Languish.org

General Category => Off the Record => Computer Affairs => Topic started by: viper37 on February 22, 2016, 10:26:34 AM

Title: Linux Mint website hacked
Post by: viper37 on February 22, 2016, 10:26:34 AM
http://arstechnica.com/security/2016/02/linux-mint-hit-by-malware-infection-on-its-website-and-forum-after-hack-attack/ (http://arstechnica.com/security/2016/02/linux-mint-hit-by-malware-infection-on-its-website-and-forum-after-hack-attack/)

First, the hacker modified the web page for Mint download and replaced the links with ones pointing to his own custom version.
Second, he hacked the forum server and got people's e-mails and passwords.

The forum is down atm, but if like me you are registered there, you will need to quickly change your password and make sure you're not using it elsewhere.

So much for Linux being unhackable

More details here:
http://www.zdnet.com/article/hacker-hundreds-were-tricked-into-installing-linux-mint-backdoor/
Title: Re: Linux Mint website hacked
Post by: Darth Wagtaros on February 23, 2016, 08:14:10 AM
I thought it was that POS forum applicatin that was hacked?
Title: Re: Linux Mint website hacked
Post by: viper37 on February 23, 2016, 03:18:07 PM
Quote from: Darth Wagtaros on February 23, 2016, 08:14:10 AM
I thought it was that POS forum applicatin that was hacked?
the hacker found an exploit that let him use Clem's credential on the server.  I assumed it was the OS of all the server, not just the forum application that was hacked, since he managed to replace the downloads by his own files. The forum was also hacked since he is selling all our usernames, passwords, e-mails, etc somewhere on darknet.
Title: Re: Linux Mint website hacked
Post by: Darth Wagtaros on February 24, 2016, 11:08:53 AM
Ahh. Ok.