Robuta

https://frontpagelinux.com/news/xz-backdoor-widespread-linux-utility-found-compromised/
A backdoor was discovered hidden in a common Linux utility, and it could have infected millions of devices. So let’s talk about the backdoor found in the XZ...
xz backdoorwidespreadlinuxutilityfound
https://blog.junglacode.org/gnu-linux/seguridad/el-backdoor-xz-utils-como-esta-el-show/
Apr 2, 2024 - Vulnerable la librería XZ Utils lo cual es un compresor de datos sin pérdida los cuales esta disponibles en SO tipo Unix Y Gnu/Linux.
xz utilselbackdoorcomoesta
https://arstechnica.com/security/2024/04/what-we-know-about-the-xz-utils-backdoor-that-almost-infected-the-world/
Apr 1, 2024 - Malicious updates made to a ubiquitous tool were a few weeks away from going mainstream.
xz utilsknowbackdooralmost
https://www.techzine.eu/blogs/security/121575/makers-of-infamous-xz-backdoor-cleverly-managed-to-cover-their-tracks-analysis-shows/
Jun 26, 2024 - One of the most notable techniques was the use of custom steganography to hide a public key in x86 binary code.
xz backdoormakersinfamousmanagedcover
https://jfrog.com/blog/xz-backdoor-attack-cve-2024-3094-all-you-need-to-know/
Apr 7, 2024 - Understand the new XZ Backdoor Attack everyone’s talking about! This post details everything you need to know.
xz backdoorattackcveneed
https://www.uptycs.com/blog/threat-research-report-team/xz-utils-backdoor-vulnerability-cve-2024-3094
Explore the background, impact & mitigation steps for CVE-2024-3094, an XZ Utils backdoor affecting Linux & macOS: learn steps for detection &...
xz utilscomprehensive guidebackdoorvulnerabilitycve
https://www.wired.com/story/xz-backdoor-everything-you-need-to-know/?utm_source=thinkingelixir&utm_medium=shownotes
Apr 2, 2024 - Details are starting to emerge about a stunning supply chain attack that sent the open source software community reeling.
xz backdooreverythingneedknowwired
https://thenewstack.io/unzipping-the-xz-backdoor-and-its-lessons-for-open-source/
Jan 13, 2025 - A look at the what, how and why of this type of exploit and what the industry can do to try to change this worrying trend.
xz backdooropen sourceunzippinglessons
https://www.kali.org/blog/about-the-xz-backdoor/
As of 5:00 pm ET on March 29, 2024 the following information is accurate. Should there be updates to this situation, they will be edited onto this blog post....
xz utilskali linuxbackdoorblog