
Web News: The Shai‑Hulud Worm Attack (NPM Hack)
HTML All The Things - Web Development, AI, and Developer Careers
00:00
Dependency web risks and auto‑update danger
Discussion of nested/shadow dependencies, npm's opaque install behavior, comparisons to WordPress maturity, and why auto‑updates amplify risk when maintainers are compromised.
Play episode from 04:58
Transcript


