TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Andres Freund and the xz backdoor

52 pointsby Foeabout 1 year ago

9 comments

consumer451about 1 year ago
&gt; Engineers have been circulating an old, famous-among-programmers web comic about how all modern digital infrastructure rests on a project maintained by some random guy in Nebraska. (In their telling, Mr. Freund is the random guy from Nebraska.)<p>Huh, my take was that the &quot;guy in Nebraska&quot; was Lasse Collin, the original xz maintainer. Am I alone in that?
评论 #39925939 未加载
评论 #39925943 未加载
评论 #39932453 未加载
评论 #39925952 未加载
评论 #39935541 未加载
jxyabout 1 year ago
A more level-headed report with less fluff from the economist: <a href="https:&#x2F;&#x2F;www.economist.com&#x2F;science-and-technology&#x2F;2024&#x2F;04&#x2F;02&#x2F;a-stealth-attack-came-close-to-compromising-the-worlds-computers" rel="nofollow">https:&#x2F;&#x2F;www.economist.com&#x2F;science-and-technology&#x2F;2024&#x2F;04&#x2F;02&#x2F;...</a><p><a href="https:&#x2F;&#x2F;archive.ph&#x2F;rdxhb" rel="nofollow">https:&#x2F;&#x2F;archive.ph&#x2F;rdxhb</a>
nf3about 1 year ago
<a href="https:&#x2F;&#x2F;archive.ph&#x2F;nUVGH" rel="nofollow">https:&#x2F;&#x2F;archive.ph&#x2F;nUVGH</a>
wisemangabout 1 year ago
&gt; In the cybersecurity world, a database engineer inadvertently finding a backdoor in a core Linux feature is a little like a bakery worker who smells a freshly baked loaf of bread, senses something is off and correctly deduces that someone has tampered with the entire global yeast supply.<p>These kind of analogies are always a bit of an eye roll for me but I’ll grant a few points for creativity here
评论 #39926362 未加载
评论 #39931385 未加载
juliusdaviesabout 1 year ago
Why is the HN submission titled &quot;Andres Freund and the xz backdoor&quot;? The NYTimes title (at least right now?) is: &quot;Did One Guy Just Stop a Huge Cyberattack?&quot;
johtsoabout 1 year ago
&quot;Engineers have been circulating an old, famous-among-programmers web comic about how all modern digital infrastructure rests on a project maintained by some random guy in Nebraska. (In their telling, Mr. Freund is the random guy from Nebraska.)&quot;<p>No, it&#x27;s Lasse Collin the _maintainer_ of xz..
评论 #39926089 未加载
yzydserdabout 1 year ago
In an otherwise well written and accessible article, I found the naming of example nations gratuitous:<p>&gt; some researchers believe only a nation with formidable hacking chops, such as Russia or China, could have attempted it.<p>… or the US, UK, Israel, Germany, France, Canada, Australia, DPRK, Japan, etc, and the security offence companies that work as a supply chain for such nations in provision of embedded exploits.<p>It’s based on very weak logic, but perhaps “Jia Tan” rules out China.
评论 #39926036 未加载
评论 #39936228 未加载
评论 #39925950 未加载
评论 #39926092 未加载
patrick-fitzabout 1 year ago
&gt; (The New York Times has sued Microsoft and its partner OpenAI on claims of copyright infringement involving artificial intelligence systems that generate text.)<p>It&#x27;s strange to see this included randomly in the middle of the article.
评论 #39926094 未加载
评论 #39926096 未加载
评论 #39926086 未加载
评论 #39926082 未加载
hocabout 1 year ago
With even the NYT on board it should be clear to everyone now that the whole xz thing must be a plot to have that Andres Freund person introduced into government and security circles where he then can finally fulfill that heinous plot. Classic.<p>Ahh, the voices...