XZ Exploit: A Secure Supply Chain Tale

David | 10 September 2024

In June 2024, our CEO David O’Dwyer presented to Cloud Native Media a real world example of how unidentified bad actors managed to sneak malicious code in the XZ Utils package, resulting in a backdoor being created in the SSHD package, used to access and run commands on Linux systems around the world.

It’s a cautionary tale for contributors and maintainers of open source software, and a reminder of the thankless work undertaken voluntarily by individuals to keep our technological world operational.

For the past couple of years we’ve been involved with organising and sponsorship of the Cloud Native Media events in London and Amsterdam. We aim to share practical knowledge among professionals and have a wide range of speakers across Technology, Media, TV, Video, Audio & Radio sectors. To see past events check out the YouTube channel and if you’re interested in attending join us on Meetup.

Thank you for reading

Do you need help using open source software safely and correctly? Get in touch and let's work together.

Contact Us

At LiveWyer Labs we innovate through research and development, see what else we've been working on lately.

If you want to stay up to date and be notified when we post new and exciting content, make sure to follow our Linkedin and Medium.