Thought this was a good read exploring some how the “how and why” including several apparent sock puppet accounts that convinced the original dev (Lasse Collin) to hand over the baton.

  • Karna@lemmy.ml
    link
    fedilink
    arrow-up
    123
    arrow-down
    1
    ·
    10 months ago
    • Careful choice of program to infect the whole Linux ecosystem
    • Time it took to gain trust
    • Level of sophistication in introducing backdoor in open source product

    All of these are signs of persistent threat actors aka State sponsor hacker. Though the real motive we would never know as it’s now a failed project.