Another Debian server security breach



According to this story, there has been another compromise of a debian project server. (Is this the third in the last year?)… the Alioth webserver was offline most of the 5th of September…

It was simply stopped because we discovered that some script kiddies were running an IRC proxy. After thorough investigation, we discovered that they exploited a pmwiki security hole[1] to deface some web pages, to install some malicious php pages which in turn were used to setup the IRC proxy.


They DO state that there are too many projects with custom installed web software, which can put them at greater risk. It’s good that they found it and cleaned it up and are giving the public announcement. It should serve as an example for everyone to keep their web applications updated.

Related Posts

Blog Traffic Exchange Related Posts
  • Debian development server compromise Sans also brings this story about the Debian development server being compromised. Investigation is ongoing. The machine was gluck.debian.org and hosted CVS among other things (ddtp, lintian, people, popcon, planet, ports, release). It has been taken offline currently for a reinstall, other systems have been locked down until they can......
  • Google Base stretching it's wings.... There have been a couple of interesting articles lately about the evolution of Google Base. When it came out, I remember thinking I would have to spend some time thinking about how to use it. It has interesting potential to be a VERY powerful tool for Google in their competition......
  • Scansafe tries to make web browsing safer... Scansafe is launching a new free product called scandoo which aims to tag search results with Green yellow and blow widgets so you know which sites are safe (green), dangerous (red) or uncertain (Yellow). ZDnet had news of the scandoo service which is not the first attempt at making the......
Blog Traffic Exchange Related Websites
  • Captain and Guide Pages Are you a fishing captain or guide?  To add or change your page, please send your requested listing along with a digital photo of your choice to kevin at sfboater dot com. In addition to the basic listing, I can drive even more traffic (traffic=customers) to your business, but I need......
  • What Is A Cloud Virtual Server Solution And How Will It Work? In recent years, cloud computing has seen more and more use. It offers new options for storing files and using the web and serves the base for many a social networking site. Internet use and communication have become much easier with the use of a cloud virtual server. The name......
  • Making Money With Articles On Niche Sites Choosing a good niche topic to base your web site around is 1 of the most crucial aspects of making cash off of your content articles. This can give you a foundation to construct from and you are able to target one general audience with a pack of key phrases......
www.pdf24.org    Send article as PDF   

Similar Posts


See what happened this day in history from either BBC Wikipedia
Search:
Keywords:
Amazon Logo

Comments are closed.


Switch to our mobile site