Costin Raiu joins the XZ Utils backdoor investigation episode artwork

EPISODE · Apr 5, 2024 · 51 MIN

Costin Raiu joins the XZ Utils backdoor investigation

from Three Buddy Problem · host Security Conversations

Episode sponsors: Binarly, the supply chain security experts (https://binarly.io) XZ.fail backdoor detector (https://xz.fail) Malware paleontologist Costin Raiu returns for an emergency episode on the XZ Utils software supply chain backdoor. We dig into the timeline of the attack, the characteristics of the backdoor, affected Linux distributions, and the reasons why 'Tia Jan' is the handiwork of a cunning nation-state. Based on all the clues available, Costin pinpoints three main suspects -- North Korea's Lazarus, China's APT41 or Russia's APT29 -- and warns that there are more of these backdoors lurking in modern software supply chains.

Episode metadata supplied by the publisher feed · Published Apr 5, 2024

Embed this episode

Ready to play

Costin Raiu joins the XZ Utils backdoor investigation

0:00 51:33

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Three Buddy Problem?

This episode is 51 minutes long.

When was this Three Buddy Problem episode published?

This episode was published on April 5, 2024.

Can I download this Three Buddy Problem episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!