• w3dd1e@lemm.ee
    link
    fedilink
    arrow-up
    5
    ·
    2 days ago

    Thanks for posting. I was literally l looking for updates on this recently and couldn’t find anything. I was worried that it might have been forgotten about

    • HayadSontOP
      link
      fedilink
      arrow-up
      2
      ·
      1 day ago

      Thanks for posting.

      It has been my pleasure!

      I was worried that it might have been forgotten about

      The XZ utils supply chain attack has actually made the community more wary of blobs. Some projects were even prompted to come clean on this matter.

      Fedora has also recently made a push towards reproducible builds. In the lwn.net article that discussed that push, one of Fedora’s spokespeople explicitly said that it would help combat supply chain attacks.

      So, all in all, I can confidently say that it did leave a mark on the Linux landscape. Hopefully, this specific attack vector will not be as viable in the foreseeable future.