Why Nostr? What is Njump?
2024-03-30 12:09:49
in reply to

Kevin Beaumont on Nostr: How far the rabbit hole goes - back in 2021 they deliberately introduced an obvious ...

How far the rabbit hole goes - back in 2021 they deliberately introduced an obvious vulnerability in the compression library libarchive. Nobody noticed. This is shipped in a ton of systems:
https://github.com/libarchive/libarchive/pull/1609

Whoever the threat actor is knows what they are doing as they’ve gone after chained dependencies around compression.
Author Public Key
npub176rs4lx7gjqwepgg75psfpv7zjj3xz0lyj4n7rux93ftm390sars6fkwlw