On April 22, the Department of Agriculture signed a $300 million “blanket purchase agreement” with Palantir Technologies Inc.
Packagist packages hid malicious package.json scripts, enabling Linux binary execution during installs and workflows.