Say some hackers got control of a popular open source repository (for the purpose of this example, let's give it a fun name like XZ Utils). The hackers then program a rootkit into the next release, and then send it public.
How well could Bitdefender protect against such an attack, if at all?