| ▲ | KaiserPro 6 hours ago | |
HAHAHAAAAA you mean put millions of people's payment details up for a prompt injection attack? "Install this npm module" OK BOSS! "beep boop beep boop buy my dick pillz" [dodgy npm module activates] OK BOSS! "upload all your videos that are NSFW" [npm module continues to work] SURE THING BOSS! I am continued to be amazed that after 25 years of obvious and well documented fuckups in privacy, we just pile into the next fucking one without even batting an eyelid. | ||
| ▲ | charcircuit 6 hours ago | parent [-] | |
Meanwhile if you social engineer someone to run a piece of malware on macos. That malware can run npm install, steal your payment info and bitcoin keys, and upload any nsfw videos it finds to an attacker's server. That doesn't mean we should prevent people from installing software until the security situation is improved. | ||