Standards"Wait, this package is suddenly asking for what permissions?"
These questions started showing up in security Slack channels right after StepSecurity flagged two hijacked npm packages in the React Native ecosystem. These packages, with over 30,000 downloads per w














