• trompete [he/him]@hexbear.net
    link
    fedilink
    English
    arrow-up
    5
    ·
    7 months ago

    Perhaps worth mentioning: Some unknown person added malware to their tarball releases, specifically to backdoor ssh, which on most Linux distros was patched to load some systemd library, which in turn loads liblzma.