XZ Backdoor: A FOSS Danger Story
Episode 104 of The Watchman Privacy Podcast – XZ Backdoor: A FOSS Danger Story
Gabriel Custodiet speaks with Urban Hacker about the infamous XZ backdoor incident by which a key piece of software in the Linux kernel was nearly hijacked. The attacker spent four years slowly ingratiating himself into the small community, which had been selected precisely because it consisted of a single burned-out developer. Follow us as we unravel this bizarre and disturbing story of premeditated digital attack and what it means for free and open-source software and our own cybersecurity.
Mentioned
→https://urbanhacker.net/a-closer-look-at-the-social-engineering-behind-the-xz-backdoor-part-one/
→https://en.wikipedia.org/wiki/XZ_Utils_backdoor
Guest Links
→ https://urbanhacker.net/
→ https://twitter.com/realUrbanHacker
→ https://t.me/Realurbanhacker (Telegram)
→ https://tallycoin.app/@realurbanhacker/the-orange-pill-simulator-zzjq3lmF (Urban Hacker’s Bitcoin game)
Watchman Privacy
→ https://watchmanprivacy.com
→ https://twitter.com/watchmanprivacy
→ https://www.amazon.com/Watchman-Guide-Privacy-Financial-Lifestyle/dp/B08PX7KFS2
Privacy Courses (supports the show)
→ https://rpf.gumroad.com/l/privatebitcoin
→ https://rpf.gumroad.com/l/hackproof
Monero Donation (supports the show)
→8829DiYwJ344peEM7SzUspMtgUWKAjGJRHmu4Q6R8kEWMpafiXPPNBkeRBhNPK6sw27urqqMYTWWXZrsX6BLRrj7HiooPAy
Bitcoin Donation (supports the show)
→https://btcpay0.voltageapp.io/apps/3JDQDSj2rp56KDffH5sSZL19J1Lh/pos
Please subscribe to and rate this podcast wherever you can to help it thrive. Thank you!
→ https://www.youtube.com/@WatchmanPrivacy
→https://odysee.com/@WatchmanPrivacy
Timeline
0:00 – Introduction
2:25 – What is XZ Utils?
4:17 – How does GitHub work?
15:15 – Summary of XZ Utils backdoor incident
18:00 – Social engineering
21:00 – Technical implementation of the backdoor attack
28:00 – Potential consequences of this attempted attack
30:10 – How was it found?
33:00 – Does this expose a major weakness of FOSS?
38:25 – Similar supply chain cyber attacks
43:00 – Final thoughts
#XZBackDoor #UrbanHacker #WatchmanPrivacy
-
15:05
Talk Nerdy 2 Us
6 months agoAutoZone Data Breach, Boeing Breach Update, Sumo Logic Cybersecurity Incident
106K19 -
47:35
DailyCryptoElisList
8 months ago⚠️FTX SAW THE COLLAPSE COMING (insider secrets revealed)
29 -
2:02
Ribalinux
2 years agoHow to install openSUSE 15.3
17 -
1:21
Ribalinux
8 months agoHow to install Rhino Linux 2023.3
34 -
15:23
EXPOSE & SHARE EVERYTHING
8 months agoBe a Subversive with Linux! We are under Attack!
71 -
20:29
Coin Bureau
8 months agoThe FTX Mystery NO ONE Can Explain...
282 -
8:27
crypto2103
8 months agoWhy XRP will FUEL the next BULL run... LISTEN UP!
21 -
47:32
maximalistus
6 months ago#Linux install in a USB stick that runs in any hardware, with #BlockstreamGreen and #BlockstreamJade .
6 -
54:41
What Bitcoin Did
1 month agoNobody Understands Bitcoin with Jack Mallers, American HODL, Alex Thorn & Calle
3742 -
50:17
CYPRXUNCENSORED
1 month ago $0.38 earnedXRP CRYPTO BULL RUN CHECKLIST! MUST WATCH
4365