ATProto Browser

ATProto Browser

Experimental browser for the Atmosphere

Post

#infosec I just thought about the xz-utils op last year. The backdoor would have been implemented in during the build of the binary via two test files. Does anyone have intel on this attack vector (apart from supply chain attacks) in terms of attacks via open source projects.

May 10, 2025, 8:07 AM

Record data

{
  "uri": "at://did:plc:rmx4nxnncvtbg4zwd7ab2ayj/app.bsky.feed.post/3losicp7gos2s",
  "cid": "bafyreifdg4gnriscuhchaalc7gpvy6dndfvvrufmy6guq7neslek7dadfm",
  "value": {
    "text": "#infosec\nI just thought about the xz-utils op last year. \n\nThe backdoor would have been implemented in during the build of the binary via two test files.\n\nDoes anyone have intel on this attack vector (apart from supply chain attacks) in terms of attacks via open source projects.",
    "$type": "app.bsky.feed.post",
    "langs": [
      "en"
    ],
    "facets": [
      {
        "index": {
          "byteEnd": 8,
          "byteStart": 0
        },
        "features": [
          {
            "tag": "infosec",
            "$type": "app.bsky.richtext.facet#tag"
          }
        ]
      }
    ],
    "createdAt": "2025-05-10T08:07:01.647Z"
  }
}