Open source is a virus — Philippe Ombredanne

Join us at hack.lu 2025 — Info & Registration

Duration: 30 min

Type: Talk

Speakers: Philippe Ombredanne

Abstract

Discover how we hacked YARA and built rules to effectively detect open source software sources and binaries as if it were malware, using rules that you can generate on demand for fun and profit, and integrate software composition analysis with malware hunting!

Description

Former Microsoft CEO Steve Ballmer once said that Linux and open source was a cancer. But “developers, developers, developers !!!” know that Linux and open source are not a cancer, but a virus because you can use virus scanning techniques and tools to discover (vulnerable) open source software :slight_smile:

We hacked YARA to build rules and more effectively detect open source software sources and binaries as if it were malware, generating rules on demand for fun and profit, and integrate software composition analysis with malware hunting!

View on pretalx

Video available