Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://linuxrocks.online/@BrodieOnLinux" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>BrodieOnLinux</span></a></span> <span class="h-card" translate="no"><a href="https://fosstodon.org/@that_leaflet" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>that_leaflet</span></a></span> <span class="h-card" translate="no"><a href="https://aus.social/@AuntyRed" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>AuntyRed</span></a></span> <br><span class="h-card" translate="no"><a href="https://infosec.exchange/@SecureOwl" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>SecureOwl</span></a></span> if this ain't some <a href="https://infosec.space/tags/StateSponsored" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>StateSponsored</span></a> <a href="https://infosec.space/tags/SupplyChainAttack" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SupplyChainAttack</span></a> it was at least so <em>methodical</em> that it's definitely some sort of specific attack against a specific target...</p><p>I mean, I've seen weird <a href="https://infosec.space/tags/3Dchess" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>3Dchess</span></a> in <a href="https://infosec.space/tags/ITsec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ITsec</span></a> so I'd not be surprised if this was just some <a href="https://infosec.space/tags/1337hax0r" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>1337hax0r</span></a> wanting to take revenge on an employer/client who still owed them pay...</p><p>I mean, that whole <a href="https://infosec.space/tags/xz" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>xz</span></a> <a href="https://infosec.space/tags/backdoor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>backdoor</span></a> has serious <a href="https://infosec.space/tags/nocom" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nocom</span></a> vibes:</p><p><a href="https://www.youtube.com/watch?v=elqAh3GWRpA&t=79s" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">youtube.com/watch?v=elqAh3GWRp</span><span class="invisible">A&t=79s</span></a></p><p><a href="https://infosec.space/tags/TLDW" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>TLDW</span></a>: people literally gaslit an admin with specific packet flooding into filing a specific bug report so a specific fix would be implemented that would get a <a href="https://infosec.space/tags/backdoor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>backdoor</span></a> implemented in <a href="https://infosec.space/tags/Spigot" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Spigot</span></a>, a popular <a href="https://infosec.space/tags/Minecraft" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Minecraft</span></a> <a href="https://infosec.space/tags/Server" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Server</span></a> <a href="https://infosec.space/tags/Toolchain" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Toolchain</span></a>...</p>