Hacker News new | ask | show | jobs
by Threeve303 2051 days ago
If it was standard to compare a dependency graph of the program architecture pre and post build, then you would catch these sorts of things right away. Supply chain attacks are not new and I imagine at least some companies have a process like this in place already.
1 comments

What do you mean by "dependency graph" here?

Seems to me like this malware might as well have been added to the calling assembly.