July 1, 2024, 8:16 p.m. | /u/storagedude

cybersecurity www.reddit.com

This seems like one of those software supply chain bugs that's going to take a very long time to eradicate.

Some of the most widely used web and social media applications could be vulnerable to three newly discovered CocoaPods vulnerabilities — including potentially millions of Apple devices, [according to a report by The Cyber Express](https://thecyberexpress.com/cocoapods-vulnerabilities-apple-facebook/), the news service of threat intelligence vendor Cyble Inc.

E.V.A Information Security researchers [reported](https://evasec.webflow.io/blog/eva-discovered-supply-chain-vulnerabities-in-cocoapods) three vulnerabilities in the open source CocoaPods dependency manager …

amazon apple appletv applications bugs code cybersecurity device facebook flaw found linkedin meta microsoft netflix okta old open source researchers safari snapchat software software supply chain supply supply chain teams tiktok vulnerable whatsapp xcode yahoo

Software Engineer

@ Booz Allen Hamilton | USA, VA, McLean (8283 Greensboro Dr, Hamilton)

SOC Level 1 Engineer

@ Groupon | Remote - India

Senior Technology Auditor (Continuous Process Monitoring)

@ CNA Insurance | US- IL40- Chicago-151N Frankln

Sr. Director, Tech Process Management (ES Risk)

@ Capital One | McLean, VA

AVP, Pre-Sales and Professional Services for Group Benefits & Affinity

@ Manulife | CAN, Ontario, Toronto, 250 Bloor Street East

Software Engineer III

@ Walmart | IN KA BANGALORE Home Office PW II