependencies. [...]