You are here |
bentsukun.ch | ||
| | | |
www.wiz.io
|
|
| | | | CVE-2024-3094 is a malicious code vulnerability in versions 5.6.0 and 5.6.1 of XZ Utils, enabling an SSH authentication bypass in certain Linux distributions | |
| | | |
www.reversinglabs.com
|
|
| | | | Software tampering and social engineering were used in a months-long campaign to plant malicious code in major Linux distributions. Here's what we know. | |
| | | |
hardenedvault.net
|
|
| | | | Open source platform security | |
| | | |
blog.phylum.io
|
|
| | Headed to Black Hat USA? Come talk to Phylum! Software supply chains are complicated. In this complicated web of globally distributed software, attackers can lie in wait, releasing malicious software libraries to unsuspecting developers and organizations. It is prohibitively difficult to manually scan and analyze every package a given organization |