[Git][reproducible-builds/reproducible-website][master] 2024-01: fix link
FC (Fay) Stegerman (@obfusk)
gitlab at salsa.debian.org
Mon Feb 5 20:19:41 UTC 2024
FC (Fay) Stegerman pushed to branch master at Reproducible Builds / reproducible-website
Commits:
0f6ff851 by FC (Fay) Stegerman at 2024-02-05T20:19:37+00:00
2024-01: fix link
- - - - -
1 changed file:
- _reports/2024-01.md
Changes:
=====================================
_reports/2024-01.md
=====================================
@@ -28,7 +28,7 @@ More information can be found [on FOSDEM's page for the talk](https://fosdem.org
### "How we executed a critical supply chain attack on PyTorch"
-[John Stawinski](https://johnstawinski.com/) and [Adnan Khan](https://adnanthekhan.com/) published a lengthy blog post detailing [how they executed a supply-chain attack](https://johnstawinski.com/2024/01/11/playing-with-fire-how-we-executed-a-critical-supply-chain-attack-on-pytorch/) against PyTorch](https://pytorch.org/), a machine learning platform "used by titans like Google, Meta, Boeing, and Lockheed Martin":
+[John Stawinski](https://johnstawinski.com/) and [Adnan Khan](https://adnanthekhan.com/) published a lengthy blog post detailing [how they executed a supply-chain attack](https://johnstawinski.com/2024/01/11/playing-with-fire-how-we-executed-a-critical-supply-chain-attack-on-pytorch/) against [PyTorch](https://pytorch.org/), a machine learning platform "used by titans like Google, Meta, Boeing, and Lockheed Martin":
> Our exploit path resulted in the ability to upload malicious [PyTorch](https://pytorch.org/) releases to GitHub, upload releases to [Amazon Web Services], potentially add code to the main repository branch, backdoor PyTorch dependencies – the list goes on. **In short, it was bad. Quite bad.**
View it on GitLab: https://salsa.debian.org/reproducible-builds/reproducible-website/-/commit/0f6ff851633ff7cb6ead1565c74480451927b80d
--
View it on GitLab: https://salsa.debian.org/reproducible-builds/reproducible-website/-/commit/0f6ff851633ff7cb6ead1565c74480451927b80d
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.reproducible-builds.org/pipermail/rb-commits/attachments/20240205/214eadb7/attachment.htm>
More information about the rb-commits
mailing list