A timeline of the xz open source attack, where an attacker named Jia Tan installed a hidden backdoor into the xz compression library, leading to unauthenticated targeted remote code execution. The attack was publicly disclosed in March 2024, marking a significant event in open source supply chain security.

8m read timeFrom research.swtch.com
Post cover image
Table of contents
Timeline of the xz open source attack Posted on Monday, April 1, 2024.Further Reading

Sort: