Browsing tag

package manager

Apache Cordova App Harness Targeted in Dependency Confusion Attack

Researchers have identified a dependency confusion vulnerability impacting an archived Apache project called Cordova App Harness. Dependency confusion attacks take place owing to the fact that package managers check the public repositories before private registries, thus allowing a threat actor to publish a malicious package with the same name to a public package repository. This […]

Fedora To Deprecate YUM in Fedora 29 Release

Many Linux users familiar with Fedora, CentOS, and Red Hat Enterprise Linux are familiar with YUM, but are oblivious to its origins in the much lesser known Yellowdog Linux, a now discontinued PowerPC variant of CentOS. And now, it seems, YUM is heading in the same direction. Fedora is often referred to as the testing […]