[$] Glibc project revisits infrastructure security
The GNU C Library(glibc) is the core C library for most Linux distributions, so it is a crucial part of the open-source ecosystem-and an attractivetarget for any attackers looking to carry out supply-chainattacks. With that being the case, securing the project'sinfrastructure using industry best practices and improving thesecurity of its development practices are a frequent topic among glibcdevelopers. A recent discussion suggests that improvements are nothappening as quickly as some would like.