Social engineering takeovers of open source projects
mooreds
openssf.org
822 points361 comments
Summary
by metafa.stThe OpenSSF and OpenJS Foundations have issued an alert regarding the increased risk of social engineering attacks targeting open-source projects. The alert warns of potential attempts to take over maintainer accounts and compromise the integrity of open-source software.