Good move, removing some incentive from the security theater industry to exaggerate, or even manufacture, problems then "solving" them, while gaining some free ad space and "credibility" in the process, which is something I already pondered in a previous thread that had a bad smell.
this post was submitted on 13 Feb 2026
18 points (100.0% liked)
Rust
7775 readers
3 users here now
Welcome to the Rust community! This is a place to discuss about the Rust programming language.
Wormhole
Credits
- The icon is a modified version of the official rust logo (changing the colors to a gradient and black background)
founded 2 years ago
MODERATORS
Reported: December 9, 2025
Issued: February 12, 2026
Does this mean it took two full months from the time some obvious "typosquat" packages got added and immediately reported before they were removed? That's for the "finch" ones, looks like they got the others right away. Maybe they were not so obvious?