May 03 2022 Poisoned packages: NPM developer reputations could be leveraged to legitimize malicious software Source Faulty invitation mechanism enabled ‘package planting’ attacks [...]