Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

What difference does it make if the build is compromised in an identical way byte-for-byte?



How will a trusty compiler going to save you from a broken library, e.g. the npm colors package?


The software supply chain problem exists for native code as well.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: