Compromised Rust crate onering performs code exfiltration (opens in new tab) 聽馃Rust
The compromised onering Rust crate v1.4.1 on crates.io shipped a malicious build.rs that exfiltrates the diff of your latest commit to a hosted Sentry endpoint every time you build.
Read the original article