Hacker News new | ask | show | jobs
by pjmlp 1795 days ago
How do you track down a malicious maintainer, introducing a back door slowly during one year long, a little change at a time, given how long CVEs in OpenSSL have been unnoticed as example?