the xz sshd backdoor rabbithole goes quite a bit deeper. I was just able to trigger some harder to reach functionality of the backdoor. there's still more to explore.. 1/n
@_mcorbin@ValBouiller Je n'aime pas du tout l'approche 1 state pour la prod à cause de la mauvaise gestion du blast radius. Cela me fait un peu penser aux problématiques monorepo et donc les workspaces terraform je recommande pas. Adobe utilise ça depuis des années.
Google started an open distributed vulnerability database for Open Source (https://t.co/7w6OJrQIDF) that you can integrate into your CI with osv-scanner CLI https://t.co/T11uBMmHN3
Today we are happy to announce a new open source project, Finch. 🎉
Finch is a command line client for building, running, and publishing Linux containers.
Learn more in this blog from @estesp and @ChrisShort ➡️ https://t.co/5qDdio806E
#AWSCloud#containers#opensource