Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Sabotage: Code added to popular NPM package wiped files in Russia and Belarus (arstechnica.com)
4 points by oakesm9 on March 21, 2022 | hide | past | favorite | 3 comments


If it killed anyone in a way that harms Russia - the country - it would be a good thing. A justified collateral damage.


> What if the deleted files are actually mission critical that can kill others?

Russia started an aggressive war. It targets civilians in big cities. It uses thermobaric bombs and cluster munition in cities. It shells people escaping through agreed "humanitarian corridors". It shoots civilians protesting the occupation. Can you blame Ukrainians for defending themselves any way they can think of?

You cannot start a war and complain that the defender kills your people. Complain to Putin to stop the war not to the defenders.

Also if you use automatically updated libraries in mission critical software you should really reconsider career choices.

> That said, intentional abuse such as this undermines the global open source community and requires us to flag impacted versions of node-ipc as security vulnerabilities.

Sure, whatever. Global open source community is part of global homo sapiens community. And that community is already undermined by the aggressive war started by Russia. There won't be a "global open source community" if WW3 starts.


It’s not just Ukrainians. Russia demonstrated that 1. It’s dangerous to everyone and 2. Their society supports this. Until the war is over they don’t deserve any rights whatsoever.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: