Artwork

Content provided by Salt Stack and The Hacks. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Salt Stack and The Hacks or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

XZ Backdoor CVE Targets Linux!!

45:57
 
Share
 

Manage episode 410298286 series 2624772
Content provided by Salt Stack and The Hacks. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Salt Stack and The Hacks or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Tom and Chunga have a good one for you today!

Late last week, news broke that an extremely dangerous backdoor CVE, built within the XZ compression library had compromised Linux Debian Unstable and Fedora 40-41. Fortunately, was discovered before it could hit an enterprise platform!

Tom says this particular CVE was especially dangerous and hard to detect because it was built deep into the XZ compression library. As dangerous as it was, it was also brilliant backdoor hack because nobody ever pays any attention to the compression library! Plus, the hacker took an extremely long time to execute his or her plan. It was so smart in fact, that Tom says we're all very lucky it was ever discovered.

Chunga has a theory that this is only the beginning when it comes to what this individual is actually planning. He's of the opinion that this person has several of these CVE's built into multiple open source software platforms. Does Tom agree with this theory? Listen NOW to find out!

Get started using Salt in just a few minutes!

  continue reading

201 episodes

Artwork

XZ Backdoor CVE Targets Linux!!

The Hacks

195 subscribers

published

iconShare
 
Manage episode 410298286 series 2624772
Content provided by Salt Stack and The Hacks. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Salt Stack and The Hacks or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

Tom and Chunga have a good one for you today!

Late last week, news broke that an extremely dangerous backdoor CVE, built within the XZ compression library had compromised Linux Debian Unstable and Fedora 40-41. Fortunately, was discovered before it could hit an enterprise platform!

Tom says this particular CVE was especially dangerous and hard to detect because it was built deep into the XZ compression library. As dangerous as it was, it was also brilliant backdoor hack because nobody ever pays any attention to the compression library! Plus, the hacker took an extremely long time to execute his or her plan. It was so smart in fact, that Tom says we're all very lucky it was ever discovered.

Chunga has a theory that this is only the beginning when it comes to what this individual is actually planning. He's of the opinion that this person has several of these CVE's built into multiple open source software platforms. Does Tom agree with this theory? Listen NOW to find out!

Get started using Salt in just a few minutes!

  continue reading

201 episodes

Все серии

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide