XZ backdoor in a nutshelllemmy.zipimagecross-posted to: linux@lemmy.eco.br Possibly linux ( @possiblylinux127@lemmy.zip ) Linux@lemmy.mlEnglish • 7 months ago message-square59fedilinkarrow-up1707
arrow-up1707imageXZ backdoor in a nutshelllemmy.zip Possibly linux ( @possiblylinux127@lemmy.zip ) Linux@lemmy.mlEnglish • 7 months ago message-square59fedilinkcross-posted to: linux@lemmy.eco.br
minus-square Possibly linux ( @possiblylinux127@lemmy.zip ) OPlinkfedilinkEnglish1•7 months agoIt is fine to use them just know how they work and check the commit log. That of course requires you to pull from got instead of a tarball
minus-square billgamesh ( @billgamesh@lemmy.ml ) linkfedilink1•7 months agothis was well hidden. not sure anyone would have spotted this by checking commit log
minus-square Possibly linux ( @possiblylinux127@lemmy.zip ) OPlinkfedilinkEnglish1•7 months agoIt was hidden in the Tarball
minus-square billgamesh ( @billgamesh@lemmy.ml ) linkfedilink1•edit-27 months agoi’m not an expert, but my reading was that it was hidden in a binary used for testing EDIT: oh yeah, i see what you mean
It is fine to use them just know how they work and check the commit log.
That of course requires you to pull from got instead of a tarball
this was well hidden. not sure anyone would have spotted this by checking commit log
It was hidden in the Tarball
i’m not an expert, but my reading was that it was hidden in a binary used for testing EDIT: oh yeah, i see what you mean