13:45:27 @nt776@sv1.in-deep.blue
2024-03-30 11:22:21 Posting コロコロコロ助 naota344@social.mikutter.hachune.net
icon

This account is not set to public on notestock.

13:40:37 @nt776@sv1.in-deep.blue
icon

はーねむ

09:29:25 @nt776@sv1.in-deep.blue
2024-03-30 09:02:47 Posting naskya :opensource: dev@post.naskya.net
icon

This account is not set to public on notestock.

06:06:11 @nt776@sv1.in-deep.blue
icon

ねーむ

05:58:54 @nt776@sv1.in-deep.blue
icon

やば

05:58:15 @nt776@sv1.in-deep.blue
2024-03-30 05:40:16 Posting Yuicho yuicho@mstdn.yuicho.net
icon

ざっと見た感じ、ちょっとずつちょっとずつ悪意あるコードがcommitされていて、なんかのトリガーでtarで固めたバイナリになった時点で発動するようになってる…?

github.com/tukaani-project/xz/

Web site image
[Bug]: Upstream compromised? Or is the compromise? · Issue #92 · tukaani-project/xz
04:25:26 @nt776@sv1.in-deep.blue
2024-03-30 04:01:27 Posting Arch Linux :archlinux: archlinux@fosstodon.org
icon

This account is not set to public on notestock.

04:16:41 @nt776@sv1.in-deep.blue
icon
Web site image
Beware! Backdoor found in XZ utilities used by many Linux distros (CVE-2024-3094) - Help Net Security
04:15:09 @nt776@sv1.in-deep.blue
icon

何に影響するのんって読んでたらsshdの認証バイパスする感じ?? やっぱポート公開しちゃだめやね

04:02:31 @nt776@sv1.in-deep.blue
icon

え草

04:02:24 @nt776@sv1.in-deep.blue
2024-03-30 03:40:00 Posting 6歳児 kuriuzu@misskey.backspace.fm
icon

This account is not set to public on notestock.

04:02:16 @nt776@sv1.in-deep.blue
2024-03-30 03:33:47 Posting rinsuki rinsuki@mstdn.rinsuki.net
icon

This account is not set to public on notestock.

03:17:24 @nt776@sv1.in-deep.blue
icon

ねむ