Typically when an advisory about a “bad” open source software component hits the news, the story is somewhat dire - but not this time. More on Sonatype-2020-0003 - npm malicious package 1337qq-js...
Learn more about Sonatype: https://www.sonatype.com
Get a Free Software Bill of Materials: https://www.sonatype.com/appscan
Get in touch: https://www.sonatype.com/contactus
Follow us-
Facebook: / sonatype
LinkedIn: / sonatype
Twitter: / sonatype
#Sonatype