वीकनेस
The internment crate 0.8.7 for Rust can trigger execution of malicious code when compiling a project that uses the crate, because it has a rogue dependency that registers with a command-and-control server to offer arbitrary code execution.
संदर्भ
- https://blog.rust-lang.org/2026/08/20/supply-chain-attack-on-arrayref
- https://github.com/rustsec/advisory-db/issues/3161
- https://rustsec.org/advisories/RUSTSEC-2026-0266.html
- https://safedep.io/arrayref-proc-macro1-rust-build-time-malware/
- https://www.stepsecurity.io/blog/arrayref-rust-crate-supply-chain-attack
हमलावर से पहले बग आप ढूँढें।
GitHub से साइन इन करें और एक मिनट से भी कम में अपना पहला ऑडिट चलाएँ। फ़्री प्लान के लिए क्रेडिट कार्ड की ज़रूरत नहीं।