Just a quick question about xz and xz-libs

Since the investigation into the capabilities of the malicious payload is still ongoing, it is best not to draw any conclusions.

The worst case is that the malware has means for arbitrary code execution with escalated privileges, so a complete system re-installation is the only effective option to ensure the threat is eliminated.


Preliminary reverse engineering results confirm remote code execution:

2 Likes