back to article Snyk appears to deploy 'malicious' packages targeting Cursor for unknown reason

Developer security company Snyk is at the center of allegations concerning the possible targeting or testing of Cursor, an AI code editor company, using "malicious" packages uploaded to NPM. Paul McCarty, a security researcher at SourceCodeRed.com, said he made the "strange" finding during a malicious package detection routine …

  1. Missing Semicolon Silver badge

    Looks like npm has the same problem that Pypi does.

    But this time, it is due to lousy code in npm install.

    Pypy is broken by design.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Other stories you might like