Popular NPM Package Updated to Wipe Russia, Belarus Systems to Protest Ukraine Invasion

In The Hacker News - Original news source is thehackernews.com by Blog Writer

Post Sharing
In what’s an act of deliberate sabotage, the developer behind the popular “node-ipc” NPM package shipped a new tampered version to condemn Russia’s invasion of Ukraine, raising concerns about security in the open-source and the software supply chain.
Affecting versions 10.1.1 and 10.1.2 of the library, the alterations introduced by its maintainer RIAEvangelist brought about undesirable behavior