logoalt Hacker News

__jonasyesterday at 1:54 PM1 replyview on HN

Not at all, it was a regular maintainer account that was hijacked (probably through phishing) and used to push a malicious payload, not a threat actor posing as a contributor and adding a backdoor like in the Jia Tan case.


Replies

1970-01-01yesterday at 2:07 PM

I use Jia Tan as a figurehead for malicious maintainers. This clearly was a targeted hack. Does it really matter how long it took to get the job done?

show 1 reply