https://crates.io/crates/arrayref has a supply chain attack that runs malicious build script through a transient build-time dependency during `cargo build` with https://crates.io/crates/proc-macro-en/1.0.10/ (now deleted)Some more context: https://github.com/rustsec/advisory-db/issues/3161At the moment I cannot download the payloads anymore for further analysis.