Be aware of the upcoming 2nd anniversary on 27.03.:
"Andres Freund saved the World" 🎉
On that day, the persistent German discovered the back door in xz:
See the story behind it https://www.techflix.ch/videos/ac11000b-9d0a-1443-819d-0c0caa790000
Be aware of the upcoming 2nd anniversary on 27.03.:
"Andres Freund saved the World" 🎉
On that day, the persistent German discovered the back door in xz:
See the story behind it https://www.techflix.ch/videos/ac11000b-9d0a-1443-819d-0c0caa790000
Tää oli kyllä uskomaton tarina miten pienestä joskus voi asiat olla kiinni.
Muistakaa tukea ihmisiä jotka tekevät omalla vapaa-ajallaan ja omaksi ja muiden iloksi asioita. Usein pyyteettömästi. ❤️


An excellent video giving strong arguments why every single country should have a @sovtechfund like organization. Or better, an EU agency, in our case.
The Internet Was Weeks Away From Disaster and No One Knew
https://youtu.be/aoag03mSuXQ?si=vbfi9geBAgsj97EF
#OpenSource #DigitalSovereignty #Internet #Sustainability #Linux #GNU #openssh #xz

The main thing I was wondering while watching this: Is the open source community just a bunch of Finns?
https://www.youtube.com/watch?v=aoag03mSuXQ
#linux #xz #FOSS question I was thinkign about when watching this

We, like everyone else, couldn't look away from the Veritasium video on the XZ vulnerability.
While there is a lot to address, an important point of this story sticks out to us at OSTIF- that it was best practices, the secondary review of code before a push, that caught this before disaster struck.
Watch the video here https://www.youtube.com/watch?v=aoag03mSuXQ to learn more details about this incredible story of open source security and community.


Veritasium covers the #xz compromise. This is well done. It starts off explaining open source. It explains encryption and compression. It explains software dependencies. It explains how the back door would have worked. Good watch.
#Backdoor #Veritasium #CVE #CVE20243094
https://youtu.be/aoag03mSuXQ

Veritasium made a really good video about the XZ backdoor, with a quick but comprehensive rundown on how it (and therefore partially Linux and libraries as a whole) worked.
#Linux #xz #OpenSource
---
The Internet Was Weeks Away From Disaster and No One Knew - Veritasium
https://www.youtube.com/watch?v=aoag03mSuXQ

@Datenproletarier hier eine deutsche Doku darüber (ja der Kanal ist mMn Boulevard):
«Eine Gruppe Hacker hätte sich beinahe Zugang zu Millionen von Servern auf der ganzen Welt verschafft. Doch ein deutscher Software-Entwickler hat ihnen einen Strich durch die Rechnung gemacht.»
