"All that's required is to create a malicious software package under a hallucinated package name and then upload the bad package to a package registry or index like PyPI or npm for distribution. Thereafter, when an AI code assistant re-hallucinates the co-opted name, the code will run the malware."
#ThomasClaburn, 2025
https://www.theregister.com/2025/04/12/ai_code_suggestions_sabotage_supply_chain/
(2/2)