April 2, 2024, 1:41 p.m. | /u/Street-Elevator7738

cybersecurity www.reddit.com

[The XZ Utils backdoor](https://en.wikipedia.org/wiki/XZ_Utils_backdoor) is not necessarily limited to Linux distributions. I found I have the compromised version of the package installed on my Mac via Homebrew.

```
user@users-MacBook-Pro ~ % xz --version
xz (XZ Utils) 5.6.1
liblzma 5.6.1
```

Does anyone know if the exploit can be completed on Mac OS considering it does not include the `libsystemd` library?


EDIT:
run `brew update && brew upgrade` to automatically rollback to a trusted version

https://github.com/orgs/Homebrew/discussions/5243

amp can cybersecurity edit exploit library mac macbook mac os pro run update upgrade version xz utils

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC