Community Open Source Security (OpenSSF) and OpenJS Foundations Issue Alert for Social Engineering Takeovers of Open Source ProjectsXZ Utils cyberattack likely not an isolated incident By: Robin Bender Ginn, Executive Director, OpenJS Foundation; and Omkhar Arasaratnam, General Manager, Open Source Security Foundation The recent attempted XZ Utils backdoor (CVE-2024-3094) may not be an isolated in
![Open Source Security (OpenSSF) and OpenJS Foundations Issue Alert for Social Engineering Takeovers of Open Source Projects | OpenJS Foundation](https://cdn-ak-scissors.b.st-hatena.com/image/square/5e8013fee0ab4837c7e13da957b904893ee0b790/height=288;version=1;width=512/https%3A%2F%2Fimages.prismic.io%2Fopenjsf%2FZhy3QjjCgu4jzz6U_BlogPostImagesOpenJS-1-.png%3Fauto%3Dformat%2Ccompress)