minus-squaregrandma@sh.itjust.workstoSelfhosted@lemmy.world•Bitwarden CLI distributed through NPM has been compromised. Bitwarden Statement on Checkmarx Supply Chain Incident.linkfedilinkEnglisharrow-up22·22 hours agoEasy, just vendor all your dependencies! Can’t have a supply chain attack if you are the supply chain. linkfedilink
grandma@sh.itjust.works to Linux@lemmy.ml · 12 days agoMaybe the fr*nch aren't so bad after allplus-squarediscuss.privacyguides.netexternal-linkmessage-square33linkfedilinkarrow-up177arrow-down123
arrow-up154arrow-down1external-linkMaybe the fr*nch aren't so bad after allplus-squarediscuss.privacyguides.netgrandma@sh.itjust.works to Linux@lemmy.ml · 12 days agomessage-square33linkfedilink
Easy, just vendor all your dependencies! Can’t have a supply chain attack if you are the supply chain.