Click here to Skip to main content
15,888,610 members

Welcome to the Lounge

   

For discussing anything related to a software developer's life but is not for programming questions. Got a programming question?

The Lounge is rated Safe For Work. If you're about to post something inappropriate for a shared office environment, then don't post it. No ads, no abuse, and no programming questions. Trolling, (political, climate, religious or whatever) will result in your account being removed.

 
GeneralRe: Louis Gossett Jr. passes Pin
Nelek30-Mar-24 12:29
protectorNelek30-Mar-24 12:29 
GeneralRe: Louis Gossett Jr. passes Pin
jmaida30-Mar-24 15:13
jmaida30-Mar-24 15:13 
GeneralFree Games HeadsUp Pin
Nelek30-Mar-24 10:51
protectorNelek30-Mar-24 10:51 
GeneralRe: Free Games HeadsUp Pin
dandy727-Apr-24 4:12
dandy727-Apr-24 4:12 
GeneralRe: Free Games HeadsUp Pin
Nelek7-Apr-24 6:34
protectorNelek7-Apr-24 6:34 
GeneralThat is the question PinPopular
Gary Stachelski 202130-Mar-24 10:06
Gary Stachelski 202130-Mar-24 10:06 
GeneralRe: That is the question Pin
Richard Andrew x6430-Mar-24 14:21
professionalRichard Andrew x6430-Mar-24 14:21 
GeneralRe: That is the question Pin
Chris Maunder30-Mar-24 16:38
cofounderChris Maunder30-Mar-24 16:38 
Hang on a sec.
Quote:
He/she coded a simple do nothing stub and placed it in GIT. To the researcher's surprise the GIT module was downloaded over 15,000 times in one month. The researcher then began looking for dependencies in popular commercial products and found it mentioned in several commercial products

I assume this means: S/he created a git repo. The code in that repo was "downloaded" and started to be included in commercial products.

Maybe I'm missing something here, but is there any details on what "downloaded" means? Forked repo? Zip of code downloaded? Since it says he noted commercial products had dependencies on his code, I assume this means the code was actually packaged in a PyPi / Nuget / npm etc package and that was what was downloaded (by developers and the as part of the installation of the commercial products).

The question that then comes to mind is: How did he find the dependencies of commercial products? I'm assuming he / she didn't go around randomly cracking private git repos to check out ISVs' code, so I assume it's more about installing products and seeing what gets sucked down. Plus there is the "dependency of a dependency of a ..." thing. If he got his package made a dependency of a single, vaguely popular package, then he's in like the proverbial Trojan Horse.

It's a great story but I am dying for the details!
cheers
Chris Maunder

GeneralRe: That is the question Pin
Gary Stachelski 202131-Mar-24 2:23
Gary Stachelski 202131-Mar-24 2:23 
GeneralRe: That is the question Pin
jmaida30-Mar-24 17:27
jmaida30-Mar-24 17:27 
Generalcan this Photoshop CS3 Mac Macintosh version be installed on Apple Macbook Pro 13" Dual Core i5 16GB | Catalina MacOS? Pin
Southmountain30-Mar-24 8:32
Southmountain30-Mar-24 8:32 
GeneralRe: can this Photoshop CS3 Mac Macintosh version be installed on Apple Macbook Pro 13" Dual Core i5 16GB | Catalina MacOS? Pin
Jeremy Falcon30-Mar-24 9:36
professionalJeremy Falcon30-Mar-24 9:36 
GeneralRe: can this Photoshop CS3 Mac Macintosh version be installed on Apple Macbook Pro 13" Dual Core i5 16GB | Catalina MacOS? Pin
Southmountain30-Mar-24 9:50
Southmountain30-Mar-24 9:50 
GeneralRe: can this Photoshop CS3 Mac Macintosh version be installed on Apple Macbook Pro 13" Dual Core i5 16GB | Catalina MacOS? Pin
David O'Neil30-Mar-24 10:31
professionalDavid O'Neil30-Mar-24 10:31 
GeneralRe: can this Photoshop CS3 Mac Macintosh version be installed on Apple Macbook Pro 13" Dual Core i5 16GB | Catalina MacOS? Pin
Jeremy Falcon30-Mar-24 9:38
professionalJeremy Falcon30-Mar-24 9:38 
GeneralRe: can this Photoshop CS3 Mac Macintosh version be installed on Apple Macbook Pro 13" Dual Core i5 16GB | Catalina MacOS? Pin
Jeremy Falcon30-Mar-24 9:48
professionalJeremy Falcon30-Mar-24 9:48 
GeneralRe: can this Photoshop CS3 Mac Macintosh version be installed on Apple Macbook Pro 13" Dual Core i5 16GB | Catalina MacOS? Pin
jmaida30-Mar-24 17:23
jmaida30-Mar-24 17:23 
GeneralRe: can this Photoshop CS3 Mac Macintosh version be installed on Apple Macbook Pro 13" Dual Core i5 16GB | Catalina MacOS? Pin
kmoorevs31-Mar-24 3:02
kmoorevs31-Mar-24 3:02 
GeneralThank you, Google Chrome! PinPopular
Ravi Bhavnani29-Mar-24 18:44
professionalRavi Bhavnani29-Mar-24 18:44 
GeneralRe: Thank you, Google Chrome! Pin
Chris Maunder30-Mar-24 16:39
cofounderChris Maunder30-Mar-24 16:39 
AnswerRe: Thank you, Google Chrome! Pin
Ravi Bhavnani30-Mar-24 19:49
professionalRavi Bhavnani30-Mar-24 19:49 
GeneralRe: Thank you, Google Chrome! Pin
honey the codewitch31-Mar-24 1:11
mvahoney the codewitch31-Mar-24 1:11 
GeneralRe: Thank you, Google Chrome! Pin
Ravi Bhavnani31-Mar-24 10:49
professionalRavi Bhavnani31-Mar-24 10:49 
GeneralRe: Thank you, Google Chrome! Pin
Kent Sharkey31-Mar-24 7:58
staffKent Sharkey31-Mar-24 7:58 
GeneralRe: Thank you, Google Chrome! Pin
Chris Maunder8-Apr-24 6:54
cofounderChris Maunder8-Apr-24 6:54 

General General    News News    Suggestion Suggestion    Question Question    Bug Bug    Answer Answer    Joke Joke    Praise Praise    Rant Rant    Admin Admin   

Use Ctrl+Left/Right to switch messages, Ctrl+Up/Down to switch threads, Ctrl+Shift+Left/Right to switch pages.