Business Wire

CA-BINARLY

1.4.2024 22:40:34 CEST | Business Wire | Press release

Share
Binarly Releases Free Detection Tool for XZ Backdoor

Binarly, provider of an industry leading AI-powered firmware and software supply chain security platform, has created and released a free scanning tool to help defenders spot signs of the dangerous XZ backdoor (CVE-2024-3094).

The XZ.fail detection tool was released less than 24 hours after the discovery of a backdoor in the open-source XZ Utils, which provides lossless data compression on virtually all Unix-like operating systems, including Linux. (See CISA advisory).

According to Binarly chief executive Alex Matrosov, the tool includes generic IFUNC implantation detection with close to zero false-positives, showcasing the company’s binary code intelligence engine in action.

“This detection is based on behavioral analysis and can detect any invariants automatically if a similar backdoor is implanted somewhere else,” Matrosov added.

“Such a complex and professionally designed implantation framework is not developed for a one-shot operation. It could already be deployed elsewhere or partially reused in other operations. That’s exactly why we started focusing on more generic detection for this complex backdoor,” Matrosov added.

For those seeking more comprehensive detection and remediation strategies, the Binarly Transparency Platform offers an in-depth solution. With XZ detection capabilities deployed, the platform facilitates easy identification of malicious activities at scale, enabling users to take prompt and effective action to safeguard their software supply chains.

The XZ backdoor came to light on March 29, 2024, when a thread was published on Openwall's oss-security mailing list by Andres Freund, revealing a potential compromise in the open-source code.

For more information read our research article and access the free XZ backdoor scanner at XZ.fail.

About Binarly:

Binarly is a global firmware and software supply chain security company founded in 2021. The company’s flagship Binarly Transparency Platform is an enterprise-class, AI-powered solution used by device manufacturers, OEMs, IBVs and product security teams to identify known and unknown vulnerabilities, misconfigurations and signs of malicious code implantation. Binarly’s validated remediation playbooks have significantly reduced the cost and time to respond to security exposures. Based in Los Angeles, California, Binarly brings decades of research and program analysis expertise to build solutions to protect businesses, critical infrastructure, and consumers around the world.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

View source version on businesswire.com: https://www.businesswire.com/news/home/20240401230046/en/

About Business Wire

Business Wire
Business Wire
101 California Street, 20th Floor
CA 94111 San Francisco

http://businesswire.com
DK

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Porsche Sells Bugatti Stake to BlueFive Capital24.4.2026 10:00:00 CEST | Press release

Porsche has agreed to sell its equity stake in Bugatti Rimac. Porsche and Rimac Group established Bugatti Rimac as a joint venture in 2021 to serve as home to the iconic Bugatti brand. In this joint venture, Porsche holds a minority stake of 45%, Rimac Group owns 55%. Porsche also holds a 20.6% stake in Rimac Group. As part of the transaction announced today, Porsche will fully divest its equity stakes in Bugatti Rimac and Rimac Group to a HOF Capital-led consortium. This includes BlueFive Capital as its largest investor, as well as a group of institutional investors across the US and EU. Following completion, Rimac Group is set to take control of Bugatti Rimac and form a strategic partnership with BlueFive Capital and HOF Capital to support its continued growth. Hazem Ben-Gacem, Founder and Chief Executive of BlueFive Capital: “Bugatti is a monument to automotive obsession, born from Ettore Bugatti’s pursuit of beauty and performance combined. BlueFive Capital approaches this opportun

NIQ and INTAGE HD Partner to Expand Retail Measurement Across Japan and Global Markets24.4.2026 04:00:00 CEST | Press release

NielsenIQ (NYSE: NIQ), a leading consumer intelligence company, and INTAGE HOLDINGS Inc. (hereafter "INTAGE HD"), a leading market research company in Japan, today announced a mutual sales partnership to expand access to retail measurement insights between Japan and global markets. Through the collaboration, NIQ and INTAGE HD bring together complementary strengths— INTAGE HD’s deep local retail store panel data and insights into the Japanese domestic market, and NIQ’s global and regional retail store panel data and insights into various international markets—to enable better comparison and understanding of market performance and trends across countries and regions. This collaboration enhances both companies’ ability to support clients with more consistent and comparable insights, helping clients unlock growth opportunities across markets. The collaboration enables global clients to access INTAGE HD’s nationwide retail store panel data in Japan (SRI+ and SRI+EC) to support market entry

Andersen Global styrker sin vestafrikanske platform med tilføjelsen af et medlemsfirma i Ghana24.4.2026 03:46:00 CEST | Pressemeddelelse

Andersen Global fortsætter sin ekspansion i Afrika, hvor Lima Partners tilslutter sig som medlemsfirma og introducerer Andersen-navnet i Ghana. Det nuværende Andersen in Ghana blev stiftet i 2014, har hovedkontor i Accra og ledes af administrerende partner Daniel Addo Okoe. Firmaet tilbyder et komplet udvalg af professionelle services, herunder skatterådgivning, regulatorisk compliance, regnskab og rådgivning, transfer pricing, lønadministration, immigration og selskabsretlige sekretærydelser til både lokale og internationale klienter, der opererer i Ghana og den bredere vestafrikanske region. "At indtræde som medlemsfirma i Andersen Global markerer en betydelig milepæl for vores organisation," udtalte Kwame Amporful, seniorpartner hos Andersen in Ghana. "Vores kunder vil få glæde af forbedrede kompetencer på tværs af landegrænser, samtidig med at de beholder adgangen til praktisk kvalitetsrådgivning, der er skræddersyet til markedet i Ghana.” "Ghana spiller en afgørende rolle i at fre

Pacífico Mexinol Celebrates the Symbolic Groundbreaking in Topolobampo, Positioning Mexico in the New Low-Carbon Chemical Industry24.4.2026 02:29:00 CEST | Press release

The initiative brings together governments, diplomats, and global investors around a Net Zero industrial model. The project establishes Topolobampo, Sinaloa as a key hub for industrial development in North America. The Pacifico Mexinol project (“Mexinol”) celebrated the beginning of its pre-construction phase by symbolically laying a first stone, marking the start of one of the most significant global industrial investments in blue and ultra-low carbon methanol. The event brought together diplomats, authorities, and national and international business leaders, reflecting the project’s strategic importance for Mexico and its integration into the emerging low-carbon economy. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260423775301/en/ Adolfo Murietta, Project Shareholder; Rommel Gallo, CEO Transition Industries; Ron Johnson, United States Ambassador to Mexico; Drew Hoster, Counsel General of the United States in Hermosillo,

The New World ID: Proof of Human for the AI Era Scales Across the Digital Platforms People and Businesses Use Every Day24.4.2026 02:20:00 CEST | Press release

Docusign, Okta, Tinder, Vercel, and Zoom bring World ID proof of human to businesses, AI agents, and consumers Last week, World announced the next generation of World ID, its proof of human protocol, designed to increase trust on the internet. The announcement was made during “Lift Off,” a live event in San Francisco. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260417530721/en/ Docusign, Okta, Tinder, Vercel, and Zoom bring World ID proof of human to businesses, AI agents, and consumers As AI makes it easier than ever to generate convincing content, identities, and interactions, trust online has decreased. World ID addresses this challenge by enabling individuals to privately prove they are a real, unique human, without revealing their identity across apps, platforms, and services. “If anything online can be faked, you no longer know who or what to trust,” said Tiago Sada, Chief Product Officer at Tools for Humanity, a co

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye