• [$] Glibc project revisits infrastructure security

    From LWN.net@86:200/23 to All on Thu May 29 06:40:08 2025

    The GNU C Library
    (glibc) is the core C library for most Linux distributions, so it is a
    crucial part of the open-source ecosystem-and an attractive
    target for any attackers looking to carry out supply-chain
    attacks. With that being the case, securing the project's
    infrastructure using industry best practices and improving the
    security of its development practices are a frequent topic among glibc developers. A recent discussion suggests that improvements are not
    happening as quickly as some would like.

    https://lwn.net/Articles/1021837/
    --- SBBSecho 3.25-Linux
    * Origin: Palantir * palantirbbs.ddns.net * Pensacola, FL * (86:200/23)