From 9891239a03a6cf30f5df7ca95968114b2c282bdd Mon Sep 17 00:00:00 2001 From: himazawa <73994521+himazawa@users.noreply.github.com> Date: Sun, 31 Mar 2024 11:52:49 +0200 Subject: [PATCH] post: add reference to xz killswitch --- content/posts/xz-backdoor/index.en.md | 3 +++ content/posts/xz-backdoor/index.it.md | 3 +++ 2 files changed, 6 insertions(+) diff --git a/content/posts/xz-backdoor/index.en.md b/content/posts/xz-backdoor/index.en.md index d204159..f6476f5 100644 --- a/content/posts/xz-backdoor/index.en.md +++ b/content/posts/xz-backdoor/index.en.md @@ -40,6 +40,8 @@ Check the Resources section for a link to an article with a detailed timeline - An [official statement](https://tukaani.org/xz-backdoor/) was released by the project maintainer + - __potential__ [killswitch identified](https://gist.github.com/sgammon/ec604c3fabd1a22dd3cdc381b736b03e), take that as a grain of salt + ## Impacted components @@ -160,3 +162,4 @@ The project you are including will probably also have dependencies, make sure th - Compromise link roundup: https://shellsharks.com/xz-compromise-link-roundup - Obfuscation Analysis: https://gynvael.coldwind.pl/?lang=en&id=782 - Backdoor Analysis: https://gist.github.com/smx-smx/a6112d54777845d389bd7126d6e9f504 +- Additional info: https://bsky.app/profile/filippo.abyssdomain.expert/post/3kowjkx2njy2b diff --git a/content/posts/xz-backdoor/index.it.md b/content/posts/xz-backdoor/index.it.md index d42a66c..f6f4078 100644 --- a/content/posts/xz-backdoor/index.it.md +++ b/content/posts/xz-backdoor/index.it.md @@ -45,6 +45,8 @@ Controlla la sezione Risorse per i link ad una timeline più dettagliata - Un [comunicato ufficiale](https://tukaani.org/xz-backdoor/) è stato rilasciato dal maintainer del progetto + - Un __potenziale__ [killswitch](https://gist.github.com/sgammon/ec604c3fabd1a22dd3cdc381b736b03e) è stato identificato, prendete questa informazione con le pinze. + ## Componenti impattate @@ -172,4 +174,5 @@ Il progetto che stai includendo probabilmente avrà anch'esso delle dipendenze, - Compromise link roundup: https://shellsharks.com/xz-compromise-link-roundup - Obfuscation Analysis: https://gynvael.coldwind.pl/?lang=en&id=782 - Backdoor Analysis: https://gist.github.com/smx-smx/a6112d54777845d389bd7126d6e9f504 +- Additional info: https://bsky.app/profile/filippo.abyssdomain.expert/post/3kowjkx2njy2b