▲ 520 ▼ backdoor in upstream xz/liblzma leading to ssh server compromise (www.openwall.com) submitted 2 years ago by Atemu@lemmy.ml to c/linux@lemmy.ml 96 comments fedilink hide all child comments
[–] danielquinn@lemmy.ca 3 points 2 years ago (1 child) Why didn't this become a thing? Surely in 2024, we should be able to build packages from source and sign releases with a private key. permalink fedilink source parent hideshow 2 child comments replies: [–] Natanael@slrpnk.net 5 points 2 years ago It's becoming more of a thing but a lot of projects are so old that they haven't been able to fix their entire build process yet permalink fedilink source parent
[–] Natanael@slrpnk.net 5 points 2 years ago It's becoming more of a thing but a lot of projects are so old that they haven't been able to fix their entire build process yet permalink fedilink source parent