Rather than copying a trusted name letter-for-letter, attackers now increasingly build names that look adjacent to a legitimate project. Sonatype recorded suffix addition as the single most common ...