This is barely an article. What is Open-source malware? Are they talking about libraries that look legit but contain malware? Typo-squatting? Supply chain attacks? Compromised repositories of legit projects? Or is this actually malware that is released as open-source software so that bad actors can enjoy the freedoms of FOSS?
Cybersecurity
c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.
THE RULES
Instance Rules
- Be respectful. Everyone should feel welcome here.
- No bigotry - including racism, sexism, ableism, homophobia, transphobia, or xenophobia.
- No Ads / Spamming.
- No pornography.
Community Rules
- Idk, keep it semi-professional?
- Nothing illegal. We're all ethical here.
- Rules will be added/redefined as necessary.
If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.
Learn about hacking
Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub
Notable mention to !cybersecuritymemes@lemmy.world
@drspod @kid
There is a focus on open source increasing drastically.
"Sonatype blocked over 20,000 open-source malware attacks in Q1 2025, with most targeting financial services and government institutions. The decrease in 'noise' suggests that attackers are becoming more sophisticated, necessitating continuous vigilance in open-source ecosystems."
Source*
That doesn't answer the question.