Open Source Security

By Josh Bressers

PyTorch and NPM get attacked, but it's OK

=> 🔊 Play episode (35 min) | Direct episode link | 💬 Share episode

Published January 28, 2024 6:00pm

Josh and Kurt talk about an attack against PyTorch and NPM. The PyTorch attack shows the difficulty of trying to operate a large open source project. The NPM problem is one of the difficulty in trying to backdoor open source. A lot of people are watching and it only takes one person to notice a problem and we all benefit. Show Notes Peanut Butter the dog plays Gyromite The Wizard movie PyTorch supply chain attack npm Package Found Delivering Sophisticated RAT Deceptive Deprecation: The Truth About npm Deprecated Packages Changing a lightbulb Spelunking the Bitcoin Blockchain...

=> Return to podcast

Proxy Information
Original URL
gemini://rocketcaster.xyz/episode/18658822704
Status Code
Success (20)
Meta
text/gemini
Capsule Response Time
6665.714404 milliseconds
Gemini-to-HTML Time
1.274102 milliseconds

This content has been proxied by September (3851b).