DiscoverOpen Source SecurityDetecting XZ in Debian with Otto Kekäläinen
Detecting XZ in Debian with Otto Kekäläinen

Detecting XZ in Debian with Otto Kekäläinen

Update: 2025-11-02
Share

Description

In this episode, Josh and Otto dive into the world of Debian packaging, exploring the challenges of supply chain security and the importance of transparency in open source projects. They discuss Otto's blog post about the XZ backdoor and how it's a nearly impossible attack to detect. Otto does a great job breaking down an incredibly complex problem into understandable pieces.

The show notes and blog post for this episode can be found at
https://opensourcesecurity.io/2025/2025-11-xz-debian-otto/

Comments 
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

Detecting XZ in Debian with Otto Kekäläinen

Detecting XZ in Debian with Otto Kekäläinen