The Manifest

Episode 9: Typosquatting with Adam Baldwin


Listen Later

Wherein we discuss typosquatting and other security matters with Adam Baldwin, of Lift security and the Node Security Platform. We cover what kind of exploits people are trying, speculate about how blockchains may well be the answer, and unsuccessfully attempt to start a turf war between various package managers.

Special Guest: Adam Baldwin.

Links:

  • ^Lift Security
  • npm registry
  • Typo.js on GitHub
  • 52% of All JavaScript npm Packages Could Have Been Hacked via Weak Credentials
  • Have I been pwned?
  • Protect your npm account with two-factor authentication
  • Typosquatting programming language package managers
  • Shellshock
  • Dependency CI
  • The Update Framework
  • package.community
  • crossenv malware on the npm registry
  • Node Security Platform
  • Yarn
  • Adam Baldwin on Twitter
  • Adam Baldwin on GitHub
...more
View all episodesView all episodes
Download on the App Store

The ManifestBy Andrew Nesbitt and Alex Pounds

  • 5
  • 5
  • 5
  • 5
  • 5

5

4 ratings