Popular Rust Packages Compromised to Run Malware When Developers Build Their Apps
20/08/2026-19:15 20/08/2026-19:15 מחשבים וטכנולוגיה Cyber Security News דיווח
A major supply chain attack targeting the Rust ecosystem, in which two widely used crates, arrayref and append-only-vec, were hijacked to silently deliver malware the moment developers compiled their projects. Together, the two packages account for h
סיכום מאמרתקציר: התקפת אספקה חשובה פגעה באקוסיסטם של Rust, כאשר שני קרייטים נפוצים, arrayref ו- append-only-vec, נשלטו כדי להפיץ מלוור באופן רפלקסיבי כשמפתחים קובעים את פרויקטיהם. יחד, השניים מהווים 20% מהקרייטים הנפוצים ביותר ב-Rust.תוכן זה נוצר על ידי בינה מלאכותית.