If you recently used Cargo, make sure your system didn't get infected. Here is another article with a little more info: https://www.stepsecurity.io/blog/arrayref-rust-crate-supply-chain-attack

you are viewing a single comment's thread
view the rest of the comments
[–] 1 point 2 days ago

JVM, ELF, Mach-O,.... binaries are infinitely worse when the attack vector is "compromised dev machine".

I'm not sure how anyone would even try to argue against that.

  • source
  • parent