And I just assumed they called Rainbolt

  • logging_strict@lemmy.ml
    link
    fedilink
    arrow-up
    24
    ·
    2 days ago

    Which excludes FOSS maintainers. Who should be well funded to protect our tech stacks from neglect.

    Whatever you are scared of.

    I’m scared of this more

      • utopiah@lemmy.ml
        link
        fedilink
        arrow-up
        1
        ·
        6 hours ago

        foss spyware is still spyware

        Honestly it’s a bit trickier. I listened to the podcast episode and my 1st thought was like “Damn… obviously bad” and during the FOSS part I couldn’t but think “Ah… for my photo with missing EXIF GPS data… that’d be neat” specifically because I’m using Immich to host my photo on my server. Now Immich has face recognition, cf https://github.com/immich-app/immich/tree/main/machine-learning and more. Would it be wrong to extend it?

      • logging_strict@lemmy.ml
        link
        fedilink
        arrow-up
        2
        ·
        10 hours ago

        Nope it’s pentesting. Gotta keep up with IT terminology. If the author didn’t intend it, it’s malware.

        If any spyware or back doors are found, foss community can quickly deal with it.

        This happened with xz, a rogue maintainer snuck in malware which was by chance found. But there would be no chance if it were closed source or talented maintainers were so appreciated by society that they were mourned after starving to death.