7 ms·
You can't trust "western" open source projects as well. It wouldn't be hard to just not mention China anywhere on the website or the sources so that most people
by castalian 2y ago
You can't trust "western" open source projects as well. It wouldn't be hard to just not mention China anywhere on the website or the sources so that most people would never know.
- imp0cat 2y agoWell this one specifically is listed under a fake company name which raises further questions. Is this just another attempt to conceal chinese spyware? See the discussion at https://news.ycombinator.com/item?id=40756408 https://news.ycombinator.com/item?id=40756408
- kveykva 2y agoTheir code base is also weirdly convoluted, with many crates and files just proxying over to others. I've read and written a lot rust, and haven't seen this style really. Could be nothing but its odd.
- phero_cnstrcts 2y agoI would consider western and non western equally bad.
- k4rli 2y agoThat's what the Chinese would say. West doesn't need to insert vulnerabilities for the basic stuff since they can already front/backdoor with GCP/AWS/alike.