NPM registry prank leaves developers unable to unpublish packages

Could threat actors leverage “dependency hell” to exploit open-source software repositories?

Article Link: NPM registry prank leaves developers unable to unpublish packages | SC Media