Another Debian server security breach



According to this story, there has been another compromise of a debian project server. (Is this the third in the last year?)… the Alioth webserver was offline most of the 5th of September…

It was simply stopped because we discovered that some script kiddies were running an IRC proxy. After thorough investigation, we discovered that they exploited a pmwiki security hole[1] to deface some web pages, to install some malicious php pages which in turn were used to setup the IRC proxy.


They DO state that there are too many projects with custom installed web software, which can put them at greater risk. It’s good that they found it and cleaned it up and are giving the public announcement. It should serve as an example for everyone to keep their web applications updated.

Related Posts

Blog Traffic Exchange Related Posts
  • DSL competitor access to lines ending Among other sources, media law professors blog notes the FCC's decision to reclassify broadband. Effectively the decision will remove the requirement of phone providers to allow for competitors to have access to their lines for the providing of DSL service. Perviously, a phone company was required to allow competitors access......
  • Google Base stretching it's wings.... There have been a couple of interesting articles lately about the evolution of Google Base. When it came out, I remember thinking I would have to spend some time thinking about how to use it. It has interesting potential to be a VERY powerful tool for Google in their competition......
  • Debian development server compromise Sans also brings this story about the Debian development server being compromised. Investigation is ongoing. The machine was gluck.debian.org and hosted CVS among other things (ddtp, lintian, people, popcon, planet, ports, release). It has been taken offline currently for a reinstall, other systems have been locked down until they can......
Blog Traffic Exchange Related Websites
  • Promoting Web Online Opportunities To Explore The collapse of the on-line-advertising marketplace in 2.01 made advertising on the Web seem even less compelling. Web page usability, press releases, online media buys, podcasts, cell marketing and extra - there's a complete world of web promoting possibilities to explore. We concentrate on web marketing strategy, online advertising, web......
  • Captain and Guide Pages Are you a fishing captain or guide?  To add or change your page, please send your requested listing along with a digital photo of your choice to kevin at sfboater dot com. In addition to the basic listing, I can drive even more traffic (traffic=customers) to your business, but I need......
  • Strengthen Web Page Ranking In Three Uncomplicated Steps Substantial site list is important for every small business owner, specially Online Business. The larger your site has a high ranking on google success, the better website traffic it becomes. And we all believe that more site visitors usually means more income. So how do you in fact boost web......
en.pdf24.org    Send article as PDF   

Similar Posts


See what happened this day in history from either BBC Wikipedia
Search:
Keywords:
Amazon Logo

Comments are closed.


Switch to our mobile site