The Critical Path to Implant Backdoors and Potential Mitigation Techniques: Learnings from XZ...
The Critical Path to Implant Backdoors and Potential Mitigation Techniques: Learnings from XZ - René Mayrhofer & Mario Lins, Johannes Kepler University Linz
An emerging supply-chain attack due to a backdoor in XZ Utils has been identified. The backdoor allows an attacker to run commands remotely on vulnerable servers utilizing SSH without prior authentication. We have analyzed the critical attack path to discuss current mitigation strategies for such kinds of supply-chain attacks.
The Linux Foundation
The Linux Foundation is a nonprofit consortium dedicated to fostering the growth of Linux and collaborative software development. Founded in 2000, the organization sponsors the work of Linux creator Linus Torvalds and promotes, protects and advances the L...