Settings

Theme

Is this a supply-chain attack attempt?

github.com

4 points by maratumba a month ago · 2 comments

Reader

maratumbaOP a month ago

I was looking into the issues in this -probably- abandoned library and noticed this account helpfully offering to take over the project. The account has no other activity than this post after it's been created 5.5 months before. Seems like it could be a supply chain attack (or maybe just some LLM agent raising github stars).

Does github have a mechanism for flagging suspicious accounts? Reporting doesn't seem like the right idea without any actual wrong-doing.

1970-01-01 a month ago

Tree falls in woods, nobody cares, then somebody cares, and its bad? Just leave it. If they're granted a full repo without so much as a commit to back their reputation, we're all doomed.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection