cm0002@lemmings.world to Opensource@programming.dev · 2 days agoTwo different attackers poisoned popular open source tools - and showed us the future of supply chain compromisewww.theregister.comexternal-linkmessage-square2linkfedilinkarrow-up150arrow-down10
arrow-up150arrow-down1external-linkTwo different attackers poisoned popular open source tools - and showed us the future of supply chain compromisewww.theregister.comcm0002@lemmings.world to Opensource@programming.dev · 2 days agomessage-square2linkfedilink
minus-squareOisteink@lemmy.worldlinkfedilinkarrow-up14·2 days agoDev-ops where compromised. Where they believe pulling in new releases without vetting into your environment is good practice…? We dont even patch windows without vetting…. Why do you do that in your dev env???
Dev-ops where compromised.
Where they believe pulling in new releases without vetting into your environment is good practice…?
We dont even patch windows without vetting…. Why do you do that in your dev env???