Linux Compatible
  • News
    • Channels
    • Archive
    • Search
    • Submit
  • Articles
    • Categories
  • Knowledgebase
  • Compatibility
    • Search
  • Links
  • Forums
  • Twitter
Advertisement

Latest News
[ Windows | Linux | Apple ]

· PHP 5.2.17-12 for CentOS 5
· Apple removes iPhones, iPads from German online store due to injunction
· New Apple iMac touchscreen tech outed in new patent
· CSF 5.45 released
· CompatDB Updates 02/03/12
· Daily Reviews Summary 02/03/12
· Nokia Lumia 900 up for pre-order at Microsoft Store, $25 down puts you in line
· Install Airtime (Free radio automation software) in Ubuntu
· PHP 5.3.10 for Debian
· Microsoft: Windows Phone 8 To Use NT Kernel

Upcoming News
· Five Years With Blu-ray - Part Two
· Galaxy MDT GeForce GT 520 Graphics Card Review
· SSD NEWS: Kingston SSDNow V+ 200 120GB SATA III SSD (Upgrade Bundle Kit) Review
· Corsair Force Series 3 and Force Series GT SSD Full Review
· Final Fantasy XIII-2 (XBOX 360) Review @ HardwareHeaven.com
· Changes to HEXUS accounts - important information
· AC Ryan Veolo @ techPowerUp
· Enermax ETS-T40-VD CPU Cooler Review @ eTeknix.com
· Ubuntu 12.04 ARM Performance Becomes Very Compelling
· Antec Three Hundred Two Case Review @ Hardware Secrets

Linux Compatibility
· XPS L502X
· Slim Portable DVD Writer GP10
· AverTV Volar Green HD
· Dell Latitude E6420
· Canon CanoScan FB 636U
· Logitech QuickCam Pro 4000
· GeForce 7300 GT
· Umax Astra 4500 USB Scanner
· Photosmart Pro B9180
· kingston DataTraveler DTI/16GB

New Forum Topics
· Code: Bad EIP Value
by: megatouchguy
on: 2012-01-28 06:27
0 replies, 239 views

· XP Pro crashes on start up
by: javien
on: 2012-01-17 12:38
6 replies, 1943 views

· Lan Wireless Access To Shared Folders Problem
by: MinusZero
on: 2012-01-09 06:45
2 replies, 2119 views

· Motherboard glitch
by: danleff
on: 2012-01-08 12:03
3 replies, 576 views

· Problem with Wireless causing Router Resets
by: msittig
on: 2012-01-06 16:58
3 replies, 12675 views

News Channels
· Drivers
· Guides
· Reviews
· Security
· Software
· Press Release
· Updates
· Interviews
· Linux
· General
· Debian
· Red Hat
· Slackware
· Gentoo
· Mandriva
· White Box
· SUSE
· GNOME
· KDE
· CentOS
· Ubuntu
· MEPIS
· Android

What's New
Login to see an overview of all news stories since your last visit.

Welcome to our website

To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.

Linux Compatible » News » July 2009 » Security Notice: Attempted Break-In on www.centos.org

Security Notice: Attempted Break-In on www.centos.org

Posted by Philipp Esselbach on: 07/04/2009 03:31 AM [ Print | 0 comment(s) ]

A security notice from the CentOS project:




Dear Users,

on Friday evening, July 3rd (UTC) we found a few suspicious files on the CentOS webserver. Upon investigating we found out that the files had been put there through Xoops (the CMS www.centos.org runs on) - and that this was possible due to a an administrative error which has been corrected.

As far as we can see there has been no data or binary injected into the system or taken from the system. The machine hasn't been used as a source for sending spam (in the widest possible meaning) either.


We have been able to identify the source of the attacks, but have not been able to find out if the files have been put there through a compromised user account in the Xoops system.

Although we are fairly sure that there has been no such compromise, we have enforced a password expiry on all accounts on the system.

wiki.centos.org and bugs.centos.org - though being on the same machine - have not been affected by this.

All users having an account on www.centos.org need to acquire a new password through the "lost password" system of Xoops.

We are terribly sorry for any inconvenience this might cause you and would like to apologize for that.

On behalf of the CentOS team,

Ralph Angenendt


Bookmark and Share

Related Threads

09/29/2008 06:04 PM: Security Updates for CentOS 4.6 (0) by nturner
10/25/2004 01:17 PM: Fake RedHat/Fedora security patch (0) by blackpage
03/20/2004 12:30 PM: SECURITY IN LINXU SUSE 9.0 PRO???????????????????????? (1) by danleff
12/04/2003 01:05 PM: rsync 2.5.6 security advisory (0) by spunz
11/21/2003 12:30 PM: Security (1) by Philipp
02/10/2003 08:23 PM: RedHat Security Setting? or Hardware Detection Issue? (3) by TrakerJon
11/27/2002 12:56 AM: Some articles on Linux security... (1) by REL!c2K

« BFG Tech EX Series 1000 Watt Power Supply Review · DSA 1826-1: New eggdrop packages fix several vulnerabilities »

Linux Compatible » News » July 2009 » Security Notice: Attempted Break-In on www.centos.org
All products mentioned are registered trademarks or trademarks of their respective owners.
© 2002-2011 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Powered by Contentteller® Business Edition