PLAY PODCASTS
Episode 435 - polyfill.io - open source is too big to fix
Episode 435

Episode 435 - polyfill.io - open source is too big to fix

Open Source Security · Open Source Security

July 1, 202438m 50s

Audio is streamed directly from the publisher (traffic.libsyn.com) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

Josh and Kurt talk about the latest polyfill.io mess. Apparently someone took over a very popular project and started to serve malware. First XZ, now this. What does it mean for open source? We don't have any answers, and it's hard to even talk about this problem because it's so big. The thing is though, even if we can't fix open source, it's here to stay.

Show Notes