Open-source malware doubles, data exfiltration attacks dominate - Help Net Security (www.helpnetsecurity.com)
from kid@sh.itjust.works to cybersecurity@sh.itjust.works on 03 Apr 17:10
https://sh.itjust.works/post/35501935

#cybersecurity

threaded - newest

drspod@lemmy.ml on 03 Apr 17:55 next collapse

This is barely an article. What is Open-source malware? Are they talking about libraries that look legit but contain malware? Typo-squatting? Supply chain attacks? Compromised repositories of legit projects? Or is this actually malware that is released as open-source software so that bad actors can enjoy the freedoms of FOSS?

opalfrost@friendica.world on 03 Apr 18:01 collapse

@drspod @kid
There is a focus on open source increasing drastically.

"Sonatype blocked over 20,000 open-source malware attacks in Q1 2025, with most targeting financial services and government institutions. The decrease in 'noise' suggests that attackers are becoming more sophisticated, necessitating continuous vigilance in open-source ecosystems."
Source*
drspod@lemmy.ml on 03 Apr 18:13 collapse

That doesn’t answer the question.

opalfrost@friendica.world on 03 Apr 18:18 collapse

@drspod
Yes it does.
It is your perception you better start to thumb down..

[deleted] on 03 Apr 18:23 next collapse

.

[deleted] on 03 Apr 19:54 collapse

.