126 OSS Project pushed malware in an update, which wipes your disk if you happen to have Russian or Belorussian IP address (media.kotakuinaction2.win) posted 2 years ago by Senketsu 2 years ago by Senketsu +126 / -0 104 comments download share 104 comments share download save hide report block hide replies
Can someone explain to me what this project does? Its it an OS type thing? It seems odd that it would have the kind of access needed to change people's desktop.
Software developers use package managers like npm (javascript) in order to easily retrive useful libraries for their app development.
Unfortunately, they often choose to install/run this software as root, which means it can do literally anything on their system.
If you don’t run it as root, you are immune to this developer’s shenanigans.
so it was a massive case of lasiness/pebcak with these ngo devs, in essense?
Very much so. Developers are very lazy these days.