The book 'Half a Second' chronicles the discovery of the sophisticated backdoor in XZ Utils, a critical open-source compression library, highlighting how a minor latency anomaly led to uncovering a two-year infiltration. It explores the human elements behind the incident, including the exploited maintainer and the curious engineer, while critiquing the structural vulnerabilities of relying on underfunded volunteer maintenance for essential digital infrastructure.
Background
The XZ Utils backdoor incident revealed a severe supply chain vulnerability in widely used Linux compression tools, raising global concerns about open-source software sustainability and security.
- Source
- Lobsters
- Published
- Jul 19, 2026 at 03:13 AM
- Score
- 8.0 / 10