<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>DEV Community: Wahit Fitriyanto</title>
    <description>The latest articles on DEV Community by Wahit Fitriyanto (@wahitftry).</description>
    <link>https://dev.to/wahitftry</link>
    <image>
      <url>https://media2.dev.to/dynamic/image/width=90,height=90,fit=cover,gravity=auto,format=auto/https:%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F1183478%2F56d8c6fb-a937-41e2-b1eb-4d7bdc419e14.png</url>
      <title>DEV Community: Wahit Fitriyanto</title>
      <link>https://dev.to/wahitftry</link>
    </image>
    <atom:link rel="self" type="application/rss+xml" href="https://dev.to/feed/wahitftry"/>
    <language>en</language>
    <item>
      <title>Unpacking the xz Backdoor Incident: A Critical Alert for Linux Users</title>
      <dc:creator>Wahit Fitriyanto</dc:creator>
      <pubDate>Sun, 31 Mar 2024 02:38:32 +0000</pubDate>
      <link>https://dev.to/wahitftry/unpacking-the-xz-backdoor-incident-a-critical-alert-for-linux-users-4hh9</link>
      <guid>https://dev.to/wahitftry/unpacking-the-xz-backdoor-incident-a-critical-alert-for-linux-users-4hh9</guid>
      <description>&lt;p&gt;In a startling revelation, the open-source community has been alerted to a critical security flaw identified as CVE-2024-3094, which affects the widely-used xz compression utility. This backdoor, discovered in versions 5.6.0 and 5.6.1 of xz/liblzma, poses a severe threat by potentially allowing unauthorized remote access to systems. The vulnerability was introduced through obfuscated changes to the xz package's build system, specifically targeting DEB or RPM packages for the x86-64 architecture built with gcc and the GNU linker[1]. The compromised versions could enable malicious actors to bypass sshd authentication, gaining full control over affected systems. Red Hat and other Linux distributions have not widely integrated the affected versions, limiting the scope of potential damage. However, users of rolling-release distributions, particularly those utilizing glibc and systemd in conjunction with patched OpenSSH, are at risk. Immediate action is required. Users should verify their xz version and downgrade to xz-5.4.x if necessary. System administrators are advised to review audit logs for any anomalies that might indicate a compromise. This incident underscores the importance of vigilance in the open-source software supply chain. It serves as a reminder of the potential risks associated with software dependencies and the need for robust security practices. &lt;/p&gt;

&lt;p&gt;Stay informed and protect your systems by following the recommended downgrade procedures and keeping abreast of updates from your distribution's security advisories. &lt;br&gt;
&lt;a href="https://openssf.org/blog/2024/03/30/xz-backdoor-cve-2024-3094/"&gt;Reflecting on the xz Backdoor&lt;/a&gt; | &lt;a href="https://securityboulevard.com/2024/03/what-you-need-to-know-about-the-xz-utils-backdoor/"&gt;Understanding the Impact&lt;/a&gt;&lt;/p&gt;

</description>
      <category>linux</category>
      <category>beginners</category>
      <category>news</category>
    </item>
    <item>
      <title>Placeholder Contributor</title>
      <dc:creator>Wahit Fitriyanto</dc:creator>
      <pubDate>Fri, 01 Mar 2024 13:55:55 +0000</pubDate>
      <link>https://dev.to/wahitftry/placeholder-contributor-o0o</link>
      <guid>https://dev.to/wahitftry/placeholder-contributor-o0o</guid>
      <description>&lt;h3&gt;
  
  
  Intro
&lt;/h3&gt;

&lt;p&gt;Hey, I'm Wahit Fitriyanto, and I've been diving into the open-source ocean since 2023. My GitHub is a digital garden where my ideas grow into projects. Check it out &lt;/p&gt;
&lt;div class="crayons-card c-embed text-styles text-styles--secondary"&gt;
      &lt;div class="c-embed__cover"&gt;
        &lt;a href="https://github.com/wahitftry" class="c-link s:max-w-50 align-middle" rel="noopener noreferrer"&gt;
          &lt;img alt="" src="https://res.cloudinary.com/practicaldev/image/fetch/s--VGeCTqkN--/c_limit%2Cf_auto%2Cfl_progressive%2Cq_auto%2Cw_800/https://avatars.githubusercontent.com/u/26300406%3Fv%3D4%3Fs%3D400" height="460" class="m-0" width="460"&gt;
        &lt;/a&gt;
      &lt;/div&gt;
    &lt;div class="c-embed__body"&gt;
      &lt;h2 class="fs-xl lh-tight"&gt;
        &lt;a href="https://github.com/wahitftry" rel="noopener noreferrer" class="c-link"&gt;
          wahitftry (Wahit Fitriyanto) · GitHub
        &lt;/a&gt;
      &lt;/h2&gt;
        &lt;p class="truncate-at-3"&gt;
          An Informatics Engineering student at Boyolali University 🎓. Passionate about learning and always eager to explore new technologies and domains 💡. - wahitftry
        &lt;/p&gt;
&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight plaintext"&gt;&lt;code&gt;  &amp;lt;div class="color-secondary fs-s flex items-center"&amp;gt;
      &amp;lt;img
        alt="favicon"
        class="c-embed__favicon m-0 mr-2 radius-0"
        src="https://github.githubassets.com/favicons/favicon.svg"
        loading="lazy" /&amp;gt;
    github.com
  &amp;lt;/div&amp;gt;
&amp;lt;/div&amp;gt;
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;

&lt;/div&gt;
&lt;br&gt;
!

&lt;h3&gt;
  
  
  Highs and Lows
&lt;/h3&gt;

&lt;p&gt;Hacktoberfest 2023 was a rollercoaster! 🎢 I smashed some bugs that were sneakier than Waldo, and I finally got the hang of Python. But, not gonna lie, I hit a wall with python—felt like trying to solve a Rubik's cube blindfolded. 🙈 I took a step back, had a cuppa, and tackled it with fresh eyes. Turned out, all I needed was a different perspective!&lt;/p&gt;

&lt;h3&gt;
  
  
  Growth
&lt;/h3&gt;

&lt;p&gt;Pre-Hacktoberfest, my skills were like a seedling—full of potential but just getting started. Now, I'm like a tech-savvy Jack with my own beanstalk touching the clouds. I've leveled up in programming, and my goals? They've evolved! I'm aiming to contribute to all type of web project and make an impact on Web Development. Hacktoberfest isn't just about the PRs; it's about growing and thriving in the tech community.&lt;/p&gt;
&lt;/div&gt;

</description>
      <category>hack23contributor</category>
    </item>
    <item>
      <title>My Hacktoberfest 2023 Pledge</title>
      <dc:creator>Wahit Fitriyanto</dc:creator>
      <pubDate>Thu, 12 Oct 2023 15:12:58 +0000</pubDate>
      <link>https://dev.to/wahitftry/my-hacktoberfest-2023-pledge-4cen</link>
      <guid>https://dev.to/wahitftry/my-hacktoberfest-2023-pledge-4cen</guid>
      <description></description>
      <category>hacktoberfest23</category>
    </item>
  </channel>
</rss>
