Language Selection

English French German Italian Portuguese Spanish

Sourceforge Attack: Full Report

Filed under
Security
Web

As we’ve previously announced, SourceForge.net has been the target of a directed attack. We have completed the first round of analysis, and have a much more solid picture of what happened, the extent of the impact, our plan to reduce future risk of attack. We’re still working hard on fixing things, but we wanted to share what we know with the community.

We discovered the attack on Wednesday, and have been working hard to get things back in order since then. While several boxes were compromised we believe we caught things before the attack escalated beyond its first stages.

Our early assessment of which services and hosts were impacted, and the choice to disable CVS, ishell, file uploads, and project web updates appears to have prevented any further escalation of the attack or any data corruption activities.

rest here




More in Tux Machines

Debian-Based Distribution Updated With KDE 3.5 Forked Desktop

Q4OS 1.2 "Orion" is the new release that is re-based on Debian Jessie, focused on shipping its own desktop utilities and customizations, and designed to run on both old and new hardware. Read more

Atom Shell is now Electron

Atom Shell is now called Electron. You can learn more about Electron and what people are building with it at its new home electron.atom.io. Read more Also: C++ Daddy Bjarne Stroustrup outlines directions for v17

A Fedora 22 beta walk-through

The new Fedora, with its GNOME 3.16 interface, is an interesting, powerful Linux desktop. Read more Also: Web software center for Fedora Red Hat's Cross-Selling and Product Development Will Power Long-Term Growth Red Hat Updates Open Source Developer and Admin Tools

Unix and Personal Computers: Reinterpreting the Origins of Linux

So, to sum up: What Linus Torvalds, along with plenty of other hackers in the 1980s and early 1990s, wanted was a Unix-like operating system that was free to use on the affordable personal computers they owned. Access to source code was not the issue, because that was already available—through platforms such as Minix or, if they really had cash to shell out, by obtaining a source license for AT&T Unix. Therefore, the notion that early Linux programmers were motivated primarily by the ideology that software source code should be open because that is a better way to write it, or because it is simply the right thing to do, is false. Read more Also: Anti-Systemd People