• superglue@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    17
    ·
    13 hours ago

    This exploit appears to be inspired by the copy fail.

    Should you be worried? Nah, You should not be installing untrusted software on your device. This isnt even the type of exploit that scares me. Your device gas to already be compromised for this exploit to succeed.

    Supply chain attacks are what scare me.

    • corsicanguppy@lemmy.ca
      link
      fedilink
      English
      arrow-up
      9
      ·
      11 hours ago

      Supply chain attacks are what scare me.

      As a former OS security pro, this is the right answer. Not because of the exploit itself, but because young (unmentored) coders readily trust some really bad patterns of pulling in random junk from the web and running it. THIS is how the LPE becomes essentially an RCE-level problem.