in reply to Re: (OT) Dependency Confusion: How I Hacked Into Apple, Microsoft and Dozens of Other Companies
in thread (OT) Dependency Confusion: How I Hacked Into Apple, Microsoft and Dozens of Other Companies
The simple approach is to run your own CPAN mirror and only import modules there that you have previously vetted.
Randomly pulling down packages from the internet is not a good strategy, no matter what assurances CPAN provides.
|
---|
Replies are listed 'Best First'. | |
---|---|
Re^3: (OT) Dependency Confusion: How I Hacked Into Apple, Microsoft and Dozens of Other Companies
by LanX (Saint) on Mar 07, 2021 at 11:45 UTC |
In Section
Perl News