How Shady Code Commits Compromise the Security of the Open-Source EcosystemIn this blog entry, we discuss how open-source code has been subjected to protest-driven code modifications by its maintainers or backers. We also provide an analysis of what these incidents could mean for the IT industry and the open source community.
Source:
How Shady Code Commits Compromise the Security of the Open-Source Ecosystem