Supply chain attacks: the right reflexes for Laravel and JavaScript
Second article in the series. Practical steps to protect yourself as a dependency consumer, on the Composer side and the npm/yarn/pnpm side. With the real recent developments: native malware filtering in Composer 2.10, cooldowns, and the gaps that remain.

