uniladtech homepage
  • News
    • Tech News
    • AI
  • Gadgets
    • Apple
    • iPhone
  • Gaming
    • Playstation
    • Xbox
  • Science
    • News
    • Space
  • Streaming
    • Netflix
  • Vehicles
    • Car News
  • Social Media
    • WhatsApp
    • YouTube
  • Advertise
  • Terms
  • Privacy & Cookies
  • LADbible Group
  • LADbible
  • UNILAD
  • SPORTbible
  • GAMINGbible
  • Tyla
  • FOODbible
  • License Our Content
  • About Us & Contact
  • Jobs
  • Latest
  • Archive
  • Topics A-Z
  • Authors
Facebook
Instagram
X
TikTok
Snapchat
WhatsApp
Submit Your Content
The malicious bug that almost infected the world

Home> News> Tech News

Updated 11:51 1 Apr 2024 GMT+1Published 11:52 1 Apr 2024 GMT+1

The malicious bug that almost infected the world

Malicious code has been discovered just before going mainstream and potentially causing chaos.

Prudence Wade

Prudence Wade

google discoverFollow us on Google Discover

A malicious update has been found just in time before it caused widespread chaos.

Red Hat, a tech company that provides open source solutions, posted an 'urgent security alert' on Friday, saying that two versions of a popular data compression library called XZ Utils had been backdoored with malicious code.

This is scary, because it basically meant that a bad actor had injected it with code that would give them unauthorized remote access to you.

@filippo.abyssdomain.expert / Bluesky
@filippo.abyssdomain.expert / Bluesky

Advert

Software and cryptography engineer Filippo Valsorda posted on social media site Bluesky that it "might be the best executed supply chain attack we've seen described in the open, and it's a nightmare scenario: malicious, competent, authorized upstream in a widely used library".

Luckily, the malicious code was caught in time - with Valsorda suggesting it was spotted "by chance".

According to Ars Technica, Andres Freund, a developer and engineer working on Microsoft’s PostgreSQL offerings, was troubleshooting issues in the universal operating system Debian with SSH, 'The most widely used protocol for remotely logging into devices over the Internet'.

Through Freund's work - and a bit of luck - he discovered the malicious code, which were the result of updates that had been made to xz Utils.

Ars Technica says Freund then went public and revealed that the updates were actually something much more sinister than they first appeared - and were someone intentionally putting a backdoor in the compression software.

MASTER / Getty
MASTER / Getty

In computing, 'backdoors' are put into tech as a way of bypassing normal authentications and gaining access to someone's data or device - usually for nefarious purposes.

And according to Ars Technica, it looks like this backdoor was 'years in the making' - and could have been worked on as far back as 2021.

It's all pretty complicated stuff, but at its core, it's good news. The malicious code was caught just in time - meaning that no bad actors have been able to use this particular backdoor to weasel their way into an individual or company operating system.

While this seems like a grand scheme from a highly sophisticated scammer, there are still plenty of simple things you can do to keep your own data safe.

Whether it's making sure you've always got the latest operating system downloaded, making sure you're only downloading trusted apps or having different passwords for everything, small steps can go a long way to making sure you stay safe online.

Featured Image Credit: Surasak Suwanmake/imaginima/Getty
Cybersecurity
Tech News
Tech tips

Advert

Advert

Advert

  • Vacationers swear by mini Apple product that works 'flawlessly' with iPhone app while traveling
  • Research reveals 'horrifying' acts young kids are turning to AI for
  • Sam Altman slams Elon Musk when discussing a decision that's 'best for the world'
  • Dark web investigator reveals one clue that helped him save 12-year-old girl

Choose your content:

3 mins ago
17 hours ago
  • Surasak Suwanmake / Getty
    3 mins ago

    USA's record-breaking heatwave set to get worse as experts warn climate change threat is 'here'

    The effects could be long term

    News
  • Universal History Archive / Contributor / Getty
    17 hours ago

    Paul McCartney banned from Reddit after posting photos to his own subreddit

    Maybe he should've 'Let It Be'

    News
  • Tom Brenner For The Washington Post via Getty Images
    17 hours ago

    Elon Musk's last remaining co-founder posts poignant image days before xAI exit is reported

    The xAI co-founder revealed he is 'touching some grass'

    News
  • MANDEL NGAN / Contributor via Getty
    17 hours ago

    Trump tells all on military 'bunker' being hidden beneath White House Ballroom

    It has people worrying about an impending nuclear war

    News