• @jas0n
    link
    English
    1029 days ago

    xz attack was an open source attack and it would be silly to assume that it was unique.

    • @aidan
      link
      English
      -129 days ago

      This has nothing to do with xz

      • @TheGrandNagus
        link
        English
        1029 days ago

        I don’t think you understood their point.

        • @aidan
          link
          English
          128 days ago

          What did I miss?

          • @jas0n
            link
            English
            128 days ago

            In response to:

            Moreover, the claim that they can harm the software is unwarranted because it is OPEN and many eyes are on it.

            The xz attack was an intentional backdoor put into a project that was “OPEN and many eyes are on it.” Also, it was discovered due to the way it was executing and not because someone found it in the source. The original assumption has been proven wrong.

            • @aidan
              link
              English
              126 days ago

              Oh, yep I didn’t see that. Though definitely more eyes are on Linux than were on xz