wwderw (@wwderw)
Posted
0 replies · 0 reposts · 0 likes
https://blog.rust-lang.org/2026/08/20/supply-chain-attack-on-arrayref/ I truly dislike package managers for programming languages. Yes, it makes things easier for devs, but it also makes things easier for bad actors as well. It seems like there is always something about some NPM, PyPi, and/or Cargo to do with an exploit. Now, I have no "love" for Rust as a language itself (I honestly have issues with all 3 of those languages, but I digress) and this just adds to it.