Go Back   Cyber Tech Help Support Forums > Operating Systems > Linux

Notices

Linux Problem solving for all open source distributions of Linux, such as Debian/Ubuntu, Fedora, RedHat, Suse, Mandriva and other proprietary unixes such as Solaris, SGI Irix. Newbie friendly too!

Reply
 
Topic Tools
  #1  
Old July 24th, 2013, 04:33 PM
Total Noob Total Noob is offline
Senior Member
 
Join Date: Sep 2007
Posts: 579
Ubuntu forum disaster -- super major security breach at Ubuntu

I got this email earlier today.
Quote:
Hello,

You are receiving this message because you have an account registered with this address on ubuntuforums.org.

The Ubuntu forums software was compromised by an external attacker. As a result, the attacker has gained access to read your username, email address and an encrypted copy of your password from the forum database.

If you have used this password and email address to authenticate at any other website, you are urged to reset the password on those accounts immediately as the attacker may be able to use the compromised personal information to access these other accounts. It is important to have a distinct password for different accounts.

The ubuntuforums.org website is currently offline and we are working to restore this service. Please take the time to change your ubuntuforums.org account password when service is restored.

We apologize for any inconvenience to the Ubuntu community, thank you for your understanding.

The Canonical Sysadmins.
I have no reason to doubt the veracity of this communication. I use a handle at ubuntuforums and there's no way to know I am on it other than to have my real email address, which I never posted there, only provided as part of the sign up. In fact, at the moment, the forum is down and there is an announcement in its place. http://ubuntuforums.org/announce.html

This is a giant problem. I presume Canonical itself was hacked given that community assistance is part of its OS distribution program, and that its Ubuntuforums use Canonical open source serverware, which is supposed to be invulnerable due to the Linux enterprise origins. If anyone should have been smart enough to put in a defense against this, it would have been Canonical to at least protect its own products.

This is a disaster for Linux and especially Canonical. You can not trust them to keep your stuff secure.

Last edited by Total Noob; July 24th, 2013 at 04:36 PM.
Reply With Quote
  #2  
Old July 28th, 2013, 05:46 AM
kage's Avatar
kage kage is offline
CTH Subscriber
 
Join Date: Apr 2004
O/S: Linux
Posts: 1,644
Forum software has a long history of being insecure. The Ubuntu forum being hacked does not mean any part of Canonical was hacked. These are separate services and most likely on separate networks.

This is not a disaster for Linux or Canonical, just an inconvenience. It should serve as an important reminder, however, that online communities are not always 100% secure and you should be careful how much information you store online.
Reply With Quote
  #3  
Old July 28th, 2013, 06:17 AM
renegade600's Avatar
renegade600 renegade600 is offline
CTH Subscriber
 
Join Date: Sep 2003
O/S: Linux
Location: Osceola, Ar
Posts: 26,675
from the link provided in the original post

Ubuntu One, Launchpad and other Ubuntu/Canonical services are NOT affected by the breach.
Reply With Quote
  #4  
Old July 28th, 2013, 07:55 AM
craisin craisin is offline
Senior Member
 
Join Date: Sep 2004
O/S: Linux
Location: New Zealand
Age: 74
Posts: 1,095
i would go on ubuntu forums before i would go to facebook i never go to facebook
Reply With Quote
Reply

Bookmarks

Topic Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Topics
Topic Topic Starter Forum Replies Last Post
Ubuntu Security sladden Linux 2 June 1st, 2011 11:06 AM
Attemptin 2 DualBoot XP/Ubuntu on a XPS M1330 usin the Media Direct button 4 Ubuntu disintergrator Linux 3 January 31st, 2011 12:33 AM
Remove Ubuntu from Ubuntu/Vista Dual Boot Perma Windows Vista 3 June 20th, 2008 10:42 AM
Installing Ubuntu and using both Xp and Ubuntu simultaniously sjrr Linux 3 July 10th, 2007 02:49 PM
MasterCard Security Breach The Dude Open Discussion 0 June 18th, 2005 02:02 AM


All times are GMT +1. The time now is 08:11 AM.