Absolutely wild that someone could slowly slip a back door into a widely used, and publicly available, codebase via minor changes over a period of time and go unnoticed.

like
Posting as :
works at
You are currently posting as works at

https://bsky.app/profile/filippo.abyssdomain.expert/post/3kowjkx2njy2b

XZ backdoor

like

It's not wild if nobody else is paying close enough attention. What specifically are you referring to?

like

xz vulnerability that made headlines this weekend

like

This is my punishment for keeping up to date.

Post Photo
funny

*laughs in PRC*

funny

That’s where I first heard about XZ was from Krebs initially. Great source, love all of his work. I’ll check the others though!

like

Related Posts

What was your career path to becoming a director?

like

Anyone hiring? I’m a PharmD looking to jump from consulting to the industry.

like

I’m interested in transitioning out of big 4 compliance monitoring/internal audit into the cannabis industry. I’m burned out of the 60 hour work week and dream about marrying my background with my passion for cannabis 😉. Any of you aware of remote roles in the industry for my background? I’m chasing 🦄

like

Hi all, Anyone out there certified for a associate google cloud engineer certification, may I know the difficulty level and exam point of view setup

Any helpful resources for pulling together a B2B measurement framework?

like

Whoever took the shoes off on my plane please put them on 🤢

like

How long do you let your wine decant before drinking/serving?

like

Anyone joining Citi on 5th dec at Pune location?

like

What is LPA location premium allowance mentioned in offer letter?? Is it variable part which we get end of year? Or will it be part of monthly salary?

like

Can anyone refer to me in Cvent, Gartner or Deloitte?
.
YOE: 7+
Location: Gurgaon
Area of expertise: Content, Social Media, & Digital Marketing
.
TIA🙏

like

Is it worth pursuing a management position coming from being an engineer? What is your opinion on trying to go this route?

like

Matter likely to receive media attention

like

How is bahrain for working as Dotnetfullstack developer?

like

Hello all
Anyone have idea about whales cloud technology company?
I have got an offer for expert position in R&D team gurgaon.

like

Why do H/S dual admits tend to choose S??

like

A few months ago I totally blew a third date with a guy I really liked during a completely hellish period where I was billing 200+ hrs each month. Would it be weird to text him again now?

funny

Is 22-24 LPA good range for Senior Consultant in EY GDS Business consulting or am I being underpaid (3.4 yoe)?

like

A client (in the banking industry) is looking for what they’re calling a software/dev ops attorney to report directly to the GC. Thinking 6th year+. Would need to be based in the south. Can provide more details if you dm me.

like

Got a temp offer for less than a year without promise of turning into full-time. Wanted to know what ppl think about temp jobs (looks bad on resume if I don't turn full-time later within the company?) and what comp should look like (e.g. 1.2× of regular comp?).

Got another perm offer in a different industry for similar salary, but I might have to relocate and I'm concerned the work may involve translation instead of pure legal work.

like

Additional Posts in Cyber Security Bowl

Security TPM on-site at big tech, how would you prepare/review? No coding. Expect high level q’s on vuln. Analysis& arch. design from security POV. I do NOT have an engr. Background. 1wk to prep

like

is CRISC worth it? dont see it coming up as much as others

like

Any company is hiring EU citizens and helping with visa? interested in moving to USA. I'm lawyer, cissp, cisa, cipp/e and specialized n data privacy, cybersec ops and risk management with 8+ years exp

I have a younger family member (almost 13) who is very interested in cybersecurity. How can this person learn and grow in a safe manner if he/she isn’t near a city with youth clubs and etc? Idea is to reinforce ethics, but this material is far too advanced for the parents.

like

How did you decide your speciality in Cybersecurity? Did you naturally gravitate towards one area?

like
like

Deloitte Cyber, how long did it take you to receive an offer after final interview?

like

Anyone got insights on IBM Security? Areas of expertise? QoL? Pay, etc.

Views on carbon black as a product?

helpful

Hey all, I have been working in Identity and access management space at EY for past 4 years. Need help with understanding best exit opportunities?

Anyone else at CyberArk Impact this week? Anything exciting going on?

How to make a jump to cloud security when I just have SOC experience? Currently studying for Solutions Architect cert

like

On a phone call today, my client suggested our project team provide 24/7 coverage for scanning support. My team size is two, including myself.

Post Photo
likefunnysmart

I have interviews coming up with BCG. Any BCG Platinion folks willing to discuss example case interview questions?

like

Currently stuck in risk but interested in Cyber. Have done one related engagement from a regulatory perspective. But a lot of posts here making me think it’s harder to break into than I expected (non-technical background). If you had a six sigma green belt / supply chain degree/exp., would you still go through the effort of going into Cyber or take easy risk money being offered / easier transition back to supply chain? 2-3 YOE and trying to decide career course, any advice highly appreciated

like

Currently working in an IT audit role, what is the best way to transition into cyber ?

like

Wondering if anyone here got "provisional" CISSP --obtaining the cert before five years in the industry. Have Security+ and CIPP/US and aiming for BISO role in Fortune 100. Pivoted from consulting. 15+ YOE. Masters degree Management experience. Advice? Thanks.

like

Thinking of moving from Big4 cyber to Accenture cyber. Any major differences (other than no channel restrictions).

like

How much does Deloitte pay for cybersecurity or devops senior Deloitte roles

like

What does a senior cyber consultant make at EY or other b4 firms Chicago if that makes a difference

like

New to Fishbowl?

Download the Fishbowl app to
unlock all discussions on Fishbowl.
That was just a preview…
Sign Up to see all discussions
  • Discover what it’s like to work at companies from real professionals
  • Get candid advice from people in your field in a safe space
  • Chat and network with other professionals in your field
Sign up in seconds to unlock all discussions on Fishbowl.

Already a user?
Login here

Share

Embed this post

Copy and paste embed code on your site

Preview

Download the
Fishbowl app

See what’s happening in your industry
from the palm of your hand.

A phone with Fishbowl app

Scan your QR code to download
Fishbowl app on your mobile

Download app

Sign up for free to view this conversation on Fishbowl

By continuing you agree to Terms of Use and Privacy Policy

Already have an account? Log in

Sign up for free to continue using Fishbowl

By continuing you agree to Terms of Use(New) and Privacy Policy(New)
Messaging rates may apply

Already have an account? Log in

For account settings, visit Fishbowl on Desktop Browser or

General

Legal