Discussion
Loading...

Post

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
jbz
@jbz@indieweb.social  ·  activity timestamp 2 weeks ago

🐺 Wolves in the Repository: A Software Engineering Analysis of the XZ Utils Supply Chain Attack

「 a new breed of supply chain attack that manipulates software engineering practices themselves – from community management to CI/CD configurations – to establish legitimacy and maintain long-term control 」

https://arxiv.org/pdf/2504.17473

#xzutils #supplychainattack #opensource

  • Copy link
  • Flag this post
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.0-rc.2.21 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login