Skip to content

Instantly share code, notes, and snippets.

@ecki
Last active April 16, 2024 15:10
Show Gist options
  • Star 10 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save ecki/af2ec3b6994afae0b65cb5f3747af064 to your computer and use it in GitHub Desktop.
Save ecki/af2ec3b6994afae0b65cb5f3747af064 to your computer and use it in GitHub Desktop.
Links about xz-utility/liblzma5 backdoor (CVE-2024-3094)

After 2024-04-02 I am only adding important new discoveries (I come accross). There is just too much Blog and Video entries to keep track of.

Initial disclosure:

CVE and Alerts

Media & Industry Coverage

Writeups

Mitigations, Detection and Snakeoil

Discussions

background research and evidence

Vendor Responses

Upstream statement https://tukaani.org/xz-backdoor/

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment