Binarly Releases Free Detection Tool for XZ Backdoor
1.4.2024 23:39:00 EEST | Business Wire | Press release
Binarly, provider of an industry leading AI-powered firmware and software supply chain security platform, has created and released a free scanning tool to help defenders spot signs of the dangerous XZ backdoor (CVE-2024-3094).
The XZ.fail detection tool was released less than 24 hours after the discovery of a backdoor in the open-source XZ Utils, which provides lossless data compression on virtually all Unix-like operating systems, including Linux. (See CISA advisory).
According to Binarly chief executive Alex Matrosov, the tool includes generic IFUNC implantation detection with close to zero false-positives, showcasing the company’s binary code intelligence engine in action.
“This detection is based on behavioral analysis and can detect any invariants automatically if a similar backdoor is implanted somewhere else,” Matrosov added.
“Such a complex and professionally designed implantation framework is not developed for a one-shot operation. It could already be deployed elsewhere or partially reused in other operations. That’s exactly why we started focusing on more generic detection for this complex backdoor,” Matrosov added.
For those seeking more comprehensive detection and remediation strategies, the Binarly Transparency Platform offers an in-depth solution. With XZ detection capabilities deployed, the platform facilitates easy identification of malicious activities at scale, enabling users to take prompt and effective action to safeguard their software supply chains.
The XZ backdoor came to light on March 29, 2024, when a thread was published on Openwall's oss-security mailing list by Andres Freund, revealing a potential compromise in the open-source code.
For more information read our research article and access the free XZ backdoor scanner at XZ.fail.
About Binarly:
Binarly is a global firmware and software supply chain security company founded in 2021. The company’s flagship Binarly Transparency Platform is an enterprise-class, AI-powered solution used by device manufacturers, OEMs, IBVs and product security teams to identify known and unknown vulnerabilities, misconfigurations and signs of malicious code implantation. Binarly’s validated remediation playbooks have significantly reduced the cost and time to respond to security exposures. Based in Los Angeles, California, Binarly brings decades of research and program analysis expertise to build solutions to protect businesses, critical infrastructure, and consumers around the world.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20240401230046/en/
Contact information
media@binarly.io
818.351.9637
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
DCX Launches Comprehensive ECDU Portfolio – Enterprise-Class Coolant Distribution Units From 600 kW to 2.6 MW11.3.2026 17:34:00 EET | Press release
DCX Liquid Cooling Systems today unveiled its new ECDU (Enterprise Coolant Distribution Unit) platform, a family of three purpose-built CDU models that deliver real cooling capacities from 600 kW to 2.6 MW in industry-standard rack and in-row footprints. The portfolio has been engineered specifically for the accelerating transition to direct-to-chip liquid cooling in high-density enterprise, colocation, cloud, and hyperscale AI environments where thermal stability, uptime, and cost-efficiency are non-negotiable. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260311214891/en/ DCX ECDU, the new generation of Enterprise Coolant Distribution Units dedicated to HPC and AI deployments. The lineup consists of: Enterprise ECDU 1380/2600 V1 - Delivers 1.38–2.6 MW of actual cooling capacity (based on real-world secondary-loop conditions). Single-pump configuration reaches flow rates up to 3,333 liters per minute (lpm). Mission Critica
Laserfiche Earns 5-Star Rating in the 2026 CRN® Partner Program Guide11.3.2026 16:00:00 EET | Press release
Laserfiche — the leading SaaS provider of intelligent content management — has been honored by CRN®, a brand of The Channel Company, with a 5-Star Award in the 2026 CRN Partner Program Guide. This annual guide is an essential resource for partners seeking vendor partner programs that match their business goals and deliver high partner value. As organizations navigate growing pressure to increase productivity and respond to regulatory change, Laserfiche’s AI-powered document management solutions enable users to transform operations and achieve meaningful business results at scale. Partners that innovate with Laserfiche solutions have the opportunity to grow profits through the Laserfiche Partner Program, which equips them with the tools and resources needed to deliver customer success. Laserfiche’s partner ecosystem drives sustainable growth, delivers differentiated solutions and maximizes opportunities for both partners and their customers. Laserfiche provides comprehensive AI and clou
I-Pulse Launches iTerra Pulsed Power Solution for Weed Control Without Chemicals11.3.2026 15:30:00 EET | Press release
I-Pulse Co-Founder, Chairman, and CEO Robert Friedland, I-Pulse Co-Founder and Chief Technology Officer, Laurent Frescaline, and iTerra CEO, Romain Leray, are pleased to announce the launch of iTerra, an agricultural technology subsidiary dedicated to non-chemical weed control within I-Pulse, the world leader in pulsed power technologies. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260311080724/en/ iTerra leverages I-Pulse’s proprietary high pulsed power technology to eliminate weeds at the root without harming crops, disrupting soil microbiology, or leaving chemical residues. Using AI-driven detection with accuracy rates of up to 95% in early trials, the system targets each weed individually with controlled, high-energy pulses lasting just five milliseconds. The treated weeds remain in the soil, where they naturally decompose, helping maintain soil health and supporting long-term crop performance. I-Pulse Co-Founder, Cha
Andersen Consulting Strengthens Platform with Collaborating Firm Ambit Iberia11.3.2026 15:30:00 EET | Press release
Andersen Consulting expands its technology and business transformation capabilities through a Collaboration Agreement with Ambit Iberia, a consulting firm specializing in digital and regulatory solutions for the life sciences sector. Founded in 2003 and headquartered in Spain, Ambit Iberia provides integrated consulting, technology, and talent solutions for pharmaceutical, biotechnology, and medical device companies. The firm supports clients in meeting evolving quality, compliance, and regulatory standards through services spanning regulatory affairs, data integrity, IT system validation, and digital transformation. Leveraging more than 20 years of industry expertise, Ambit Iberia also offers human capital and executive search services that connect organizations with specialized professionals and senior talent, enhancing efficiency and driving sustainable growth in a highly regulated environment. “Our focus has always been on delivering specialized consulting and technology services t
Canva Introduces Magic Layers, Turning Static AI Outputs Into Editable Designs11.3.2026 15:00:00 EET | Press release
Canva, the world's leading all-in-one visual communication platform, today unveiled Magic Layers, a new breakthrough technology that turns any flat design or image into something you can edit, refine, and remix to suit your vision. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260311951174/en/ Magic Layers is a new breakthrough technology that turns any flat design or image into something you can edit, refine, and remix to suit your vision. Generative AI has triggered a flood of visual content, but most of it remains locked in static image files. Even small changes can require starting over, with reprompts that can unintentionally alter the entire design. Powered by years of internal research and Canva’s growing investment in its AI development arm, Magic Layers ushers in a new era of editable content, where speed meets true creative control. Available in public beta today, it turns AI-generated content into a launchpad, no
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
