Hacker News new | past | comments | ask | show | jobs | submit login

I worry that this is just the begining

right now I'm sure it's a temporary measure, to limit the downloading of sources.

but I really worry that later this will become normalized first, after every exposed hack withrdraw source availability for a little bit aftewards, just while 'they' check for other attacks or whatever

later on, it'll take longer and longer to put the source back up. but let's hope this is merely my overactive paranoia and everything will be fine open source is still ok.




The obvious solution seems to be adding an extra hurdle, where it warns you the source may be compromised, so you can still get it, but aren't going to just grab it without knowing something happened.

There is value in making sure (potentially) compromised code doesn't just get used normally, but I agree that shouldn't mean totally blocking access to it in most cases.


GitHub is not the only place to host a git repo. After the fiasco, Lasse Collin reestablished a standalone repo at https://git.tukaani.org/.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: