Technology news and Jobs
Our Blogs
Open Sauce
Apache project server compromised
Our Blogs
Open Sauce
Apache project server compromised | Apache project server compromised |
|
| by Sam Varghese | |
| Saturday, 29 August 2009 | |
A server at the Apache project has been compromised, resulting in some hours of downtime, the project has announced.
Featured Whitepaper
5 Best Practices for Smartphone Support
The compromise took place on August 27 when an account used for automated backups for the ApacheCon site was used to upload files to a server which does the job of seed host for most apache.org sites. It also provides shell accounts for all those committing code to the Apache project. The project said the attackers created several CGI scripts on the compromised box, which were then rysnced to the production webservers. About 12 hours later, the scripts were accessed over HTTP and the processes which were spawned were noticed by members of the Apache team . After shutting down all machines and changing the DNS service for most apache.org services, the Apache team determined that the European failover and backup box was not affected. While the some files had been copied to the machine by automated rsync processes, none of them were executed on the host, and we restored from a ZFS snapshot to a version of all our websites before any accounts were compromised. "At this time several machines remain offline, but most user facing websites and services are now available," the team said. |
| < Next story in category | Previous story in the category > |
|---|





Tags






