

With cryptography. X.509 is trash. They should pin the public key.


With cryptography. X.509 is trash. They should pin the public key.


Packages are reviewed by package maintainers.
Humans are required to solve a malicious insider. But most supply chain vulns of these shitty software dependency managers were resolved decades ago by freely available cryptography


I think you need to throw out the Samsung TV to be secure


That actually makes sense.
So they learned they can’t replace the workers that actually do the profit-generating labour for businesses, but they can replace middle management with AI.


I would definitely take a selfie with trump…as his body swings from a noose.


Anastasiia Lopata, Mai Nirundorn, Aysegul Mert, Sarah Branicki and Alexandra Vecic; in the middle row: Tatum Buffington, Guillermina Grant, Haley Gaudette and Sofia Rojas; and in the front row: Mell Reasco and Hayden Mulberry.
Name and shame. You shouldn’t have accepted an invite to the home of a pedophile fascist. Just tell him to fuck off.


Jellyfin is available in apt


A package manager that uses cryptographic signatures. Apt had this since 2005 iirc. Use apt.


Full VM and network isolation. and dont put anything important there (nor a reused password for auth)


That seems like a reason to fire her, but not becaaue she has a legal side hussle unrelated to her day job


Was that stated in the article? Or are you just making it up?


What did she fuck up?


Why was she placed on leave?


Don’t. Use. Npm.
That applies to pip and crate and all the other shitty lang package managers that totally fail at security


As in, “you can say it but he’ll never hear it”
Yep. And so many workplaces have had security vulnerabilities caused by dumb decisions that could have been easily avoided