Rust malware in arrayref: how a build.rs ran a payload at compile time
DEV Community·0 points·axrisi·about 16 hours ago·dev.to
Rust malware on crates.io: arrayref 0.3.10 pulled in a typosquatted proc-macro1 whose build.rs ran a payload during cargo build. Online 86 minutes, 2,285 downloads.
Read the full article at dev.to →
Related stories
- Hacker News · 1 points · 3 days ago
- Lobsters · 13 points · over 2 years ago
- Rust fact vs. fiction: 5 Insights from Google's Rust journey in 2022opensource.googleblog.comLobsters · 81 points · over 3 years ago
- Forging 1024-bit RSA signatures in nearly SNFS timeeprint.iacr.orgLobsters · 7 points · 7 days ago
- rust-glancer: An alternative LSP for Rust with focus on low memory usagerust-glancer.github.ioLobsters · 25 points · about 1 month ago
- Ars Technica · 0 points · 9 days ago