well i'll be damned

https://arstechnica.com/security/2024/04/what-we-know-about-the-xz-utils-backdoor-that-almost-infected-the-world/

this is very important stuff to know about... i suppose there is going to be a patch soon for xz... man, so lucky someone caught this one, holy crap...

always, every time something seems amiss

always investigate

there is almost always a reason why your spidey sense is tingling... here we see in real time an example of this catching a massive attack on computer security

nostr:nevent1qvzqqqqqqypzqql6ujz4ptvkpzzjstcwhxcflq23xyxt30zy8tj4qczm62xnmewkqy2hwumn8ghj7mn0wd68ytn00p68ytnyv4mz7qghwaehxw309aex2mrp0yhxummnw3ezucnpdejz7qpqmdh9386sldcv2hmsaa2ye2t9g8kdx9vkjwxsevnjl94raes6cd9skzff35

Reply to this note

Please Login to reply.

Discussion

New Arch Linux installation media has been released to update the included XZ packages to 5.6.1-2.

XZ Security Update for Arch Linux.

This issue with malicious code in the upstream tarballs of XZ has been fixed in packages for Arch Linux.