How npm typosquatting and dependency confusion attacks work (and how to stop them)
In February 2021, security researcher Alex Birsan published a paper describing how he had successfully deployed malicious packages to the internal build systems of Apple, Microsoft, PayPal, Shopify, a
depwarden.hashnode.dev4 min read