Atemu@lemmy.ml to Linux@lemmy.ml · 1 年前backdoor in upstream xz/liblzma leading to ssh server compromisewww.openwall.comexternal-linkmessage-square100linkfedilinkarrow-up1527arrow-down15cross-posted to: netsec@links.hackliberty.orgselfhosted@lemmy.worldlinux@lemmy.worldnetsec@lemmy.worldprogramming@programming.devcybersecurity@sh.itjust.workshackernews@lemmy.smeargle.fans
arrow-up1522arrow-down1external-linkbackdoor in upstream xz/liblzma leading to ssh server compromisewww.openwall.comAtemu@lemmy.ml to Linux@lemmy.ml · 1 年前message-square100linkfedilinkcross-posted to: netsec@links.hackliberty.orgselfhosted@lemmy.worldlinux@lemmy.worldnetsec@lemmy.worldprogramming@programming.devcybersecurity@sh.itjust.workshackernews@lemmy.smeargle.fans
minus-squaredan@upvote.aulinkfedilinkarrow-up71·1 年前This is the best post I’ve read about it so far: https://boehs.org/node/everything-i-know-about-the-xz-backdoor
minus-squareDefederateLemmyMl@feddit.nllinkfedilinkEnglisharrow-up31·1 年前 In the fallout, we learn a little bit about mental health in open source. Reminded me of this, relevant as always, xkcd:
minus-squarelemmyreader@lemmy.mllinkfedilinkEnglisharrow-up3·1 年前Yes, exactly. And looking at you npm : npm
minus-squareWorseDoughnut 🍩@lemdro.idlinkfedilinkEnglisharrow-up15·1 年前That whole timeline is insane, and the fact that anyone even found this in the totally coincidental way they did is very lucky for the rest of us.
This is the best post I’ve read about it so far: https://boehs.org/node/everything-i-know-about-the-xz-backdoor
Reminded me of this, relevant as always, xkcd:
Yes, exactly.
And looking at you npm : npm
That whole timeline is insane, and the fact that anyone even found this in the totally coincidental way they did is very lucky for the rest of us.