SPORTS

NBA files federal lawsuit against players

Trying to head off the chance of an antitrust lawsuit from the NBA Players Association, the league went ahead and beat the union to court...

02 Aug 2011 | 0 comments | Read more

Sources: David Stern will not get salary

By Marc Stein ESPN.com NBA commissioner David Stern will not collect on his eight-figure salary during the ongoing lockout, according to...

02 Aug 2011 | 0 comments | Read more
TECHNOLOGY

South Korean domain registrar Gabia hacked,100000 domains and 350000 users data exposed !

Gabia a South Korean domain registrar was hacked on Saturday, affecting the online connection with 100,000 registered domains, according...

31 Aug 2011 | 0 comments| Read more

Bangladesh Police website hacked by RetnOHacK Anonymous Albanian Hacker

Some Anonymous Hacker "RetnOHacK" from Albanian claim to hack Bangladesh Police website as shown in Screenshot. Hacker claim to hack thi...

31 Aug 2011 | 0 comments| Read more

Kernel.org Server Rooted and 448 users credentials compromised

The main kernel.org page is currently carrying a notice that the site has suffered a security breach. "Earlier this month, a number of ...

31 Aug 2011 | 0 comments| Read more

Fraudster used Facebook to hack bank accounts

A hacker stole £35,000 from his neighbours' online bank accounts after working out the answers to their security questions from informa...

22 Aug 2011 | 0 comments| Read more

BREAKING NEWS

WORLD NEWS

Facebook hacker sentenced to prison time

By: Denis J. O'Malley An Old Forge man accused of hacking into a woman's email account and posting a nude picture of her to her Face...

11 Aug 2011 | 0 comments| Read more

Costly Drone Is Poised to Replace U-2 Spy Plane

By CHRISTOPHER DREW PALMDALE, Calif. — Tucked away here in the Mojave Desert, the assembly plant for the high-flying Global Hawk jet r...

02 Aug 2011 | 0 comments| Read more

Greeting the Unthinkable: Mubarak on Trial

By ANTHONY SHADID CAIRO — The headlines of newspapers on sale in a subway station once called Mubarak, and now renamed Martyrs', capt...

02 Aug 2011 | 0 comments| Read more

First day of same sex marriage in New York Read

Couples React After Entering into Same Sex Marriage in New York A couple reacts after entering into a same sex marriage on the first day ...

02 Aug 2011 | 0 comments| Read more
TRAVEL

Parts of Japan’s 17th-century Nakasendo Highway have been preserved and restored to their original tranquility.

Parts of Japan’s 17th-century Nakasendo Highway have been preserved and restored to their original tranquility.Photograph by Michael S. Ya...

02 Aug 2011 | 0 comments| Read more
Advertisement
AFRICA

NBA files federal lawsuit against players

Trying to head off the chance of an antitrust lawsuit from the NBA Players Association, the league went ahead and beat the union to court...

02 Aug 2011 | Read more
ASIA

South Korean domain registrar Gabia hacked,100000 domains and 350000 users data exposed !

Gabia a South Korean domain registrar was hacked on Saturday, affecting the online connection with 100,000 registered domains, according...

31 Aug 2011 | Read more
AMERICAS

Facebook hacker sentenced to prison time

By: Denis J. O'Malley An Old Forge man accused of hacking into a woman's email account and posting a nude picture of her to her Face...

11 Aug 2011 | Read more
EUROPE

South Korean domain registrar Gabia hacked,100000 domains and 350000 users data exposed !

Gabia a South Korean domain registrar was hacked on Saturday, affecting the online connection with 100,000 registered domains, according...

31 Aug 2011 | Read more
RACING

NBA files federal lawsuit against players

Trying to head off the chance of an antitrust lawsuit from the NBA Players Association, the league went ahead and beat the union to court...

02 Aug 2011 | Read more
FOOTBALL

Facebook hacker sentenced to prison time

By: Denis J. O'Malley An Old Forge man accused of hacking into a woman's email account and posting a nude picture of her to her Face...

11 Aug 2011 | Read more
BASKETBALL

Parts of Japan’s 17th-century Nakasendo Highway have been preserved and restored to their original tranquility.

Parts of Japan’s 17th-century Nakasendo Highway have been preserved and restored to their original tranquility.Photograph by Michael S. Ya...

02 Aug 2011 | Read more
SWIMMING

South Korean domain registrar Gabia hacked,100000 domains and 350000 users data exposed !

Gabia a South Korean domain registrar was hacked on Saturday, affecting the online connection with 100,000 registered domains, according...

31 Aug 2011 | Read more

Featured Video

Follow Us, Like Us on Facebook

Kernel.org Server Rooted and 448 users credentials compromised



The main kernel.org page is currently carrying a notice that the site has suffered a security breach. "Earlier this month, a number of servers in the kernel.org infrastructure were compromised. We discovered this August 28th. While we currently believe that the source code repositories were unaffected, we are in the process of verifying this and taking steps to enhance security across the kernel.org infrastructure." As the update mentions, there's little to be gained by tampering with the git repositories there anyway. The infection occurred no later than August 12 and wasn't detected for another 17 days. The systems were infected by an off-the-shelf, a self-injecting rootkit known as Phalanx that has attacked sensitive Linux systems before.
What happened?
  • Intruders gained root access on the server Hera. We believe they may have gained this access via a compromised user credential; how they managed to exploit that to root access is currently unknown and is being investigated.
  • Files belonging to ssh (openssh, openssh-server and openssh-clients) were modified and running live.
  • A trojan startup file was added to the system start up scripts
  • User interactions were logged, as well as some exploit code. We have retained this for now.
  • Trojan initially discovered due to the Xnest /dev/mem error message w/o Xnest installed; have been seen on other systems. It is unclear if systems that exhibit this message are susceptible, compromised or not. If developers see this, and you don't have Xnest installed, please investigate.
  • It *appears* that 3.1-rc2 might have blocked the exploit injector, we don't know if this is intentional or a side affect of another bugfix or change.
What Has Been Done so far:
  • We have currently taken boxes off line to do a backup and are in the process of doing complete reinstalls.
  • We have notified authorities in the United States and in Europe to assist with the investigation
  • We will be doing a full reinstall on all boxes on kernel.org
  • We are in the process of doing an analysis on the code within git, and the tarballs to confirm that nothing has been modified.
Read More at https://www.kernel.org

Posted by Blog'sMania on 5:52 PM. Filed under , . You can follow any responses to this entry through the RSS 2.0

0 comments for Kernel.org Server Rooted and 448 users credentials compromised

Leave comment

Photo Gallery

Inspired by Google search. Alright reserved