THE XZ UTILS BACKDOOR IS A STARK REMINDER THAT IF YOU RELY ON BITCOIN IT IS IMPERATIVE TO SUPPORT THE OPEN SOURCE CONTRIBUTORS THAT MAKE THIS MOVEMENT POSSIBLE. GOOD MORNING. https://www.wired.com/story/jia-tan-xz-backdoor/
Slow burn. I was tasked with checking all of our systems to ensure the exploited version wasn’t in our farm.
As far as I know It’s a very specific attack. You need to run a distribution that is rolling release _and_ uses the binary tarball of XZ while having the SSH system notify thing on. Its almost specifically sorts out Debian testing derivatives and Fedora. For example, Arch has the infected binary but its SSH is not linked to it. NixOS will have the 5.6.1 version but its clean because they’ve built from source instead of using the published binaries. But if you have something important running on those servers that got touched by those exploits its better to just wipe clean and redeploy those machines.
Adam, ha e you seen this toolset? https://primal.net/e/note1g3klh83ljrrls9p2c26ff80g4ux98rp2u544rlsgf9q5depdr5qqwu0dnj
GM ☕ @ODELL 🫂 THIS IS HOW WE WIN 🤙
🫡 GOOD MORNING
Good morning. #supportTheOpenSourceAutists
Paywalled. 😐
GM
GM great reminder
GOOD MORNING. 💀 🌹 https://m.primal.net/HrsV.mov
GM, wouldn't want to be a compliance officer for any major software company amirite
GOOD MORNING. THIS IS A FRIENDLY REMINDER THAT @saylor AND #MSTR RELY ON BITCOIN. 🫂💜🤙
Jis Tan isn't the individual's real name. This individual is possibly an intelligence operative for Mossad, the CIA or MI6.
Support open source contributors nostr:note16xf4uc9y2y7ywkwwyefdp438dz7vcmp6cqsd8jzz6ud7prah80fqxz65gx
GOOD FUCKING SNOWSTORM MORNING
Don't let yourself get backdoored...support open source devs ---> opensats.org nostr:note16xf4uc9y2y7ywkwwyefdp438dz7vcmp6cqsd8jzz6ud7prah80fqxz65gx
SUPPORT THE AUTISTS
Bad actors are everywhere, supported, unsupported or commercialized (Ex Sam Bankman-Fried). The best way is to have a moral-ethical code of conduct and monetize your work, people will pay for valuable tech, especially if at its core-business is making money.