schnurrito@discuss.tchncs.de to Cybersecurity@sh.itjust.worksEnglish · 11 days agoDozens of Red Hat packages backdoored through its official NPM channelarstechnica.comexternal-linkmessage-square19linkfedilinkarrow-up1105arrow-down12
arrow-up1103arrow-down1external-linkDozens of Red Hat packages backdoored through its official NPM channelarstechnica.comschnurrito@discuss.tchncs.de to Cybersecurity@sh.itjust.worksEnglish · 11 days agomessage-square19linkfedilink
minus-squareBoofStroke@sh.itjust.workslinkfedilinkEnglisharrow-up27·11 days agoIt’s a “package manager” that has zero integrity checks built in. Web devs also love it. Nice combination.
It’s a “package manager” that has zero integrity checks built in. Web devs also love it. Nice combination.
Culture problem imo.