SMOLNET PORTAL home about changes

The Changelog: Software Development, Open Source

By Changelog Media

The insider perspective on the event-stream compromise (Interview)


🔊 Play episode (1.1 hours)
Direct episode link (https://op3.dev)
💬 Share episode


Published December 05, 2018 3:50pm

Adam and Jerod talk with Dominic Tarr, creator of event-stream, the IO library that made recent news as the latest malicious package in the npm registry. event-stream was turned malware, designed to target a very specific development environment and harvest account details and private keys from Bitcoin accounts.

They talk through Dominic’s backstory as a prolific contributor to open source, his stance on this package, his work in open source, the sequence of events around the hack, how we can and should handle maintainer-ship of open source infrastructure over the full life-cycle of the code’s usef...

Return to podcast
Response: 20 (Success), text/gemini
Original URLgemini://rocketcaster.xyz/episode/16409404
Status Code20 (Success)
Content-Typetext/gemini; charset=utf-8