13:45:27 @nt776@sv1.in-deep.blue
2024-03-30 11:22:21 コロコロコロ助님의 게시물 naota344@social.mikutter.hachune.net
icon

This account is not set to public on notestock.

13:40:37 @nt776@sv1.in-deep.blue
icon

はーねむ

09:29:25 @nt776@sv1.in-deep.blue
2024-03-30 09:02:47 naskya :opensource:님의 게시물 dev@post.naskya.net
icon

This account is not set to public on notestock.

06:06:11 @nt776@sv1.in-deep.blue
icon

ねーむ

05:58:54 @nt776@sv1.in-deep.blue
icon

やば

05:58:15 @nt776@sv1.in-deep.blue
2024-03-30 05:40:16 Yuicho님의 게시물 yuicho@mstdn.yuicho.net
icon

ざっと見た感じ、ちょっとずつちょっとずつ悪意あるコードがcommitされていて、なんかのトリガーでtarで固めたバイナリになった時点で発動するようになってる…?

github.com/tukaani-project/xz/

Web site image
[Bug]: Upstream compromised? Or is the compromise? · Issue #92 · tukaani-project/xz
04:25:26 @nt776@sv1.in-deep.blue
2024-03-30 04:01:27 Arch Linux :archlinux:님의 게시물 archlinux@fosstodon.org
icon

This account is not set to public on notestock.

04:16:41 @nt776@sv1.in-deep.blue
icon
Web site image
Beware! Backdoor found in XZ utilities used by many Linux distros (CVE-2024-3094) - Help Net Security
04:15:09 @nt776@sv1.in-deep.blue
icon

何に影響するのんって読んでたらsshdの認証バイパスする感じ?? やっぱポート公開しちゃだめやね

04:02:31 @nt776@sv1.in-deep.blue
icon

え草

04:02:24 @nt776@sv1.in-deep.blue
2024-03-30 03:40:00 6歳児님의 게시물 kuriuzu@misskey.backspace.fm
icon

This account is not set to public on notestock.

04:02:16 @nt776@sv1.in-deep.blue
2024-03-30 03:33:47 rinsuki님의 게시물 rinsuki@mstdn.rinsuki.net
icon

This account is not set to public on notestock.

03:17:24 @nt776@sv1.in-deep.blue
icon

ねむ