April 4, 2024, 5:32 p.m. | /u/MartinZugec

cybersecurity www.reddit.com

Hey everyone,



Just wanted to share a new tool we developed to help identify XZ backdoor vulnerability (CVE-2024-3094).



\- Standalone & Portable: No additional software needed, runs on various Linux systems (written in Go)

\- Two Scanning Modes: Choose between Fast Scan and Full Scan (--system)



Important Notes:

\- Requires root privileges to run effectively.

\- Initial testing on Fedora, Debian, but wider testing is recommended.

\- Identifies vulnerable liblzma versions and searches for the backdoor's malicious code.



How to …

amp backdoor cve cve-2024 cve-2024-3094 cybersecurity effectively fast hey identify important linux linux systems portable privileges root run scan scanner scanning share software system systems tool vulnerability written xz backdoor

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Information Security Engineer, Sr. (Container Hardening)

@ Rackner | San Antonio, TX

BaaN IV Techno-functional consultant-On-Balfour

@ Marlabs | Piscataway, US

Senior Security Analyst

@ BETSOL | Bengaluru, India

Security Operations Centre Operator

@ NEXTDC | West Footscray, Australia

Senior Network and Security Research Officer

@ University of Toronto | Toronto, ON, CA