Skip to content

Teracopy package hijacked? Is it really this easy to take control of a package? #31547

Answered by ItzLevvie
nothsa asked this question in Q&A
Discussion options

You must be logged in to vote

https://www.codesector.com/files/teracopy.exe is a temporary redirect to https://codesector.s3.us-west-000.backblazeb2.com/teracopy.exe, so your concerns about but it could be changed at any point by whoever controls the bucket. shouldn't be a huge issue here as the only person that has control over that bucket right now is the CodeSector developers, and no one else is allowed. If a malicious person took over the bucket, the hash would likely change and then no one can install it until the hash is fixed in the package where it has to go through automatic and manual validation again as well as automated and manual virus checks, and then the database will be updated with the new changes.

If…

Replies: 3 comments 3 replies

Comment options

You must be logged in to vote
0 replies
Answer selected by denelon
Comment options

You must be logged in to vote
3 replies
@ItzLevvie
Comment options

@vedantmgoyal9
Comment options

@ItzLevvie
Comment options

Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
4 participants