I'll be honest, if you're going to do a supply chain attack on source code repos, at least make it funny like this one
-
I'll be honest, if you're going to do a supply chain attack on source code repos, at least make it funny like this one

-
I'll be honest, if you're going to do a supply chain attack on source code repos, at least make it funny like this one

@GossiTheDog have you got a URL, I want to download this meme for my team.
-
@GossiTheDog have you got a URL, I want to download this meme for my team.
@GossiTheDog nevermind, I found a generator: Silence Crab Meme Generator https://share.google/mYbYz05RoXKs9lZI1
-
R relay@relay.infosec.exchange shared this topic on
-
I'll be honest, if you're going to do a supply chain attack on source code repos, at least make it funny like this one

@GossiTheDog I tell myself that I was raising the supply chain awareness of my team by sharing this incident just days before the trivy/aquasecurity compromise news broke: https://www.stepsecurity.io/blog/kubernetes-el-compromised-how-a-pwn-request-exploited-a-popular-emacs-package
Both compromises used the same github action vulnerability iirc.
-
@GossiTheDog I tell myself that I was raising the supply chain awareness of my team by sharing this incident just days before the trivy/aquasecurity compromise news broke: https://www.stepsecurity.io/blog/kubernetes-el-compromised-how-a-pwn-request-exploited-a-popular-emacs-package
Both compromises used the same github action vulnerability iirc.
@dubbel @GossiTheDog a few days ago I told a friend "no one would bother compromising emacs packages" and I now owe someone an apology
-
I'll be honest, if you're going to do a supply chain attack on source code repos, at least make it funny like this one

@GossiTheDog I had a brief spike in blood pressure and pulse this morning.