
Episode 535: Dan Lorenc on Supply Chain Attacks
Software Engineering Radio - the podcast for professional software developers
00:00
Stack Overflow Questions About SolarWinds
The SolarWinds case is an example of a technique that Ken Thompson pointed out back in the 80s. He wanted to prank his coworkers who are all also incredibly smart folks like him and what he decided to do was insert a backdoor into the compiler that we're all using. So, when you executed a program you built they would do something funny like print out the user's password or something like that before it ran the rest of the program. If you're the bad guy then you might post some Stack Overflow questions about that package. Just try to get it out there in the search engines and hopefully somebody else will see that on Stack Overflow and copy paste that into there. Okay
Transcript
Play full episode