Slopsquatting
文章讨论了开源项目维护者退休或能力下降带来的安全威胁,指出攻击者可能利用这种情况进行恶意活动,并提出"End of Life squatting"的概念。 2025-4-15 16:2:54 Author: www.schneier.com(查看原文) 阅读量:4 收藏

Comments

Clive Robinson April 15, 2025 1:02 PM

@ wiredog,

“I think this is related to the problem…”

In a way…

Think of “Slopsquatting” as a “begining of Artificial life” problem.

And of “Log4J” as an indicator to an “End of hunan life” problem.

The simple fact is it’s not just “burnout” claiming “Lone Open Source” developers, quite a few are now are lets say in the “retirement zone” of being well over 60.

Life expectancy in the US is dropping, some are claiming 61 is where it’s happening. Whilst in West Europe it’s increasing with 82 being claimed where I live…

But the point is as was seen with some quite famous projects lone developers can become nolonger able to develop.

And that gives an opening for attackers when subscriptions to servers etc lapse. What term they might call it could be “EOLsquatting” because in one form or another it will happen to every project sone day.

Atom Feed Subscribe to comments on this entry

Sidebar photo of Bruce Schneier by Joe MacInnis.


文章来源: https://www.schneier.com/blog/archives/2025/04/slopsquatting.html
如有侵权请联系:admin#unsafe.sh