Every time a developer types npm install, they are placing a bet that the package they are pulling into their project is not ...
Security experts reveal how easy it is to get fooled by this scam and what to do if you think you've been targeted.