Slashdot Mirror


OSNews Suffered 'Likely' Data Breach, Contemplated Going Offline Permanently (osnews.com)

hmckee writes: OSNews was offline for a few days for upgrades. It is now back up with a message that indicates they encountered a data breach and considered going offline for good due to maintenance and financial difficulties. "Our best guess is that someone was able to exploit a vulnerability in old, unmaintained code in the site's content management system, and made off with at least some user data, which may be as little as a few user records or, at worst, our entire database," writes Publisher David Adams. "Your email addresses were in there, and the encryption on the passwords wasn't up to modern standards (unsalted SHA1). [...] Other than potential spam, though, we're not aware of any other nefarious use of your data, we don't store much beyond email addresses and passwords..."

David goes on to cite poor advertising revenues and a lack of time for reasons to throw in the towel and go offline permanently.

77 comments

  1. Re:Who? by Anonymous Coward · · Score: 0

    It's kind of like slashdot, but often better articles related to operating systems and related software. Unlike slashdot, I actually got coverage for my OS project there years before my name ever appeared on slashdot.

  2. Re: Who? by GarySalter · · Score: 1

    Donâ(TM)t be idiotic, osnews has been a great source of information on those things concerning operating systems news and all that type stuff....I will miss them greatly!!!

  3. Re: Who? by Anonymous Coward · · Score: 0

    A Facebook user calling someone else an idiot? Oh the irony...

  4. Re: Who? by barc0001 · · Score: 1

    So when is Slashdot going to seriously consider removing AC posting?

  5. Re: Who? by Anonymous Coward · · Score: 0

    What is this AC-OS and how is it so old?

  6. Re:Who? by Anonymous Coward · · Score: 0

    did you order the code red?

  7. Re:Who? by Ecuador · · Score: 1

    Unlike slashdot, I actually got coverage for my OS project there years before my name ever appeared on slashdot.

    Pro Tip: Not posting as AC would have probably helped...

    Slashdot still gets around to publishing most OS news. Albeit a few days late and then on repeat ;)

    --
    Violence is the last refuge of the incompetent. Polar Scope Align for iOS
  8. Re: Who? by Anonymous Coward · · Score: 0

    They were relevant at some point in the past. I thought they went dark years ago. Surprised to see they are still around.

  9. Re: Who? by Anonymous Coward · · Score: 0

    I remember. OSNews has an entire sub domain dedicated to your project

  10. Hackers are after User Ids and passwords by rsilvergun · · Score: 4, Insightful

    that they can use on other sites when folks reuse them.

    --
    Hi! I make Firefox Plug-ins. Check 'em out @ https://addons.mozilla.org/en-US/firefox/addon/youtube-mp3-podcaster/
    1. Re:Hackers are after User Ids and passwords by thegarbz · · Score: 1

      This!. OSNews just said dismissed everyone by saying "It's okay, we only lost your most valuable data".

    2. Re: Hackers are after User Ids and passwords by Anonymous Coward · · Score: 0

      And at worse, we lost our whole database.

      That part was hilarious.

      "And at worse, the whole database"

  11. Great shame by rl117 · · Score: 5, Interesting

    I've been reading OSNews for almost as long as I've been reading slashdot. It has always been more of a niche site, solely focused upon operating systems-related news, but within that niche it has had a better focus on relevant articles, better editing, and a higher quality of comments given the smaller and more dedicated userbase. I'd have to say, based upon the terrible comments so far on this story, that the quality of slashdot comments has seriously declined over the last few years. They are basically all worthless so far, and it's sad that clueless and disrespectful trolling is all that the slashdot community can come up with for the possible passing OSNews, a minor but worthy high quality competitor for many years.

    1. Re:Great shame by Anonymous Coward · · Score: 0

      I can't really agree that it had a better quality of comments over time, let alone that the increasingly editorial content was based on better-educated opinions. I couldn't take it after a while, like most sites of its kind. It's easy to harp on Slashdot (and the harping is well-deserved), but that really doesn't make OSNews any better.

    2. Re:Great shame by Opyros · · Score: 1

      I dunno, though; in recent years, many of the stories haven't really been about OSes, but about specific software projects and such things. There just doesn't seem to be as much news about OS development as there used to be.

    3. Re:Great shame by Anonymous Coward · · Score: 0

      OSNews was awesome for BeOS related cheerleading back in the day.. :(

    4. Re: Great shame by Anonymous Coward · · Score: 0

      Those were the days...

    5. Re:Great shame by twosat · · Score: 1

      I have been reading it for about as long as I have been reading Slashdot too. I usually check it a few times per week. Lately, I have noticed that often there are very few comments posted for an article; it is not uncommon to see fewer than 10 comments posted.

  12. Thom by Anonymous Coward · · Score: 0

    Stopped reading OSnews when Thom joined. OSnews has been offline since then.

  13. Re: Who? by Anonymous Coward · · Score: 0

    Y U NO ASCII?

  14. Re:Who? by Anonymous Coward · · Score: 0

    So, they suffered a data breach with their old shitty software, and their answer is . . . . . drum roll . . . . . . . migrate the website to WordPress, one of the most exploited shitty platforms on the internet.

    *facepalm*

  15. Re: Who? by Anonymous Coward · · Score: 0

    They were never relevant.

  16. Re: Who? by Anonymous Coward · · Score: 0

    Mod points showered down on AI. AI smiled.

  17. I remember that site by Anonymous Coward · · Score: 1

    I quit reading it a few years ago when it became "Thom's iPhone news" or "Thom's Macbook" news. If it wasn't one of those, it was so Euro-centric that it just wasn't interesting.

    If only it actually was OS news.

    1. Re:I remember that site by Anonymous Coward · · Score: 0

      Funnily enough, Thom usually comes out quite strong about how evil companies fuck up your data and mishandle breaches and should be more heavily come down on for breaches.

      I enjoy OSNews but I really doubt their handling here is GDPR-compliant for example. It's just amusing how quiet Thom is being on this one.

    2. Re: I remember that site by peragrin · · Score: 2

      Not reply Thom is a hypocrite. Never practices what he preaches. He would rail agsinist apple and iOS, or macos , and then mention how he loves his iPhone.

      Got into an argument that 10 years ago with Thom and stopped reading. Came back every once in a while to see 10 day old reports of arstechinca articles. And 1-3 comments.

      The bigger issue is it is Thom baby and he can't write, review or articulate.

      Sad to see it go but it is time.

      --
      i thought once I was found, but it was only a dream.
  18. Re: Who? by aliquis · · Score: 1

    It's like 15 years maybe older site about OS and technology development.

    But you've actually have to care and have an interest of such thing to have visited them.

    I don't see how it's very relevant you don't care or know about them because clearly you're not one of us.

  19. What other sites can sustain a geek? by Anonymous Coward · · Score: 2, Insightful

    Slashdot, OSnews, and Hackaday are part of my daily routine.

    I love OSNews. What more can I say.

    Is there a site i should be adding to the mix? Arstechnica is great, but it doesn't have enough daily content until one of the others sites link to an article.

  20. One way to improve osnews by mikesum32 · · Score: 3, Informative

    IMHO, one way to improve osnews is to bring back Eugenia Loli- Queru.

    I didn't always agree with her, but she was a damn-fine read.

    1. Re:One way to improve osnews by Anonymous Coward · · Score: 1

      Oh wow, I haven't heard that name in a long time. Her husband (John Baptiste Queru?) was a rockstar ninja 10x BeOS engineer.. She out nerded him.

    2. Re:One way to improve osnews by Anonymous Coward · · Score: 0

      Yes, the quality of the site has suffered since Eugenia left. I still read it on a weekly basis but end up skipping over most articles.

  21. Hosts file by raymorris · · Score: 1

    Let's put that to the test. Let's see the quality of comments we get.

    1. Re:Hosts file by IWantMoreSpamPlease · · Score: 1

      I'd say you got your answer, judging by the replies to your statement

      --
      So rise up, all ye lost ones, as one, we'll claw the clouds.
    2. Re:Hosts file by Anonymous Coward · · Score: 0

      Slashdot has a sense of humor, so that's not a particularly useful test.

    3. Re:Hosts file by Anonymous Coward · · Score: 0

      Apk made me laugh at raymorris trapping him in his own words in 2 quotes so you are spot on https://yro.slashdot.org/comme... and I'm sure I'm not the only one.

  22. Re:Who? by jpaine619 · · Score: 1

    Your name doesn't appear on Slashdot. Are you not understanding how the AC system works?

  23. Re: Who? by jpaine619 · · Score: 1

    I will miss them greatly!!!

    They considered shutting down. But they did not.. So you're kinda jumping the gun there...

  24. Re: whatever by Anonymous Coward · · Score: 0

    This.

  25. Re: Who? by Anonymous Coward · · Score: 0

    When all the users grow the hell up?

    Also known as, "never".

  26. Re: Who? by Anonymous Coward · · Score: 0

    So when is Slashdot going to seriously consider removing AC posting?

    Never.

  27. rip by Anonymous Coward · · Score: 0

    I remember logimg into osnew thru my AOL. I still have the AOL CD in case I need to reload it. Good times reading osnew and eating pepperage farm cookies. I remember.

  28. I wasn't talking to you so f' off... apk by Anonymous Coward · · Score: 0

    See subject: Was I talking to you? No. F' off...

    APK

    P.S.=> Keep your "advice" to yourself too - who the F do you think you are? Dr. Phil?? NO, you're Dr. "FILL US UP with bullshit"... apk

    1. Re: I wasn't talking to you so f' off... apk by Anonymous Coward · · Score: 0

      Unlike many of the other replies you received, I was civil toward you. I even acknowledged that some people go out of their way to incite arguments with you. It's unfortunate that you couldn't respond in kind.

  29. Quote raymorris & answer a question... apk by Anonymous Coward · · Score: 0

    If I down-modded comment has hosts file in the subject line, I know why it's down-modded and hidden - it's not something anyone wants to read, and I'm not going to read it. - by raymorris (2726007) on Thursday February 06, 2014 @07:24PM (#46180661)

    Then why'd you post hosts file in YOUR subject line raymorris?

    APK

    P.S.=> Answer that question... apk

  30. raymorris perhaps u should make a wheel by Anonymous Coward · · Score: 0

    raymorris make a wheel https://isc.sans.edu/forums/di... vs. setting urself up 4 https://yro.slashdot.org/comme...

    * Only thing holding you back, is YOU... & I felt it was a GREAT "New Year's Resolution" for ANY "geek"/"nerd" (etc., whatever) & I've BEEN doing it porting my program to MULTIPLATFORM everywhere on OS's galore (soon to be MacOS too) doing what it said in "taking yourself out of your 'comfort zone'" in doing so (OS I didn't use regularly until this year & last year).

    (I did & my wheel works well not only for me, part of the point of the SANS (excellent security site) article, but also for 100,000++ users worldwide w/ even DOZENS of /.ers liking/using my work (not yours)).

    APK

    P.S.=> You speak of deliberataly provoking an argument raymorris (yes, I know it's you by the way who I am replying to now) - you lost this one due to you doing that VERY thing you bitch of now by UNIDENTIFIABLE anonymous reply ("standing behind your words", not) - why not answer my question in that link instead of doing a "Run, Forrest: RUN!!!" not using your "registered 'luser'" account & instead doing your NOW obvious UNIDENTIFIABLE anonymous "brave" post? apk

  31. raymorris make a wheel by Anonymous Coward · · Score: 0

    raymorris make a wheel https://isc.sans.edu/forums/di... vs. setting urself up 4 https://yro.slashdot.org/comme...

    * Only thing holding you back, is YOU... & I felt it was a GREAT "New Year's Resolution" for ANY "geek"/"nerd" (etc., whatever) & I've BEEN doing it porting my program to MULTIPLATFORM everywhere on OS's galore (soon to be MacOS too) doing what it said in "taking yourself out of your 'comfort zone'" in doing so (OS I didn't use regularly until this year & last year).

    Do something others can USE that benefits them on MANY FRONTS (as hosts files do in more speed/security/reliability/anonymity online) & put their hands on that's ALL YOUR OWN CODE (not software-janitor maintenance work on OTHERS' already EXISTING code).

    APK

    P.S.=> I did what that article suggests LONG BEFORE IT CAME OUT & my wheel works well not only for me, part of the point of the SANS (excellent security site) article, but also for 100,000++ users worldwide w/ even DOZENS of /.ers liking/using my work (not yours) - try do the same vs. "staring up trouble" etc. (idle hands = the devil's workshop & you're exemplifying that saying in your actions now (or rather, LACK of ACTION))... apk

  32. By the way, you DO agree hosts work raymorris by Anonymous Coward · · Score: 0

    Apk has the answer for that - really... kill automatic updates by adding a hosts file entry setting updates.steam.com or whatever to 127.0.0.1. You have to find the right hostname for each software you want to block updates on by raymorris (2726007) on Friday July 06, 2018

    * It's why I asked a question of you as to WHY You'd do that (attracting 'trolls' etc. whom everyone KNOWS constantly STALK me by UNIDENTIFIABLE anonymous posts).

    This isn't DEFENSIVE - this IS truly OFFENSE, & a good offense IS THE BEST DEFENSE!

    (Yes, I KNOW you are raymorris too... don't TRY "bs" me it's not).

    APK

    P.S.=> If I down-modded comment has hosts file in the subject line, I know why it's down-modded and hidden - it's not something anyone wants to read, and I'm not going to read it. - by raymorris (2726007) on Thursday February 06, 2014 @07:24PM (#46180661)

    Then why'd you post hosts file https://slashdot.org/comments.... in YOUR subject line raymorris? apk

  33. "Funny" (not) I got no answer by Anonymous Coward · · Score: 0

    See subject & from raymorris to 2 posts w/ FAIR QUESTIONS in 'em here https://yro.slashdot.org/comme... & here https://yro.slashdot.org/comme...

    FUNNY YOU TRIED TO "DOWNMOD HIDE" THIS VERY POST TOO WHEN I POSTED IT BEFORE https://yro.slashdot.org/comme...

    APK

    P.S.=> I also asked WHY raymorris would do this https://yro.slashdot.org/comme... (which was "downmod hidden", "gosh, I wonder WHY?" (not))

    Especially when raymorris HIMSELF says a post on hosts should be downmodded QUOTING him saying it (& that "nobody wants to read posts on hosts" etc.) yet he posted "host files" as his subject!

    To that, I can show TONS to the contrary from registered /.ers in response to that easily)!

    INSTEAD I got no answer, only "Run, Forrest: RUN!!!" from raymorris (hung by his own words twice)... apk

  34. Yeah Me Too by Anonymous Coward · · Score: 0

    They published news of my my new OS too, not to mention, my code that cures cancer, but Slashdot never did. âBut Iâ(TM)m the President of theUnited Statesâ(TM), I protested. But it was no use. Slashdot just shook itâ(TM)s head and said âfuck youâ(TM). True story.

  35. So we could see the quality discussion by raymorris · · Score: 1

    > Then why'd you post hosts file in YOUR subject line raymorris?

    I don't know if maybe you didn't see the message I posted? I said "Let's see the quality of comments we get." As you're certainly aware, hosts files have been discussed here once or twice. We're seeing the quality of comments we get.

  36. Re: Who? by Anonymous Coward · · Score: 0

    We have seriously considered it, and considered it a stupid idea.

  37. Ray, ever see "The Dark Knight"? apk by Anonymous Coward · · Score: 0

    You're a likely candidate: "Gotham City's PROUD of an ordinary citizen standing up for what's right - It wasn't considered an honor. It was a public service: You either die a hero or you live long enough to see yourself become the villain. Whoever the Batman is, he doesn't want to spend the rest of his life doing this - how could he? Batman is looking for someone to take up his mantle." Harvey Dent/Two-Face & Batman.

    * To trolls, a quote from it "I know why you STALK APK BY UNIDENTIFIABLE ANONYMOUS - he's shown /. your true colors" (yellow belly cowards & DO-NOTHING "ne'er-do-wells") - The JOKER.

    APK

    P.S.=> By the way - thanks for replying - you DIDN'T do a "Run, Forrest: RUN!!!" & that I again respect (like I do your kernel patch) - & GOOD LUCK "MAKING A WHEEL" https://slashdot.org/comments.... (time is probably YOUR main 'constraint' working full-time & family (?) too, but I did things like my hosts engine while I worked (it's doable))... apk

  38. Mac has a trap for you re hosts file by raymorris · · Score: 1

    You may have already discovered this, but the Mac has some traps for you re the hosts file. You can put stuff in there and it seems to work for a while, then it stops working. To keep it working, you need to put the info in a different file.

    Or maybe I'm thinking of the resolver configuration. Anyway, check the docs - don't just experiment.

  39. NOT MY GOAL (This was - quite opposite)... apk by Anonymous Coward · · Score: 0

    See subject & https://yro.slashdot.org/comme... because he has ability & has demonstrated it provably to myself & OTHERS worldwide.

    * I'm LOUSY @ "politically correct" & INTENTIONALLY SO in fact (I had to ENDURE THAT LIFE, a plastic worm FAKE, vs. it for decades when I had "silver chains" on me - no more though, thank God) - ray, isn't.

    I'm the wrong guy for the job & I'm almost done anyhow (MacOS port is out soon, VERY soon in fact & I am DONE then w/ my part).

    APK

    P.S.=> "You'll hunt me. You'll condemn me. Set the dogs on me - because sometimes truth isn't good enough. Sometimes people deserve to have their faith, rewarded..." The Batman in "The Dark Knight" ("He didn't do anything wrong" Jamie Gordon)... apk

    1. Re: NOT MY GOAL (This was - quite opposite)... apk by Anonymous Coward · · Score: 0

      APK dindu nuffin wrong.

  40. Thanks & I have the BEST advisor... apk by Anonymous Coward · · Score: 0

    See subject: My nephew (whom I inspired to enter this field for his livelyhood) is a 6 yr. man @ Apple & on "Tiger Teams" (not many here will KNOW what that means, but it means TONS) so, I will check what you said & run it by him probably this weekend...

    * I haven't discovered SQUAT yet man - I've still yet to set up my new Mac-Mini in fact - too busy repairing broken electrical & toilets in properties I own (sometimes I want to hang that up too, lol - it's a PAIN but better than when I was a "wageslave", by far).

    APK

    P.S.=> THIS is meant to INSPIRE you you know (by 'analogy') so think about it https://yro.slashdot.org/comme... & so was this https://yro.slashdot.org/comme...

    I do respect what you've done & you're only STARTING imo (& you do DO more than MOST here ever will (probably more than me eventually imo))... apk

    1. Re: Thanks & I have the BEST advisor... apk by Anonymous Coward · · Score: 0

      You are a fucking lunatic. Go off yourself. Your mother should have swallowed you.

  41. LMAO - ok, know what YOU are? apk by Anonymous Coward · · Score: 0

    LMAO - ok, know what YOU are? A cowardly no balls WORM hiding behind UNIDENTIFIABLE anonymous posts STALKING me, freak.

    * Truer words have NEVER been spoken on /. ...

    APK

    P.S.=> You're shit & you KNOW it (otherwise you'd stand behind your words, whimp)... apk

  42. Nope, I'm no "dindu"... apk by Anonymous Coward · · Score: 0

    See subject: I get the "wannabe 'sly'" bs from you (I know the ghetto & NOT unfortunately: I consider it an asset). You're https://yro.slashdot.org/comme... unable to PROVE otherwise...

    * Period!

    APK

    P.S.=> Scum like YOU? Make me wonder HOW you can LIVE w/ your sorry "ne'er-do-well" DO-NOTHING SELVES while the world around you burns... apk

  43. Yea? I wasn't TALKING to U was I?? apk by Anonymous Coward · · Score: 0

    See subject: Here's who I was speaking to & I hope I got thru (as I'm almost done w/ what I was up to) https://yro.slashdot.org/comme... & he knows it...

    (He's the ONLY PERSON I've seen around here that has the MEANS to effect change...)

    APK

    P.S.=> GOOD change, not hotair blowhard BULLSHIT... apk

  44. Re:Who? by Anonymous Coward · · Score: 0

    >>_ Unlike slashdot, I actually got coverage for my OS project there years before my name ever appeared on slashdot.

    >_ Pro Tip: Not posting as AC would have probably helped...

    This is THE problem. I wonder what reason would make site owners requiring registry, when you see the level of trolling and spamming those who register do.

    This is Slashdot's reason for a (not-so-slow) decline and OSNews even led the way by not allowing AC posting. Many years ago, in my experience at least, I've found this David Adams seemed to be a technical-only, reasonable guy -- but the ones who controlled the site were invariably jerks (except Thom). What annoyed me most wast their abject "admiration" for Microsoft. For us who are older, equating Microsoft with any level of competence is nonsense, but they wouldn't have me or anyone criticizing Microsoft, Gates or Ballmer.

    So I stopped going there, except for articles which were linked from sites I still visit. Very unfortunate, but it shows that security will one day fail while respect for Free Opinion is hard to recover. I nonetheless, wish them well -- if not else because they cover important matters which... matter to me.

    >_ Slashdot still gets around to publishing most OS news. Albeit a few days late and then on repeat ;)

    It used to be that way, some 10 years ago. People got surprised because I always knew things earlier -- after reading here, that is. Now I get news about tech from local normal news sites as soon or before it's published here. Very sad (damn, cannot write "very sad" after that moron started to tweet it...)