[ISN] Hackers crack two FreeBSD Project app dev servers

From: InfoSec News <alerts_at_private>
Date: Tue, 20 Nov 2012 04:06:21 -0600 (CST)
http://www.pcworld.com/article/2014744/hackers-crack-two-freebsd-project-app-dev-servers.html

By Lucian Constantin
IDG News Service
Nov 19, 2012

Hackers have compromised two servers used by the FreeBSD Project to 
build third-party software packages. Anyone who has installed such 
packages since September 19 should completely reinstall their machines, 
the project's security team warned.

Intrusions on two machines within the FreeBSD.org cluster were detected 
on November 11, the FreeBSD security team said on Saturday. "The 
affected machines were taken offline for analysis. Additionally, a large 
portion of the remaining infrastructure machines were also taken offline 
as a precaution," reported a message posted on the project's public 
announcements mailing list.

The two compromised servers acted as nodes for the project's legacy 
third-party package-building infrastructure, the FreeBSD Project said in 
an advisory posted on its website.

The incident only affected the collection of third-party software 
packages distributed by the project and not the operating system's 
"base" components, such as the kernel, system libraries, compiler, or 
core command-line tools.

[...]


______________________________________________
Visit the InfoSec News Security Bookstore
Best Selling Security Books and More!
http://www.shopinfosecnews.org 
Received on Tue Nov 20 2012 - 02:06:21 PST

This archive was generated by hypermail 2.2.0 : Tue Nov 20 2012 - 02:16:14 PST