Software Engineering Radio - the podcast for professional software developers cover image

Episode 535: Dan Lorenc on Supply Chain Attacks

Software Engineering Radio - the podcast for professional software developers

00:00

Stack Overflow Questions About SolarWinds

The SolarWinds case is an example of a technique that Ken Thompson pointed out back in the 80s. He wanted to prank his coworkers who are all also incredibly smart folks like him and what he decided to do was insert a backdoor into the compiler that we're all using. So, when you executed a program you built they would do something funny like print out the user's password or something like that before it ran the rest of the program. If you're the bad guy then you might post some Stack Overflow questions about that package. Just try to get it out there in the search engines and hopefully somebody else will see that on Stack Overflow and copy paste that into there. Okay

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app