Supply chain npm vs PyPI: I compared both simulations and the most dangerous vector isn't what everyone thinks

· Dev.to