PowerShell? More like PowerHell: Microsoft won’t fix flaws in package gallery ripe for supply chain attacks
Billions of downloads and no defense against typosquatting feels like a bad combination in this day and age
A trio of PowerShell Gallery design flaws reported to Microsoft almost a year ago remain unfixed, leaving registry users vulnerable to typosquatting and supply chain attacks, according to Aqua Nautilus.…
Author: Jessica Lyons Hardcastle. [Source Link (*), The Register]