@kemotep @dangoodin it’s about being able to prove that the binary distribution matches the source code. If the source code is already tainted it won’t help.
brown@infosec.exchange
@brown@infosec.exchange
Posts
-
Would this move by Debian, requiring byte-for-byte reproducible builds, have caught any real-world supply chain attacks seen in the past? -
The good guys with the golden key.RE: https://social.bau-ha.us/@CCC/116521750094931224
The good guys with the golden key.
-
There are millions of these single query scrapers.@bert_hubert residential proxies are a problem that cannot be easily solved, unless you block the entire Internet.