4 ms·
we have been doing thus for a while now : https://www.sourceclear.com/blog/millions-of-program-builds-vulnerable-to-man-in-the-middle-attacks/ https://www.sourc
by codelion 10y ago
we have been doing thus for a while now : https://www.sourceclear.com/blog/millions-of-program-builds-vulnerable-to-man-in-the-middle-attacks/ https://www.sourceclear.com/blog/millions-of-program-builds-...
- hcs 10y agoGot a 404 on the above, looks like it should be: https://www.sourceclear.com/blog/millions-of-program-builds-vulnerable/ https://www.sourceclear.com/blog/millions-of-program-builds-... But I don't see where it discusses sending PRs to affected repos, only detecting them.
- codelion 10y agoAh yeah I had the old link, thanks for fixing. Actually we privately disclosure the problem to the developers and get it fixed following responsible disclosure and not post PRs directly.