Malicious updates made to a ubiquitous tool were a few weeks away from going mainstream.

» Dan Goodin | arstechnica.com