Supply-chain attack using invisible code hits GitHub and other repositories (via sibexico) — discussion
#security