TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Sabotage: Code added to popular NPM package wiped files in Russia and Belarus

4 pointsby oakesm9about 3 years ago

2 comments

traszabout 3 years ago
If it killed anyone in a way that harms Russia - the country - it would be a good thing. A justified collateral damage.
ajucabout 3 years ago
&gt; What if the deleted files are actually mission critical that can kill others?<p>Russia started an aggressive war. It targets civilians in big cities. It uses thermobaric bombs and cluster munition in cities. It shells people escaping through agreed &quot;humanitarian corridors&quot;. It shoots civilians protesting the occupation. Can you blame Ukrainians for defending themselves any way they can think of?<p>You cannot start a war and complain that the defender kills your people. Complain to Putin to stop the war not to the defenders.<p>Also if you use automatically updated libraries in mission critical software you should really reconsider career choices.<p>&gt; That said, intentional abuse such as this undermines the global open source community and requires us to flag impacted versions of node-ipc as security vulnerabilities.<p>Sure, whatever. Global open source community is part of global homo sapiens community. And that community is already undermined by the aggressive war started by Russia. There won&#x27;t be a &quot;global open source community&quot; if WW3 starts.
评论 #30756160 未加载