randomir
randomir
@randomir.bsky.social
Reposted by randomir
(someone used a carefully crafted branch name to inject a crypto miner into a popular Python package: github.com/ultralytics/...)
Discrepancy between what's in GitHub and what's been published to PyPI for v8.3.41 · Issue #18027 · ultralytics/ultralytics
Bug Code in the published wheel 8.3.41 is not what's in GitHub and appears to invoke mining. Users of ultralytics who install 8.3.41 will unknowingly execute an xmrig miner. Examining the file util...
github.com
December 6, 2024 at 3:28 AM
Reposted by randomir
Firesky
Watch every Bluesky post in real-time – filter the firehose
firesky.tv
November 24, 2024 at 4:58 AM
I’m stöked you are here, friend!
November 17, 2024 at 1:23 PM