Peter's Mind Vault

Home

❯

XZ hack april 2024

XZ hack april 2024

May 02, 20241 min read

The recent XZ hack is quite an impressive long con hack on a carefully picked open source project, slowly gaining trust and then getting hidden malicious code signed. Glad this was found early and did not land into debian LTS, would have been quite bad. Check out the tldr video or jfrog post mortem:

references

  • https://youtu.be/bS9em7Bg0iU?si=6QI-fZQ3pm0baIzB
  • https://jfrog.com/blog/xz-backdoor-attack-cve-2024-3094-all-you-need-to-know/

Graph View

Backlinks

  • Cyber Security

Recent notes

  • Agentic Engineering

    Apr 01, 2026

    • Changelog

      Apr 01, 2026

      • AI Agents

        Mar 20, 2026

        • ESP32

          Mar 20, 2026

          • Forward Deployed Engineer role

            Mar 20, 2026

            See 631 more →


            Peter's Mind Vault by Peter Peerdeman is licensed under CC BY-NC-SA 4.0

            Created with Quartz v4.5.1 © 2026