TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Ask HN: What was the story of the attempted addition of a backdoor in WebKit?

2 点作者 mmsc大约 1 年前
I finally began reading Ross Anderson&#x27;s Security Engineering book and came across a passage which notes that in 2012, Anderson heard that a volunteer working on WebKit was caught deliberately contributing vulnerable code which could later be sold to an exploit vendor.<p>I have found next to nothing about this online. Only Ross&#x27; testimony in a US court case: https:&#x2F;&#x2F;committees.parliament.uk&#x2F;writtenevidence&#x2F;61727&#x2F;html&#x2F;<p><pre><code> For example, I learned in 2012 that a volunteer to the Webkit free software project, which develops and maintains graphics software for use in browsers, had been discovered trying to sneak a vulnerability into the software, with a view to selling it later. </code></pre> Does anybody else know further details of this? Given the recent xz&#x2F;openssh backdoor attempt, I would be interested hearing what happened here.

暂无评论

暂无评论