BlendIT - BSD Cafe
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
@abobla@lemm.ee to Linux@lemmy.ml •
edit-2
5 days ago

Malicious Go Modules Deliver Disk-Wiping Linux Malware in Advanced Supply Chain Attack

thehackernews.com

external-link
message-square
27
fedilink
  • cross-posted to:
  • linux@programming.dev
204
external-link

Malicious Go Modules Deliver Disk-Wiping Linux Malware in Advanced Supply Chain Attack

thehackernews.com

@abobla@lemm.ee to Linux@lemmy.ml •
edit-2
5 days ago
message-square
27
fedilink
  • cross-posted to:
  • linux@programming.dev
Malicious Go Modules Discovered Wiping Linux Systems in New Supply Chain Attack
thehackernews.com
external-link
Cybersecurity firm Socket has recently uncovered a set of malicious Go modules capable of delivering a destructive disk-wiping payload.

Packages:

  • github.com/truthfulpharm/prototransform
  • github.com/blankloggia/go-mcp
  • github.com/steelpoor/tlsproxy
  • @krakenfury@lemmy.sdf.org
    link
    fedilink
    English
    40•5 days ago
    • PyPi
    • npm
    • Maven Central
    • Docker Hub
    • Artifact Hub
    • PPA
    • AUR

    The problem isn’t specific to anything. It’s also not specific to malware. Vulnerabilities are just as dangerous, if not more so.

    • @FurryMemesAccount@lemmy.blahaj.zone
      link
      fedilink
      7•4 days ago

      Cargo also has a --git option but I suppose it’s not default behavior

      • @krakenfury@lemmy.sdf.org
        link
        fedilink
        English
        2•4 days ago

        Sure! My point is that hosting doesn’t really matter, though. Malware and vulnerabilities are introduced at all points of supply chains.

        • @FurryMemesAccount@lemmy.blahaj.zone
          link
          fedilink
          3•4 days ago

          I agree, I was just giving another example to raise awareness about that feature of rust.

Linux@lemmy.ml

!linux@lemmy.ml

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !linux@lemmy.ml

From Wikipedia, the free encyclopedia

Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).

Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.

Rules

  • Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.
  • No misinformation
  • No NSFW content
  • No hate speech, bigotry, etc

Related Communities

  • !opensource@lemmy.ml
  • !libre_culture@lemmy.ml
  • !technology@lemmy.ml
  • !libre_hardware@lemmy.ml

Community icon by Alpár-Etele Méder, licensed under CC BY 3.0

  • 1.47K users / day
  • 4.04K users / week
  • 8.29K users / month
  • 17.4K users / 6 months
  • 54K subscribers
  • 1.76K Posts
  • 36.3K Comments
  • Modlog
  • mods:
  • @AgreeableLandscape@lemmy.ml
  • @nooter692@lemmy.ml
  • @MarcellusDrum@lemmy.ml
  • Arthur Besse
  • Cyclohexane
  • @d3Xt3r@lemmy.nz
  • UI: unknown version
  • BE: 0.19.3
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org