Bonus points for your recommendations of who to donate to!

  • rants_unnecessarily@piefed.social
    link
    fedilink
    English
    arrow-up
    1
    arrow-down
    6
    ·
    13 hours ago

    Notepad++ just lost the trust of our company due to their updater hack by the Chinese government. Everyone was instructed to uninstall it and move to alternate options.

    Are you sure you still want to support them?

    • slazer2au@lemmy.world
      link
      fedilink
      English
      arrow-up
      9
      ·
      12 hours ago

      Yes, because if you read the release it was a fault at the underlying provider which they were already moving away form.

      Also, you can not stop a proper state sponsored threat actor so leaving an org because they were hit is stupid when they are open about what happened and how they have made actual changes to minimise it from happening again.

        • Zagorath@aussie.zone
          link
          fedilink
          English
          arrow-up
          2
          ·
          8 hours ago

          Not my choice. But higher ups.

          Ok, but your comment pretty clearly expressed an implied agreement with that choice.

          • rants_unnecessarily@piefed.social
            link
            fedilink
            English
            arrow-up
            1
            arrow-down
            1
            ·
            7 hours ago

            That’s you reading meaning into my words.

            I stated facts about what had happened and asked whether that matters to the recipient.

            • Zagorath@aussie.zone
              link
              fedilink
              arrow-up
              2
              ·
              7 hours ago

              Ok, so, do you agree with it? Or do you think that Notepad++ has demonstrated a good commitment to doing the right thing that means it’s still just as worthy of recommendation as it was last month?

              • rants_unnecessarily@piefed.social
                link
                fedilink
                English
                arrow-up
                1
                ·
                6 hours ago

                I don’t know enough to make a decision on it.
                I will follow the rules of my work place when working and look into it more before I make the choice between continuing to use it on my personal time. I haven’t had much free time lately, so that is still on the to do list.

        • slazer2au@lemmy.world
          link
          fedilink
          English
          arrow-up
          3
          ·
          12 hours ago

          Yes. How an org reacts to security incidents is one of the gauges I use to see if a project should be supported.