Snyk security researcher deploys malicious NPM packages targeting cursor.com
1–10 of 331 posts
Re: Snyk security researcher deploys malicious NPM packages targeting cursor.com
#2Re: Snyk security researcher deploys malicious NPM packages targeting cursor.com
#3Re: Snyk security researcher deploys malicious NPM packages targeting cursor.com
#4They should be running a private npm repo for tests (not difficult to override locally) and also their own collaborator server.
Re: Snyk security researcher deploys malicious NPM packages targeting cursor.com
#5Just a reminder that Snyk was founded by ex-IDF Unit 8200 soldiers. I would not trust them given what we've seen Israel do to supply chains. https://en.wikipedia.org/wiki/Snyk
Your criticism sounds to me like "just a reminder that this armed bodyguard service comprises Navy SEALs and Army Rangers". Uh, great!
Re: Snyk security researcher deploys malicious NPM packages targeting cursor.com
#6Just a reminder that Snyk was founded by ex-IDF Unit 8200 soldiers. I would not trust them given what we've seen Israel do to supply chains. https://en.wikipedia.org/wiki/Snyk
I don't have a dog in this hunt. I've never worked with Snyk, I've never been a customer, and I don't think I even know anyone who works there. That said, they've built their whole company around being trustworthy and doubt they'd knowingly do anything to risk their entire business. Also, I can hardly imagine someone better positioned to protect against supply chain attacks. Your criticism sounds to me like "just a r…
Re: Snyk security researcher deploys malicious NPM packages targeting cursor.com
#7Re: Snyk security researcher deploys malicious NPM packages targeting cursor.com
#8Just a reminder that Snyk was founded by ex-IDF Unit 8200 soldiers. I would not trust them given what we've seen Israel do to supply chains. https://en.wikipedia.org/wiki/Snyk
I don't have a dog in this hunt. I've never worked with Snyk, I've never been a customer, and I don't think I even know anyone who works there. That said, they've built their whole company around being trustworthy and doubt they'd knowingly do anything to risk their entire business. Also, I can hardly imagine someone better positioned to protect against supply chain attacks. Your criticism sounds to me like "just a r…
Re: Snyk security researcher deploys malicious NPM packages targeting cursor.com
#9Earlier quoted context omitted.
I don't have a dog in this hunt. I've never worked with Snyk, I've never been a customer, and I don't think I even know anyone who works there. That said, they've built their whole company around being trustworthy and doubt they'd knowingly do anything to risk their entire business. Also, I can hardly imagine someone better positioned to protect against supply chain attacks. Your criticism sounds to me like "just a r…
[flagged]
Re: Snyk security researcher deploys malicious NPM packages targeting cursor.com
#10Earlier quoted context omitted.
I don't have a dog in this hunt. I've never worked with Snyk, I've never been a customer, and I don't think I even know anyone who works there. That said, they've built their whole company around being trustworthy and doubt they'd knowingly do anything to risk their entire business. Also, I can hardly imagine someone better positioned to protect against supply chain attacks. Your criticism sounds to me like "just a r…
[flagged]
Just like companies founded by say former operatives of the CIA, NSA, MI6, etc. would (and maybe should?) be viewed with skepticism, so too are companies founded by former members of Unit 8200.
Mentioning that Israel's military (like many others) has engaged in some less than ethical behavior is not equivalent to antisemitism. Trying to pretend otherwise is ridiculous.