Discussion
Loading...

#Tag

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Stefano Marinelli boosted
release_candidate
@release_candidate@mastodon.bsd.cafe  ·  activity timestamp 2 weeks ago

https://committing-crimes.com/articles/2024-09-09-jitpack/

The infosec hell was never users writing down their password in a post-it stuck to their monitor.

The true infosec hell is developers trusting centralized repositories of "open source" that nobody reads nor audits.

Again I have to battle against devs that, for pure convenience and laziness, put users and the company at the mercy of any random of the internet, with the willing to perform a supply chain attack.

#infosec #centralization #zerotrust #supplychainattack

jitpack.io — Dangerously Simple

JitPack is a package repository for JVM and Android projects. Its simplicity makes it a popular alternative to Maven Central. But this simplicity is gained at the cost of security.
⁂
More from
Leon Linhart
  • Copy link
  • Flag this post
  • Block
release_candidate
@release_candidate@mastodon.bsd.cafe  ·  activity timestamp 2 weeks ago

https://committing-crimes.com/articles/2024-09-09-jitpack/

The infosec hell was never users writing down their password in a post-it stuck to their monitor.

The true infosec hell is developers trusting centralized repositories of "open source" that nobody reads nor audits.

Again I have to battle against devs that, for pure convenience and laziness, put users and the company at the mercy of any random of the internet, with the willing to perform a supply chain attack.

#infosec #centralization #zerotrust #supplychainattack

jitpack.io — Dangerously Simple

JitPack is a package repository for JVM and Android projects. Its simplicity makes it a popular alternative to Maven Central. But this simplicity is gained at the cost of security.
⁂
More from
Leon Linhart
  • Copy link
  • Flag this post
  • Block
Alex Akselrod boosted
Inautilo
@inautilo@mastodon.social  ·  activity timestamp 2 months ago

“I gave the world wide web away for free because I thought that it would only work if it worked for everyone. Today, I believe that to be truer than ever.” — Tim Berners Lee

_____
#Business #Web #Sharing #OpenWeb #IndieWeb #SmallWeb #BigWeb #Centralization #SocialMedia #AI #Quotes

  • Copy link
  • Flag this post
  • Block
Inautilo
@inautilo@mastodon.social  ·  activity timestamp 2 months ago

“I gave the world wide web away for free because I thought that it would only work if it worked for everyone. Today, I believe that to be truer than ever.” — Tim Berners Lee

_____
#Business #Web #Sharing #OpenWeb #IndieWeb #SmallWeb #BigWeb #Centralization #SocialMedia #AI #Quotes

  • Copy link
  • Flag this post
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.1-alpha.8 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login