Ranter
Join devRant
Do all the things like
++ or -- rants, post your own rants, comment on others' rants and build your customized dev avatar
Sign Up
Pipeless API
From the creators of devRant, Pipeless lets you power real-time personalized recommendations and activity feeds using a simple API
Learn More
Comments
-
This will only get worse btw. A power struggle is occurring worldwide. American media is shitting themselves because the people have had enough. Right now millions of Brazilians are pushing for election accountability. I expect this to overflow after the 8th into the USA. Buckle up buttercup. The propaganda is going to be epic.
-
@C0D4 I can't argue with the experts, they said 200 so I can't add additional zeros 😂
-
Uhm.
Yeah.
Supply chain attacks, just with a different vector.
Same for node packages / pypi packages with slightly different naming, wrong instruction site for setting up repositories, ... and so on.
Don't trust anything and triple check. -
Remember I said this would get worse:
https://blog.phylum.io/pypi-malware...
The people behind this shit are now targeting devs misspelling package names. I have to assume there are similar attack vectors for npm and other large package managers. Like maybe apt-get.
Security experts have discovered hundreds of fake websites which are being used to spread dangerous malware for Android and Windows devices. A "vast" network of over 200 internet pages, which impersonate 27 brands such as household names like TikTok, PayPal and Snapchat, are being used to spread a vicious bug which can empty out bank accounts. These bogus websites feature the notorious ERMAC banking trojan which is capable of stealing sensitive login details for 467 online banking and cryptocurrency apps.
rant