minus-squaregrandma@sh.itjust.workstoSelfhosted@lemmy.world•Bitwarden CLI distributed through NPM has been compromised. Bitwarden Statement on Checkmarx Supply Chain Incident.linkfedilinkEnglisharrow-up22·1 day agoEasy, just vendor all your dependencies! Can’t have a supply chain attack if you are the supply chain. linkfedilink
grandma@sh.itjust.works to Linux@lemmy.ml · 13 days agoMaybe the fr*nch aren't so bad after allplus-squarediscuss.privacyguides.netexternal-linkmessage-square29linkfedilinkarrow-up178arrow-down123
arrow-up155arrow-down1external-linkMaybe the fr*nch aren't so bad after allplus-squarediscuss.privacyguides.netgrandma@sh.itjust.works to Linux@lemmy.ml · 13 days agomessage-square29linkfedilink
Easy, just vendor all your dependencies! Can’t have a supply chain attack if you are the supply chain.