Fleebs-Logo
Details werden geladen...

Earmark suddenly retired all versions in hex.pm - supply chain attack? - Chit Chat / Alerts - Elixir Programming Language Forum

Today, without any announcement, Earmark has retired all of its versions in hex.pm. This broke mix hex.audit on any project using Earmark (I’d assume a large majority of projects). This was all done by a new maintainer who was also just added today. The retirement message recommends that you migrate to mdex, which is a markdown parser that uses a Rust NIF. Given that there was no announcement, this very much smells to me like a supply chain attack. An attacker could have compromised the new mai...

Ähnliche Seiten

https://elixirforum.com/t/how-can-i-deepen-my-understanding-of-otp-and-genserver/75571

How Can I Deepen My Understanding of OTP and GenServer? - Chit Chat / Alerts - Elixir Programming Language Forum

https://elixirforum.com/t/how-can-i-deepen-my-understanding-of-otp-and-genserver/75571
https://elixirforum.com/t/a-call-to-action-use-llm-agents-to-find-vulnerabilities-in-your-code-before-someone-else-does/75521

A call to action: Use LLM agents to find vulnerabilities in your code before someone else does! - Chat / Discussions - Elixir Programming Language Forum

https://elixirforum.com/t/a-call-to-action-use-llm-agents-to-find-vulnerabilities-in-your-code-before-someone-else-does/75521