Replies: 1 comment
-
Many thanks @KevinD-87! I didn't know about that!!! |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
While setting up package source mapping for my project, I noticed the Neuroglia package prefix was not reserved on nuget.org.
This opens up the possibility for a bad actor to basically hijack your packages and publish newer versions with the possibility of adding malware.
You can find more info about this here: https://learn.microsoft.com/en-us/nuget/nuget-org/id-prefix-reservation
So I'd like to raise the idea of reserving this prefix for your company to protect your packages against such attacks. There's no cost attached in doing so.
Beta Was this translation helpful? Give feedback.
All reactions