Nice short (~16m) talk on build system security – trusting trust attacks, reproducible builds & bootstrappable builds.

An interesting issue where non-deterministic filesystem ordering resulted in a different README file being installed (found by in @debian)

Supply-chain attack hits RubyGems repository with 725 malicious packages



