Open source software is the backbone of much of what we use online. But recent incidents remind us that our supply chains are only as strong as their weakest links. In early September, attackers gained access to a popular NPM maintainer’s account and pushed malicious updates to 18 widely used packages. These packages are downloaded










