| by Arround The Web | No comments

Hijacking of Popular ctx and phpass Packages Reveals Open Source Security Gaps

Ax Sharma, Senior Security Researcher at Sonatype, talks about the tactics used by the researcher Yunus Aydin (aka “SockPuppets”) and what they revealed about the security gaps that can be misused to mount supply chain compromises affecting the open source community. He also offers advice for users of third-party open source packages.

The post Hijacking of Popular ctx and phpass Packages Reveals Open Source Security Gaps appeared first on Linux Today.

Share Button

Source: Linux Today

Leave a Reply