Slashdot Mirror


Novell OpenSUSE Server Hacked

abelikoff writes "Both LinuxWorld Australia and SuSE Linux Forums report that OpenSUSE website got hacked last night." This story was submitted quite a number of times.

5 of 329 comments (clear)

  1. *sigh* by the-amazing-blob · · Score: 5, Insightful

    I still will never understand why people do stupid things like hack websites.

    1. Re:*sigh* by jupiter909 · · Score: 5, Insightful

      Hacking websites is not stupid. It's proof of concept. It is often good when people hack/crack things, it forces for tighter control and security. If not for people hacking and cracking things we would not have things such as online shopping and ssh encrpytion etc. It is all part of a never ended life cycle. More often than not it is poor management/admin than the software/systems themselves. Human error.

  2. Re:Don't blame LINUX by grub · · Score: 5, Insightful


    Linux is near-flawless in terms of security.

    You don't follow security mailing lists, do you? Most Linux distros have decent security but "near-flawless"?

    --
    Trolling is a art,
  3. Re:Rights or not by klykken · · Score: 5, Insightful

    You might have confused the Arabic language with the Persian language (Farsi). They share the same alphabet but are entirely different.

    --
    Looks like a fish, drives like a fish, steers like a cow.
  4. Re:As you can see by LnxAddct · · Score: 5, Insightful

    It's a little worse than that. The IHS guys aren't just script kiddies, their lead guy's blog is here. He is apparently very active in writing exploits and gives code to all of them. He was just accepted into a university, but worse, one of his blog entries is about how he likes slackware and is trying to write some code to help the project out. Now I don't know about you, but I find that suspicious as hell. Unless someone goes over every line of code submitted with a magnifying glass than it can be fairly easy to sneak in a little area for a buffer overflow or something. (Preventive measures like SELinux and exec-shield are necessary and even they don't fully solve the problem). I can only hope that the slackware community does decent background checks on submitters, and also good code checking. The last thing we need is for Open Source to start being purposely made vulnerable and attacked from within.
    Regards,
    Steve