Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Yes.

This said there are a few companies that monitor this kind of stuff in 'popular' open source packages and provide services to their customers to block packages that do things like this. Unfortunately it's pretty expensive.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: