federicomena,
@federicomena@mstdn.mx avatar

Is there a description of when the xz backdoor would execute / what it would do? I understand it is something in openssh / libsystemd but I'd like to know what triggers it.

Migueldeicaza,
@Migueldeicaza@mastodon.social avatar

@federicomena short version:during decompression, if a secret key is validated to be there, it calls system with the script hidden inside the payload.

penguin42,
@penguin42@mastodon.org.uk avatar

@federicomena https://bsky.app/profile/filippo.abyssdomain.expert/post/3kowjkx2njy2b seems to be the one being quoted; I think it's explicitly only sshd being hooked, and it's spotting certain keys and executing a system() command based on a field in the key if I understand correctly.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • GTA5RPClips
  • DreamBathrooms
  • thenastyranch
  • magazineikmin
  • tacticalgear
  • cubers
  • Youngstown
  • mdbf
  • slotface
  • rosin
  • osvaldo12
  • ngwrru68w68
  • kavyap
  • InstantRegret
  • JUstTest
  • everett
  • Durango
  • cisconetworking
  • khanakhh
  • ethstaker
  • tester
  • anitta
  • Leos
  • normalnudes
  • modclub
  • megavids
  • provamag3
  • lostlight
  • All magazines