A backdoor in xz
A backdoor in xz
Posted Mar 30, 2024 23:33 UTC (Sat) by brooksmoses (guest, #88422)In reply to: A backdoor in xz by stef70
Parent article: A backdoor in xz
There is code in the exploit that would look for additional files in the "test" directory that matched specific byte patterns, and then extract a payload from them and execute it. There are currently no files matching those patterns -- so it certainly looks like this bit was designed as a capability to target additional programs simply by adding additional "test" files to the git repository.
[Reference: https://github.com/Midar/xz-backdoor-documentation/wiki#s... as of the time of this comment.]
