RE: Zelensky concedes Ukraine won't join Nato 03-28-2022, 03:22 AM
#21
(03-28-2022, 03:13 AM)Dismas Wrote:That's why I left in "I don't know it is related or not" because we can't know for sure it wasn't. Just because the news says it doesn't make it true, nor does it make it credible only if a state sponsored actor admits to espionage. Unless you're referring to the admin's motives, which I also can't speak on but I am betting he thought he was doing right. It just wastes time doing things like that. His repo did more harm than good, and if he was really trying to help, there are better ways. You can simply donate to a humanitarian organization and I can name several people that have done so. There's a lot of ex-SOF guys that are organizing events and rallies across a few regions, they talk about it on podcasts and keep information security tight, but it's good that people are doing the right thing without being destructive.(03-28-2022, 01:09 AM)vittring Wrote:(03-28-2022, 12:48 AM)imgr8ness Wrote: Yes of course. I'm not sure how your comment relates to mine.The Russo-Ukrainian War has been going on for about 8 years now. Russia only launched its invasion of Ukraine in February. It started before that in the cyber realm. Espionage has been the MO for Russia for at least a decade and Ukraine's leaders aren't saints either. Both have committed war crimes that have yet to be seen, and Russia knows it is at fault and they have done a good job at hiding their crimes. The FSB has been great at hiding their past.
I don't know if it's related but node-ipc, a Node JS module, was altered by the maintainer to have malicious intent.
On March 7, a version 10.1.1 of a certain module was published with clear code updates that raised concerns for suspicious activity and potential abuse of the source code, which would later cause a supply chain issue. The module was used by many, including @vue/cli users. According to one organization, it ended up deleting TiB of data related to atrocities being committed inside Ukraine, just because the company was using that version of the module.
https://snyk.io/blog/peacenotwar-malicio...erability/
The node-ipc edit wasn't from a state-sponsored actor, but an activist. While I'm in favor of Ukraine's independence, this sort of thing undermines the credibility of everyone associated.
ed25519/0x21AB6B6A6CB2C337
C87D87466FD205945CF10A3821AB6B6A6CB2C337
C87D87466FD205945CF10A3821AB6B6A6CB2C337