← Back to context

Comment by HanClinto

6 days ago

XZ Utils is EXACTLY what came to mind for me.

That exploit / takeover happened precisely because an angry user was bullying a project maintainer, and then a "white knight" came in to save the day and defend the maintainer against the demanding users.

In reality, both the problem and the solution were manufactured by the social engineer, but bullying the maintainer was the vector that this exploited.

What happens when agents are used to do this sort of thing at scale?