CA-BINARLY
1.4.2024 22:40:34 CEST | Business Wire | Press release
Binarly, provider of an industry leading AI-powered firmware and software supply chain security platform, has created and released a free scanning tool to help defenders spot signs of the dangerous XZ backdoor (CVE-2024-3094).
The XZ.fail detection tool was released less than 24 hours after the discovery of a backdoor in the open-source XZ Utils, which provides lossless data compression on virtually all Unix-like operating systems, including Linux. (See CISA advisory).
According to Binarly chief executive Alex Matrosov, the tool includes generic IFUNC implantation detection with close to zero false-positives, showcasing the company’s binary code intelligence engine in action.
“This detection is based on behavioral analysis and can detect any invariants automatically if a similar backdoor is implanted somewhere else,” Matrosov added.
“Such a complex and professionally designed implantation framework is not developed for a one-shot operation. It could already be deployed elsewhere or partially reused in other operations. That’s exactly why we started focusing on more generic detection for this complex backdoor,” Matrosov added.
For those seeking more comprehensive detection and remediation strategies, the Binarly Transparency Platform offers an in-depth solution. With XZ detection capabilities deployed, the platform facilitates easy identification of malicious activities at scale, enabling users to take prompt and effective action to safeguard their software supply chains.
The XZ backdoor came to light on March 29, 2024, when a thread was published on Openwall's oss-security mailing list by Andres Freund, revealing a potential compromise in the open-source code.
For more information read our research article and access the free XZ backdoor scanner at XZ.fail.
About Binarly:
Binarly is a global firmware and software supply chain security company founded in 2021. The company’s flagship Binarly Transparency Platform is an enterprise-class, AI-powered solution used by device manufacturers, OEMs, IBVs and product security teams to identify known and unknown vulnerabilities, misconfigurations and signs of malicious code implantation. Binarly’s validated remediation playbooks have significantly reduced the cost and time to respond to security exposures. Based in Los Angeles, California, Binarly brings decades of research and program analysis expertise to build solutions to protect businesses, critical infrastructure, and consumers around the world.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20240401230046/en/
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
JTB Group Unveils its Long-Term Vision “OPEN FRONTIER 2035”3.2.2026 14:00:00 CET | Press release
JTB Group has unveiled “OPEN FRONTIER 2035,” its long-term vision for the next decade. The vision positions JTB as a frontier (leading-edge) enterprise that brings together people, places, businesses, and possibilities to create connections and generate new value for society. By pioneering a new era of Designing Human Moments, we will harness our expertise and insights to connect, create, and contribute to the world—enriching people’s lives with excitement and contentment. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260203174455/en/ JTB Group's Desired Vision for 2035 Our Source of Value is the Power to Create Connections JTB Group has positioned “Intelligence that Creates Connections” as the core of its competitive advantage. Insight and expertise—when combined and continuously enhanced—will enable the Group to create meaningful connections by bringing together people, places, businesses, and possibilities, thereby gener
Visa Direct and UnionPay International Will Extend Global Money Movement Network to Billions of Cards in Chinese Mainland3.2.2026 13:00:00 CET | Press release
By connecting Visa Direct’s card network to UnionPay International’s (UPI) MoneyExpress platform, Visa Direct will unlock real‑time1 cross‑border money movement in one of the world’s largest remittance corridors At Web Summit Qatar, Visa (NYSE:V) and UnionPay International (UPI) announced an agreement to enable cross-border money movement into Chinese Mainland through Visa Direct. Once fully rolled out, clients will be able to send cross-border remittances and business-to-consumer payouts to more than 95 percent of UnionPay International debit cardholders in Chinese Mainland, through a single connection. By connecting Visa Direct’s global money movement network to UPI’s MoneyExpress platform, Visa will provide a more seamless, secure, and transparent way for consumers and businesses worldwide to send money into Chinese Mainland, one of the world’s largest remittance destinations. This milestone showcases Visa’s commitment to opening global corridors and extending reliable money movemen
China NMPA Approves Promega MSI Detection Kit as Companion Diagnostic for KEYTRUDA®3.2.2026 13:00:00 CET | Press release
The National Medical Products Administration (NMPA) has approved the OncoMate® Microsatellite Instability (MSI) Detection Kit as a Class III in vitro diagnostic medical device in China. It is intended for use as a companion diagnostic to identify MSI-High (MSI-H) solid tumor patients for treatment with KEYTRUDA® (pembrolizumab), Merck & Co., Inc., Rahway, NJ, USA’s anti-PD-1 therapy. This is the first Promega companion diagnostic to receive NMPA approval. “This approval represents a step toward more personalized and effective cancer treatment in China,” says Alok Sharma, Global Clinical Market Director at Promega. “We are proud to collaborate with pharmaceutical companies to deliver global solutions that expand access to innovative technologies and life-saving, effective therapies.” China continues to face one of the world’s highest cancer burdens, with solid tumors representing the vast majority of diagnoses nationwide. Despite advances in oncology care, most patients with advanced so
Rising Global Bullion Market Risks Are Forcing European Investors to Rethink Physical Gold Access3.2.2026 10:35:00 CET | Press release
As volatility reshapes global financial markets, European institutional investors are turning to safe-haven assets. While physical gold remains one of the world's most resilient and attractive store-of-value assets, secure and verifiable access to bullion has become increasingly difficult. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260203826775/en/ Illustrative image of physical gold bullion bars. (Photo: AETOSWire) Recent industry developments have placed structural pressure on the gold market. Elevated price levels have heightened concerns around counterfeit bars, fragmented supply chains, and the complexity of cross-border custody. For European institutions operating under strict regulatory oversight, the challenge is no longer whether to allocate to gold — but how to do so safely, transparently, and within established compliance frameworks. To this end, Golden Ark Reserve, operated by Golden Ark General Trading (FZC)
Hyper-Personalization at Scale: Why Brands Must Shift to an Agentic AI Strategy3.2.2026 10:00:00 CET | Press release
As Infobip celebrates 20 years of customer communication innovation, the AI-first company envisions the future of agentic AI Global AI-first cloud communications platform Infobip, celebrating two decades of innovation, predicts an imminent and seismic shift in brand-consumer engagement. Moving away from the current application-to-person (A2P) messaging, Infobip forecasts a widespread shift to an agent-to-person model, eventually leading to a fully autonomous agent-to-agent future by 2030. The Evolution of Engagement Swift AI adoption is driving enterprises toward agentic AI communication models, which drive autonomous customer communications across all touchpoints. This technology enables hyper-personalization across multiple channels, creating highly engaging content tailored to individual needs. Silvio Kutić, Infobip CEO, comments: “How we communicate with brands is constantly evolving. In this new agentic AI world, brands must seize the opportunity to take a holistic approach to com
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
