• rockSlayer@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    edit-2
    3 months ago

    And due to open source, it was still caught within a month. Nothing could ever convince me more than that how secure FOSS can be.

    • Lung@lemmy.world
      link
      fedilink
      arrow-up
      0
      ·
      3 months ago

      Idk if that’s the right takeaway, more like ‘oh shit there’s probably many of these long con contributors out there, and we just happened to catch this one because it was a little sloppy due to the 0.5s thing’

      This shit got merged. Binary blobs and hex digit replacements. Into low level code that many things use. Just imagine how often there’s no oversight at all