Pinned Loading
-
Rationale behind the @bgeron-typosqu...
Rationale behind the @bgeron-typosquatting-protect account, and a plea to the crates.io team 1This account is an alias of @bgeron, and it owns a number of Rust crates with nice names, such as `the`. I solemnly promise to never put any content on these crates. They are nice names, but for security purposes I think they should be reserved names (forever without content). Here's the danger:
231. Somebody malicious registers crate `the` and puts malware on it.
42. Somewhere on an online forum, Alice and Bob are talking about a new Rust command line program. Alice tells Bob to cargo install the binary.
53. Bob is very sleepy and distracted today. Bob copy-pastes `cargo install the binary` into his terminal. He gets an error. He realizes his mistake and runs `cargo install NewFancyProgram` instead.
Something went wrong, please refresh the page to try again.
If the problem persists, check the GitHub status page or contact support.
If the problem persists, check the GitHub status page or contact support.