Technology news and Jobs arrow VIRTUALISATION arrow Apache project server compromised
Apache project server compromised E-mail
by Sam Varghese   
Saturday, 29 August 2009
A server at the Apache project has been compromised, resulting in some hours of downtime, the project has announced.

The compromise took place on August 27 when an account used for automated backups for the ApacheCon site was used to upload files to a server which does the job of seed host for most apache.org sites.

It also provides shell accounts for all those committing code to the Apache project.

The project said the attackers created several CGI scripts on the compromised box, which were then rysnced to the production webservers.

About 12 hours later, the scripts were accessed over HTTP and the processes which were spawned were noticed by members of the Apache team .

After shutting down all machines and changing the DNS service for most apache.org services, the Apache team determined that the European failover and backup box was not affected.

While the some files had been copied to the machine by automated rsync processes, none of them were executed on the host, and we restored from a ZFS snapshot to a version of all our websites before any accounts were compromised.

"At this time several machines remain offline, but most user facing websites and services are now available," the team said.
Powered By Joomla Tags

Please enable JavaScript in your browser to post your comment!

 
< Next story in category   Previous story in the category >
iTWire user statistics Visitors last 30 days
694,279
Subscribers 15,210
#1 independent technology news advertise here
  •   *  
  • Search
  • AdvSeach
  • Login
  • Events
  • FreeStuff

- Advertisement -

Featured Whitepapers

Follow iTWire on Twitter

About iTWire

iTWire is all about technology news, information, jobs and community for the IT and telecommunications industry professional. Subscribe to our free ICT daily newsletter