XZ Backdoor Supply Chain Vulnerability: What You Should Know
by Matthew Lloyd Davies and Aaron Rosenmund
Get to know how you might be affected by the XZ Utils backdoor vulnerability, and what you can do to assess and mitigate the impact.
What you'll learn
This course discusses how a trusted Github collaborator implanted a backdoor into a popular Linux software tool used for compressing software packages such as release tarballs, kernel images and initramfs images, amongst other things. We’ll cover why it’s important and how you can risk-assess your exposure, as well as providing guidance on how to mitigate the risk.
About the authors
Matt is a cyber security author and researcher here at Pluralsight. A certified penetration tester and incident handler, he created Pluralsight's CompTIA Pentest+ Specialized Attacks courses as well our courses on wireless, ICS/OT and hardware hacking. Matt has also helped to build our security labs portfolio; labs that help you get hands-on to understand the threats and vulnerabilities your organization faces today. With a background in Chemical Engineering, Matt's focus is on the security ... moreof Operational Technology, and particularly Industrial Control Systems. With the explosive growth of Industry 4.0 and the Industrial Internet of Things, Matt is passionate about educating the next generation of cyber security professionals to front up to the challenges faced by critical national infrastructure organizations around the world.
Aaron M. Rosenmund is a cyber security operations subject matter expert, with a background in federal and business defensive and offensive cyber operations and system automation. Leveraging his administration and automation experience, Aaron actively contributes to multiple open and closed source security operation platform projects and continues to create tools and content to benefit the community. As an educator & cyber security researcher at Pluralsight, he is focused on advancing cyber secur... moreity workforce and technologies for business and national enterprises alike. In support of the Air National Guard, he contributes those skills part time in various initiatives to defend the nation in cyberspace. Certifications: GIAC GCIA, GIAC GCED, CCNA Cyber Operations, Pentest+, CySa+, CASP
www.AaronRosenmund.com
@arosenmund
"ironcat"