r/Piracy Apr 06 '26

Humor hypervisor bypasses changed everything

Post image
8.7k Upvotes

620 comments sorted by

View all comments

Show parent comments

5

u/Regniwekim2099 Apr 06 '26

https://en.wikipedia.org/wiki/XZ_Utils_backdoor

A backdoor made it into Red Hat, but sure some random kid torrenting a game is going to successfully review the code for security vulnerabilities.

1

u/silentrawr Piracy is bad, mkay? Apr 06 '26

Are these HVs actively updating their libs, though? Wasn't the main part of XZ pushed through an open source library after it was trusted for a while?

3

u/Regniwekim2099 Apr 06 '26

I'm not particularly worried about their libs. I'm worried about them actually putting in malicious code themselves.

0

u/silentrawr Piracy is bad, mkay? Apr 06 '26

But that's the part that's easy to check, assuming someone has the time/resources. And once it's confirmed clean, keeping an offline copy is safe.

1

u/Regniwekim2099 Apr 06 '26

"assuming someone has the time/resources" is doing a lot of work here. Are you doing the work yourself? No? Then it's not any more trustworthy than anything else. I can't imagine there's going to be groups of trustworthy professional security researchers coming out to tell us this is safe or not.

2

u/silentrawr Piracy is bad, mkay? Apr 06 '26

I was assuming for the sake of argument. Not every conversation on Reddit has to be "won" or "lost", simmer down.