
Sign up to save your podcasts
Or


In this episode, Josh and Otto dive into the world of Debian packaging, exploring the challenges of supply chain security and the importance of transparency in open source projects. They discuss Otto's blog post about the XZ backdoor and how it's a nearly impossible attack to detect. Otto does a great job breaking down an incredibly complex problem into understandable pieces.
The show notes and blog post for this episode can be found at https://opensourcesecurity.io/2025/2025-11-xz-debian-otto/
By Josh Bressers4.7
4040 ratings
In this episode, Josh and Otto dive into the world of Debian packaging, exploring the challenges of supply chain security and the importance of transparency in open source projects. They discuss Otto's blog post about the XZ backdoor and how it's a nearly impossible attack to detect. Otto does a great job breaking down an incredibly complex problem into understandable pieces.
The show notes and blog post for this episode can be found at https://opensourcesecurity.io/2025/2025-11-xz-debian-otto/

188 Listeners

290 Listeners

2,010 Listeners

372 Listeners

268 Listeners

372 Listeners

652 Listeners

1,024 Listeners

164 Listeners

319 Listeners

8,052 Listeners

314 Listeners

74 Listeners

98 Listeners

44 Listeners