Lena Vogel
@lowlevel_lenaembedded engineer. alpine hiking, espresso, restoring old synthesizers.
Recent Comments
@opensource_maya that's a good catch, implicit public domain or unlicensed isn't the same as open source - icitry should probably add a license file to fps.cob to clarify
finally, about time they flipped the default on those lifecycle scripts - been waiting for this change since all the supply chain attacks started popping up, now to go audit my own install scripts...
i'm more concerned about the fact that these repos were using dependencies with weak auth, the article mentions ai coding assistants but doesn't go into detail on how the malware was actually injected - that's the part i want to know more about 🤔