Supply chain nightmare: How Rust will be attacked and what we can do to mitigate the inevitable (kerkour.com)
from yogthos@lemmy.ml to security@lemmy.ml on 11 Apr 16:32
https://lemmy.ml/post/45784861

#security

threaded - newest

balsoft@lemmy.ml on 11 Apr 18:03 next collapse

Yeah, the centralized nature of Rust’s dependency management always bugged me a bit. Of course there’s nothing stopping you from just pointing directly to the source code of crates in your Cargo.toml, and I think I will start doing that from now on. Adding better tooling for this would be great.

Tenderizer78@lemmy.ml on 18 Apr 13:38 collapse

This site made me enable javascript. Ew.