- backseat-signed: Verify a source tarball is cryptographically claimed to be the source input for a given Arch Linux or Debian package (and how to match it with VCS) https://github.com/kpcyrd/backseat-signed 3 comments rust
Linked pages
- oss-security - backdoor in upstream xz/liblzma leading to ssh server compromise https://www.openwall.com/lists/oss-security/2024/03/29/4 3112 comments
- Anarchist communism - Wikipedia http://en.wikipedia.org/wiki/anarchist_communism 100 comments
- Reproducible Builds — a set of software development practices that create an independently-verifiable path from source to binary code https://reproducible-builds.org/ 51 comments
Related searches:
Search whole site: site:github.com
Search title: GitHub - kpcyrd/backseat-signed: Authenticate cryptographic links from a signed derivate to its source input
See how to search.