XZ backdoor in a nutshell

https://lemmy.zip/post/12859629

XZ backdoor in a nutshell - Lemmy.zip

I know this is being treated as a social engineering attack, but having unreadable binary blobs as part of your build/dev pipeline is fucking insane.
Yep, I consider it a failure of the build/dev pipeline.