voidzero on Nostr: Linux depending on small projects like xz is not an issue in and of itself – ...
Linux depending on small projects like xz is not an issue in and of itself – malicious code can be committed by anyone, individuals, universities, big corporations, state actors. If the fallout from the xz-debacle turns out to be $bigcorp pulling power to themselves, for example by going the "we can only trust commercial vendors who out of the good of their hearts contribute to foss", that will leave a very bad taste in my mouth.
Published at
2024-03-31 01:18:55Event JSON
{
"id": "41c0548735caff8dfcf3c1c99eb5f2fc5f6f978c15f29f83e68c7d340489e1eb",
"pubkey": "fcb8ec62917766e114723be5a00bf9d39d249b361d1c1a217cdb06e29eb9fd9b",
"created_at": 1711847935,
"kind": 1,
"tags": [
[
"proxy",
"https://podcastindex.social/users/voidzero/statuses/112187666268641572",
"activitypub"
]
],
"content": "Linux depending on small projects like xz is not an issue in and of itself – malicious code can be committed by anyone, individuals, universities, big corporations, state actors. If the fallout from the xz-debacle turns out to be $bigcorp pulling power to themselves, for example by going the \"we can only trust commercial vendors who out of the good of their hearts contribute to foss\", that will leave a very bad taste in my mouth.",
"sig": "9674d2dfa4c5bef07bd65499d85a885e6b92a25e6c891b6a785af36c1e2d13431f5ee16562a98c6048f5225be5491447c2783268e6575fc7b1fba652fead7425"
}