The npm repository namespace the JavaScript runtime environment Node.js package manager is infamous for security breaches . Now, Red Hat, which, with IBM, just announced Project Lightwell , an AI powered initiative to find and fix open source software vulnerabilities, has an npm problem of its own. Also: Open source security is a mess IBM and Red Hat bet $5 billion and 20,000 engineers can fix it Dozens of JavaScript packages in the company's @redhat cloud services namespace were...