Business Wire

Binarly Releases Free Detection Tool for XZ Backdoor

1.4.2024 23:39:00 EEST | Business Wire | Press release

Share

Binarly, provider of an industry leading AI-powered firmware and software supply chain security platform, has created and released a free scanning tool to help defenders spot signs of the dangerous XZ backdoor (CVE-2024-3094).

The XZ.fail detection tool was released less than 24 hours after the discovery of a backdoor in the open-source XZ Utils, which provides lossless data compression on virtually all Unix-like operating systems, including Linux. (See CISA advisory).

According to Binarly chief executive Alex Matrosov, the tool includes generic IFUNC implantation detection with close to zero false-positives, showcasing the company’s binary code intelligence engine in action.

“This detection is based on behavioral analysis and can detect any invariants automatically if a similar backdoor is implanted somewhere else,” Matrosov added.

“Such a complex and professionally designed implantation framework is not developed for a one-shot operation. It could already be deployed elsewhere or partially reused in other operations. That’s exactly why we started focusing on more generic detection for this complex backdoor,” Matrosov added.

For those seeking more comprehensive detection and remediation strategies, the Binarly Transparency Platform offers an in-depth solution. With XZ detection capabilities deployed, the platform facilitates easy identification of malicious activities at scale, enabling users to take prompt and effective action to safeguard their software supply chains.

The XZ backdoor came to light on March 29, 2024, when a thread was published on Openwall's oss-security mailing list by Andres Freund, revealing a potential compromise in the open-source code.

For more information read our research article and access the free XZ backdoor scanner at XZ.fail.

About Binarly:

Binarly is a global firmware and software supply chain security company founded in 2021. The company’s flagship Binarly Transparency Platform is an enterprise-class, AI-powered solution used by device manufacturers, OEMs, IBVs and product security teams to identify known and unknown vulnerabilities, misconfigurations and signs of malicious code implantation. Binarly’s validated remediation playbooks have significantly reduced the cost and time to respond to security exposures. Based in Los Angeles, California, Binarly brings decades of research and program analysis expertise to build solutions to protect businesses, critical infrastructure, and consumers around the world.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

Contact information

media@binarly.io
818.351.9637

About Business Wire

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

UNIQA Unifies Customer Risk Intelligence Across 14 Countries with SymphonyAI Financial Crime Compliance Platform23.6.2026 08:07:00 EEST | Press release

UNIQA Insurance Group, one of Austria's and Europe's leading insurers, has selected the financial crime compliance platform from SymphonyAI, a global leader in Vertical AI, to unify customer due diligence (CDD) across its Central and Eastern European footprint. With operations spanning 14 countries and approximately 17 million customers, UNIQA brings one of the most complex compliance environments in the region to a single, centralized intelligence layer. Building for complexity, not around it UNIQA sought a CDD capability that matched the complexity of a pan-European insurer: one that could classify customers across risk categories consistently, keep pace with a shifting regulatory landscape across Central and Eastern Europe, and scale across diverse markets without requiring country-by-country customization. UNIQA selected SymphonyAI following a competitive evaluation in which speed of implementation and insurance-specific domain depth were the decisive criteria. Most financial crime

Lenovo Recognized in the Gartner® Supply Chain Top 25 for 202623.6.2026 07:00:00 EEST | Press release

Lenovo has once again been ranked in the Gartner® Supply Chain Top 25 for 2026, achieving its highest-ever ranking at seventh globally. The Gartner Supply Chain Top 25 is a renowned annual ranking of the world’s superior supply chains. Now in its 22nd year, the Gartner Supply Chain Top 25 identifies, celebrates and profiles excellence in supply chain management. Supply chain teams use the Gartner Supply Chain Top 25 to benchmark performance, transform operations and lead in the future.Lenovo ranked eighth in 2025, 10th in 2024, and eighth in 2023. AI Builds Greater Supply Chain Resilience Global supply chains have faced unprecedented disruption over the past 12 months, driven by tariffs, component shortages, and geopolitical tensions. Lenovo’s strength amid these challenging circumstances has been its ability to build on its AI infrastructure behind its global supply chain, improving resilience, adaptability and execution at speed and scale. Over the past year, Lenovo has evolved its S

One Biosciences Receives BOOST Funding From Paris-Saclay Cancer Cluster to Advance the First Single-Cell Assay Approach for ADC Therapies22.6.2026 23:15:00 EEST | Press release

One Biosciences, a techbio company pioneering clinical-grade single-cell tumor profiling, today announced financial support via a Paris-Saclay Cancer Cluster (PSCC) BOOST grant to develop the first single-cell assay for antibody-drug conjugates (ADC) therapies in oncology. The rapid growth of ADCs is driving demand for more sophisticated biomarker strategies. By capturing tumor complexity at cellular resolution, single-cell profiling has the potential to enhance patient selection and support the development of next-generation ADCs. Ultimately, it will help match the right patients to the right therapies, maximizing therapeutic benefit. The PSCC BOOST-funded project seeks to bring a new level of precision to ADC development. It will be conducted in collaboration with Adcytherix, a clinical-stage biotech company developing differentiated ADCs for cancers with high unmet medical need. The collaboration will combine Adcytherix’s expertise in ADC development with One Biosciences’ AI-powered

Interactive Brokers Expands AI Integration Capabilities – Adding ChatGPT and Grok to Its Growing Suite of Agentic Trading Tools22.6.2026 17:00:00 EEST | Press release

Interactive Brokers (Nasdaq: IBKR), an automated global broker, today announced the expansion of its agentic trading capabilities with the addition of ChatGPT and Grok, further broadening a growing ecosystem of AI platform integrations that began with Claude. Available through certified AI connector marketplaces across multiple leading platforms, these integrations allow clients to research, analyze, and generate instructions with speed and efficiency to uncover new trading and investing opportunities instantly. With this release, Interactive Brokers also extends the selection of products available for order instructions to include support for options, futures and futures options in addition to equities and ETFs. “We continue to see growing interest from investors in using artificial intelligence as a more natural way to interact with financial markets,” said Milan Galik, Chief Executive Officer of Interactive Brokers. “Adding ChatGPT and Grok, together with support for options and fut

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye