ended6월 27일· 1 sources
Detecting Supply-Chain Malware Without Running the Code
Why it matters
After I got targeted by a fake-job-interview repo designed to steal my keys, I built a scanner that checks a repository for supply-chain attacks without cloning, installing, or running any of it. The ...
1
Sources
+0
24h
—
Growth
4d
Active