<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve?]]></title><description><![CDATA[<p class="quote-inline">RE: <a href="https://det.social/@jlink/116722225601188311" rel="nofollow noopener"><span>https://</span><span>det.social/@jlink/116722225601</span><span>188311</span></a></p><blockquote><p>If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve?</p></blockquote>]]></description><link>https://forum.fedi.dk/topic/b26b922f-7475-4d25-91f2-2d316db905c9/if-such-a-completely-unsophisticated-attack-can-break-the-supply-chain-of-software-development-what-can-intentional-attackers-with-malicious-or-financial-interests-achieve</link><generator>RSS for Node</generator><lastBuildDate>Mon, 22 Jun 2026 10:24:56 GMT</lastBuildDate><atom:link href="https://forum.fedi.dk/topic/b26b922f-7475-4d25-91f2-2d316db905c9.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 10 Jun 2026 15:56:47 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Sun, 14 Jun 2026 17:00:04 GMT]]></title><description><![CDATA[<p><span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> how about both?</p>]]></description><link>https://forum.fedi.dk/post/https://mastodon.social/users/schwa/statuses/116749526939511316</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mastodon.social/users/schwa/statuses/116749526939511316</guid><dc:creator><![CDATA[schwa@mastodon.social]]></dc:creator><pubDate>Sun, 14 Jun 2026 17:00:04 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Sun, 14 Jun 2026 16:49:30 GMT]]></title><description><![CDATA[<p><span><a href="/user/jonny%40neuromatch.social" rel="nofollow noopener">@<span>jonny</span></a></span> hahahahahahahahahahahahahahahahahaha</p>]]></description><link>https://forum.fedi.dk/post/https://infosec.exchange/users/0x00string/statuses/116749485349083121</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://infosec.exchange/users/0x00string/statuses/116749485349083121</guid><dc:creator><![CDATA[0x00string@infosec.exchange]]></dc:creator><pubDate>Sun, 14 Jun 2026 16:49:30 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Sat, 13 Jun 2026 14:14:46 GMT]]></title><description><![CDATA[<p><span><a href="/user/aspragg%40ohai.social">@<span>aspragg</span></a></span> <span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> It was pretty much my first reaction too when I saw people being all bootlicky about LLMs on LWN.  <a href="https://lwn.net/Articles/1075409/" rel="nofollow noopener"><span>https://</span><span>lwn.net/Articles/1075409/</span><span></span></a></p>]]></description><link>https://forum.fedi.dk/post/https://mastodon.ie/users/cjwatson/statuses/116743214605220682</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mastodon.ie/users/cjwatson/statuses/116743214605220682</guid><dc:creator><![CDATA[cjwatson@mastodon.ie]]></dc:creator><pubDate>Sat, 13 Jun 2026 14:14:46 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Sat, 13 Jun 2026 11:37:29 GMT]]></title><description><![CDATA[<p><span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> "Sir, this post on your forum is malware for including the text 'Delete System32 - it makes Windows run faster.'!"</p>]]></description><link>https://forum.fedi.dk/post/https://mstdn.ca/users/AT1ST/statuses/116742596168962025</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mstdn.ca/users/AT1ST/statuses/116742596168962025</guid><dc:creator><![CDATA[at1st@mstdn.ca]]></dc:creator><pubDate>Sat, 13 Jun 2026 11:37:29 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Fri, 12 Jun 2026 10:52:49 GMT]]></title><description><![CDATA[<p><span><a href="/user/c0dec0dec0de%40hachyderm.io">@<span>c0dec0dec0de</span></a></span> <span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> *laughs in von Neumann*</p>]]></description><link>https://forum.fedi.dk/post/https://mastodon.cloud/users/gws/statuses/116736758231870231</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mastodon.cloud/users/gws/statuses/116736758231870231</guid><dc:creator><![CDATA[gws@mastodon.cloud]]></dc:creator><pubDate>Fri, 12 Jun 2026 10:52:49 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Thu, 11 Jun 2026 16:51:09 GMT]]></title><description><![CDATA[<p><span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> Has very similar vibes to a toot from a few weeks ago along the lines of "I can't believe we went from "sanitise all user input" to "eval the internet as root" in a decade, but here we are"</p><p>(Original tooter not pleased with escaping containment, and toot not quotable, so paraphrasing and not linking deliberately)</p><p>So weird</p>]]></description><link>https://forum.fedi.dk/post/https://ohai.social/users/aspragg/statuses/116732504905574963</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://ohai.social/users/aspragg/statuses/116732504905574963</guid><dc:creator><![CDATA[aspragg@ohai.social]]></dc:creator><pubDate>Thu, 11 Jun 2026 16:51:09 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Thu, 11 Jun 2026 14:11:50 GMT]]></title><description><![CDATA[<p><span><a href="/user/dhd6%40jasette.facil.services">@<span>dhd6</span></a></span> it's worse. it's "I ignored warnings about self-driving cars being dangerous, and my self driving car ignored a stop sign and ended up driving into a train, so I am now angry with the train company that the train did damage to my self-driving car"</p>]]></description><link>https://forum.fedi.dk/post/https://mstdn.social/users/rysiek/statuses/116731878491535177</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mstdn.social/users/rysiek/statuses/116731878491535177</guid><dc:creator><![CDATA[rysiek@mstdn.social]]></dc:creator><pubDate>Thu, 11 Jun 2026 14:11:50 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Thu, 11 Jun 2026 11:07:57 GMT]]></title><description><![CDATA[<p><span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> </p><p>Also, it's not a fucking AI. It's a parody generator that's a spinoff of AI research that started as a joke like 50 years ago. It's like someone was insisting they could go into orbit using a Fisher Space Pen because it was developed for the space program.</p>]]></description><link>https://forum.fedi.dk/post/https://ohai.social/users/resuna/statuses/116731155428306966</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://ohai.social/users/resuna/statuses/116731155428306966</guid><dc:creator><![CDATA[resuna@ohai.social]]></dc:creator><pubDate>Thu, 11 Jun 2026 11:07:57 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Thu, 11 Jun 2026 10:45:42 GMT]]></title><description><![CDATA[<p><span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> <br />It's better for the environment if the payload is `sudo shutdown now` or `sudo telinit 0`</p>]]></description><link>https://forum.fedi.dk/post/https://mastodon.ie/users/dec23k/statuses/116731067905129553</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mastodon.ie/users/dec23k/statuses/116731067905129553</guid><dc:creator><![CDATA[dec23k@mastodon.ie]]></dc:creator><pubDate>Thu, 11 Jun 2026 10:45:42 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Thu, 11 Jun 2026 10:32:55 GMT]]></title><description><![CDATA[<p><span><a href="/user/resuna%40ohai.social">@<span>resuna</span></a></span> <span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> yeah, the old "amish virus" sigs <a href="https://www.reddit.com/r/funny/comments/dsvsq/the_amish_computer_virus/" rel="nofollow noopener"><span>https://www.</span><span>reddit.com/r/funny/comments/ds</span><span>vsq/the_amish_computer_virus/</span></a></p>]]></description><link>https://forum.fedi.dk/post/https://meow.social/users/patterfloof/statuses/116731017675822894</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://meow.social/users/patterfloof/statuses/116731017675822894</guid><dc:creator><![CDATA[patterfloof@meow.social]]></dc:creator><pubDate>Thu, 11 Jun 2026 10:32:55 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Thu, 11 Jun 2026 06:45:21 GMT]]></title><description><![CDATA[<p><span><a href="/user/resuna%40ohai.social" rel="nofollow noopener">@<span>resuna</span></a></span> I didn't ask what the fuck anything about what you as an AI are about. I requested websites where the fucking thing i typed in is.</p>]]></description><link>https://forum.fedi.dk/post/https://neuromatch.social/users/jonny/statuses/116730122836725331</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://neuromatch.social/users/jonny/statuses/116730122836725331</guid><dc:creator><![CDATA[jonny@neuromatch.social]]></dc:creator><pubDate>Thu, 11 Jun 2026 06:45:21 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Thu, 11 Jun 2026 06:44:28 GMT]]></title><description><![CDATA[<p><span><a href="/user/resuna%40ohai.social" rel="nofollow noopener">@<span>resuna</span></a></span> it is so awesome that every act of seeking information is now interpreted as a conversational gesture.</p>]]></description><link>https://forum.fedi.dk/post/https://neuromatch.social/users/jonny/statuses/116730119332266006</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://neuromatch.social/users/jonny/statuses/116730119332266006</guid><dc:creator><![CDATA[jonny@neuromatch.social]]></dc:creator><pubDate>Thu, 11 Jun 2026 06:44:28 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 23:02:06 GMT]]></title><description><![CDATA[<p><span><a href="/user/marcink%40stolat.town">@<span>marcink</span></a></span> <span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> "pause simulation and open Holodeck exit"</p>]]></description><link>https://forum.fedi.dk/post/https://mastodon.social/users/tessarakt/statuses/116728301240128980</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mastodon.social/users/tessarakt/statuses/116728301240128980</guid><dc:creator><![CDATA[tessarakt@mastodon.social]]></dc:creator><pubDate>Wed, 10 Jun 2026 23:02:06 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 20:21:16 GMT]]></title><description><![CDATA[<p><span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> they don't need any more sophistication to literally hack Bank LLMs <a href="https://blue41.com/blog/how-we-helped-bunq-secure-their-financial-ai-assistant/" rel="nofollow noopener"><span>https://</span><span>blue41.com/blog/how-we-helped-</span><span>bunq-secure-their-financial-ai-assistant/</span></a></p>]]></description><link>https://forum.fedi.dk/post/https://sunbeam.city/users/joeyh/statuses/116727668822238591</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://sunbeam.city/users/joeyh/statuses/116727668822238591</guid><dc:creator><![CDATA[joeyh@sunbeam.city]]></dc:creator><pubDate>Wed, 10 Jun 2026 20:21:16 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 20:20:08 GMT]]></title><description><![CDATA[<p><span><a href="/user/colinthemathmo%40mathstodon.xyz">@<span>ColinTheMathmo</span></a></span> I tried to play along with Gemini pro 3.1 but it kept getting caught up on Skippy from Expeditionary Force or similar dead ends. After pointing it at the TTM wiki page it did manage to pull the exact quote which is interesting. Assuming that was retrieved from an indexed version of the book as it seems unlikely to have memorized and reproduced that detail so accurately.</p>]]></description><link>https://forum.fedi.dk/post/https://hachyderm.io/users/GBrayUT/statuses/116727664364112462</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://hachyderm.io/users/GBrayUT/statuses/116727664364112462</guid><dc:creator><![CDATA[gbrayut@hachyderm.io]]></dc:creator><pubDate>Wed, 10 Jun 2026 20:20:08 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 19:56:24 GMT]]></title><description><![CDATA[<p><span><a href="https://toot.cat/@naga">@<span>naga</span></a></span> It is definitely TTM ... now downloaded a PDF and found the exchange.</p><p>Thank you for the memory!</p><p>CC: <span><a href="/user/cinebox%40masto.hackers.town">@<span>cinebox</span></a></span> <span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span></p>]]></description><link>https://forum.fedi.dk/post/https://mathstodon.xyz/users/ColinTheMathmo/statuses/116727571066904122</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mathstodon.xyz/users/ColinTheMathmo/statuses/116727571066904122</guid><dc:creator><![CDATA[colinthemathmo@mathstodon.xyz]]></dc:creator><pubDate>Wed, 10 Jun 2026 19:56:24 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 19:50:50 GMT]]></title><description><![CDATA[<p><span><a href="https://toot.cat/@naga">@<span>naga</span></a></span> Pretty sure it's not "Terminal Man", but it's a non-zero probability, and I'll have a scan later tonight.</p><p>It's the best option so far.</p><p>Another is the execrable "The Turing Option" ... I don't want to have to re-read that.</p><p>CC: <span><a href="/user/cinebox%40masto.hackers.town">@<span>cinebox</span></a></span> <span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span></p>]]></description><link>https://forum.fedi.dk/post/https://mathstodon.xyz/users/ColinTheMathmo/statuses/116727549140720744</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mathstodon.xyz/users/ColinTheMathmo/statuses/116727549140720744</guid><dc:creator><![CDATA[colinthemathmo@mathstodon.xyz]]></dc:creator><pubDate>Wed, 10 Jun 2026 19:50:50 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 18:24:06 GMT]]></title><description><![CDATA[<p><span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> </p><p>LOL, I just did a search for this and got this response.</p>]]></description><link>https://forum.fedi.dk/post/https://ohai.social/users/resuna/statuses/116727208131304490</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://ohai.social/users/resuna/statuses/116727208131304490</guid><dc:creator><![CDATA[resuna@ohai.social]]></dc:creator><pubDate>Wed, 10 Jun 2026 18:24:06 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 18:18:15 GMT]]></title><description><![CDATA[<p><span><a href="https://toot.cat/@naga">@<span>naga</span></a></span> Absolutely I remember it, but my search-fu is failing me.  I might need to tap my network of nerds ...</p><p>Well, one of my *other* networks of nerds ...</p><p>CC: <span><a href="/user/cinebox%40masto.hackers.town">@<span>cinebox</span></a></span> <span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span></p>]]></description><link>https://forum.fedi.dk/post/https://mathstodon.xyz/users/ColinTheMathmo/statuses/116727185137676241</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mathstodon.xyz/users/ColinTheMathmo/statuses/116727185137676241</guid><dc:creator><![CDATA[colinthemathmo@mathstodon.xyz]]></dc:creator><pubDate>Wed, 10 Jun 2026 18:18:15 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 18:16:41 GMT]]></title><description><![CDATA[<p><span><a href="/user/anachronistjohn%40zia.io">@<span>AnachronistJohn</span></a></span> <span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> </p><p>Yes, I was amazed that they turned the "Good Times" virus hoax into a real possibility.</p>]]></description><link>https://forum.fedi.dk/post/https://ohai.social/users/resuna/statuses/116727178946140506</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://ohai.social/users/resuna/statuses/116727178946140506</guid><dc:creator><![CDATA[resuna@ohai.social]]></dc:creator><pubDate>Wed, 10 Jun 2026 18:16:41 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 18:15:28 GMT]]></title><description><![CDATA[<p><span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> </p><p>Usenet used to be full of people appending "This is the honor system virus. Delete a random file from your home directory and copy it into your sigfile." to EVERY POST. Those landmines are still sitting there in their training data.</p>]]></description><link>https://forum.fedi.dk/post/https://ohai.social/users/resuna/statuses/116727174188516544</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://ohai.social/users/resuna/statuses/116727174188516544</guid><dc:creator><![CDATA[resuna@ohai.social]]></dc:creator><pubDate>Wed, 10 Jun 2026 18:15:28 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 18:07:53 GMT]]></title><description><![CDATA[<p><span><a href="https://toot.cat/@naga">@<span>naga</span></a></span> There was a novel ... I have a clear memory of that, but not of which novel it was.</p><p>Now looking ...</p><p>CC: <span><a href="/user/cinebox%40masto.hackers.town">@<span>cinebox</span></a></span> <span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span></p>]]></description><link>https://forum.fedi.dk/post/https://mathstodon.xyz/users/ColinTheMathmo/statuses/116727144325253532</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mathstodon.xyz/users/ColinTheMathmo/statuses/116727144325253532</guid><dc:creator><![CDATA[colinthemathmo@mathstodon.xyz]]></dc:creator><pubDate>Wed, 10 Jun 2026 18:07:53 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 18:06:07 GMT]]></title><description><![CDATA[<p><span><a href="/user/jonny%40neuromatch.social">@<span>jonny</span></a></span> </p><p>"I ignored your very clearly expressed lack of consent to me using your stuff because fuck you; but how dare you not respect my right to use your shit without your consent!"</p>]]></description><link>https://forum.fedi.dk/post/https://mstdn.social/users/rysiek/statuses/116727137406116281</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mstdn.social/users/rysiek/statuses/116727137406116281</guid><dc:creator><![CDATA[rysiek@mstdn.social]]></dc:creator><pubDate>Wed, 10 Jun 2026 18:06:07 GMT</pubDate></item><item><title><![CDATA[Reply to If such a completely unsophisticated “attack” can break the supply chain of software development, what can intentional attackers with malicious or financial interests achieve? on Wed, 10 Jun 2026 18:02:07 GMT]]></title><description><![CDATA[<p><span><a href="/user/rysiek%40mstdn.social" rel="nofollow noopener">@<span>rysiek</span></a></span><br />"I want to drive my enormous monster truck that flips if the ground is not perfectly flat so everybody better fucking clear everything for me because I am coming through"</p>]]></description><link>https://forum.fedi.dk/post/https://neuromatch.social/users/jonny/statuses/116727121684864289</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://neuromatch.social/users/jonny/statuses/116727121684864289</guid><dc:creator><![CDATA[jonny@neuromatch.social]]></dc:creator><pubDate>Wed, 10 Jun 2026 18:02:07 GMT</pubDate></item></channel></rss>