Slashdot Mirror


More Info on Debian.org Security Breach

mbanck writes "James Troup (part of the Debian System administration team) has published more information on the recent compromise of four debian.org machines. The attack vector seemed to be a sniffed password of an unprivileged account, from which the attacker somehow managed to gain root and install the suckit rootkit and crack the other machines. As the machines were fairly uptodate with respect to security, an as-of-yet unknown local root exploit might be in the wild, so keep an eye on your boxen.Note that the main ftp archive running on a sparc machine was not compromised, so the exploit might not yet be ported to non-i386 architectures."

8 of 545 comments (clear)

  1. Re:Human Error by Tyler+Eaves · · Score: 5, Funny

    Random passphrase?

    Repeat after me: The best password is the one that isn't stikie'd to the monitor and/or keyboard.

    --
    TODO: Something witty here...
  2. Re:Boxen.. by Stormie · · Score: 5, Funny

    If you call your computers "boxen", I hope they get cracked and rootkitted.

  3. Re:Human Error by SugoiMonkey · · Score: 5, Funny

    I say we cut out the user.

  4. Re:Boxen.. by AndroidCat · · Score: 5, Funny

    It's a perfectly good middle-english plural. Perhaps they just have rather olde boxen to develop on?

    --
    One line blog. I hear that they're called Twitters now.
  5. Ammended for the rest of us: by Anonymous Coward · · Score: 5, Funny

    Law #1: If Bill can persuade you to run his program on your computer, it's not your computer anymore.

  6. Re:#1 on Ten Immutable Laws of Security by prockcore · · Score: 5, Funny

    Law #1: If a bad guy can persuade you to run his program on your computer, it's not your computer anymore.

    That's why I've been saying for years that all my computers are owned by Bill Gates.

  7. Unknown Debian exploit? by t0ny · · Score: 5, Funny

    Im sure glad my network runs on Windows!

    --

    Manipulate the moderator system! Mod someone as "overrated" today.

    1. Re:Unknown Debian exploit? by flacco · · Score: 5, Funny
      Im sure glad my network runs on Windows!

      hey it is pretty nice - i'm having a look around right now!

      --
      pr0n - keeping monitor glass spotless since 1981.