schizoidman@lemmy.zip to Technology@lemmy.worldEnglish · edit-26 个月前Notepad++ updater installed malwarewww.heise.deexternal-linkmessage-square46linkfedilinkarrow-up1362arrow-down114file-textcross-posted to: cybersecurity@sh.itjust.works
arrow-up1348arrow-down1external-linkNotepad++ updater installed malwarewww.heise.deschizoidman@lemmy.zip to Technology@lemmy.worldEnglish · edit-26 个月前message-square46linkfedilinkfile-textcross-posted to: cybersecurity@sh.itjust.works
minus-squareasbestos@lemmy.worldlinkfedilinkEnglisharrow-up18arrow-down1·6 个月前So the private key was left in the Github source code and nobody caught it? Or was it the public key? (which makes this statement way less impactful)
minus-squareSamskara@sh.itjust.workslinkfedilinkEnglisharrow-up14arrow-down1·6 个月前Private key probably. Only the public key is not enough to sign the package.
So the private key was left in the Github source code and nobody caught it? Or was it the public key? (which makes this statement way less impactful)
Private key probably. Only the public key is not enough to sign the package.