Shai-Hulud Themed Malware Found in the PyTorch Lightning AI Training Library
(news.ycombinator.com)
1.
2.
Dependency cooldowns turn you into a free-rider
(news.ycombinator.com)
3.
How the Trivy supply chain attack harvested credentials from secrets managers
(news.ycombinator.com)
4.
5.
6.
7.
Widely used Trivy scanner compromised in ongoing supply-chain attack
(arstechnica.com)