Donate!
Welcome, Guest. Please Login or Register :: View Members
Pages: 1
Send Topic Print
Follow up on Linux Mint website getting hacked (Read 43 times)
Oldfeller--FSO
Serious Thumper
ModSquad
*****
Offline

Hobby is now
"concentrated
neuropany"

Posts: 12673
Fayetteville, NC
Gender: male
Follow up on Linux Mint website getting hacked
02/27/16 at 08:58:43
 

http://blog.level3.com/security/the-linux-mint-backdoor-how-bad-was-it/



This is a professional internet threat analysis done by Level 3 Threat Research Labs.   It is well worth reading as it makes a really good Primer about "innocence" in the age of paid hack attacks on Foss Distributions such as Linux Mint.    

(Multiple malicious paid for attacks done with some sort of goal in mind).

Many thanks to the Level 3 Threat Research people for kicking in their 15 cents for gratus ---- now Clem and his boys really have some hard choices to make and some real hard work to do since they were successfully broken into, hacked and multiple back doors installed into their web page system AGAIN AND AGAIN AND AGAIN.

The Level 3 people have fingered the perpetrators -- now it remains for someone on the legal side of the EU to follow up with the criminal charges.

Now, if some EU criminal attorneys specializing in prosecuting "web crimes" would kick in their 15 cents worth of time and help then perhaps the perpetrators could be curtailed legally ..... given a nice long vacation from their crimes, in other words.


========================================


Sorry for having to create a new thread, the old thread is giving off signals that it has been broken at post #9 and will not take a adder at this time.

Oldfeller
Back to top
 
« Last Edit: 02/27/16 at 10:04:23 by Oldfeller--FSO »  

Former Savage Owner
  IP Logged
Oldfeller--FSO
Serious Thumper
ModSquad
*****
Offline

Hobby is now
"concentrated
neuropany"

Posts: 12673
Fayetteville, NC
Gender: male
Re: Follow up on Linux Mint website getting hacked
Reply #1 - 02/27/16 at 09:12:11
 

To many of us the Level 3 analysis comes off sort of intellectually cold and not offering very much informationally to the layman.  

Here is an "informational based" report, simple, harsh but understandable.   A layman gets the feel that all of FOSS is screwed, simply because it IS FOSS (ie open).    As you watch it develop, you may form a different opinion on FOSS on security matters going forward.

http://www.techrepublic.com/article/why-the-linux-mint-hack-is-an-indicator-o...



Why the Linux Mint hack is an indicator of a larger problem


On February 20th, a hacker working under the handle "Peace" took control of the website of Linux Mint, a popular Linux distribution derived from Ubuntu (and Debian) targeted toward non-technical users and power users unhappy with modern desktop environments like GNOME 3, KDE Plasma 5, and Unity 7. The hacker replaced the download link for Linux Mint with one which contained a backdoor called Tsunami-an attack which put "several hundred" systems with a fresh installation of Linux Mint in the hacker's control, according to an interview with ZDNet's Zach Whittaker.

The same hacker gained control of the Linux Mint user forum, grabbing copies of the entire database twice, copies of which are now for sale on a dark web marketplace for 0.197 bitcoin ($85) per download.

The user forum, which was powered by phpBB, used PHPass to hash passwords, which is possible to crack. At the time of this writing, the forum remains down while the main Linux Mint website was reinstated and compromised again shortly thereafter.

While these attacks are regrettable, and part of an infrastructure problem rather than a problem with the distribution itself, it increasingly appears that the Linux Mint team, led by project leader Clement Lefebvre, is spread too thin when it comes to security.


The problem with security in Linux Mint

The architectural design of Linux Mint inherits a great deal from its upstream sources Debian and Ubuntu (which is itself based upon Debian). Unfortunately, it lacks any sort of security advisories—Linux Mint evangelists insist that referring to the Ubuntu or Debian advisories is sufficient. Not every package in Linux Mint is available in Ubuntu or Debian, and this argument is further complicated by the fact that updates that work perfectly in Ubuntu or Debian are blacklisted by the Linux Mint team due to compatibility issues.

Back to top
 
 

Former Savage Owner
  IP Logged
Oldfeller--FSO
Serious Thumper
ModSquad
*****
Offline

Hobby is now
"concentrated
neuropany"

Posts: 12673
Fayetteville, NC
Gender: male
Re: Follow up on Linux Mint website getting hacked
Reply #2 - 02/27/16 at 09:54:16
 

IS THE REPEATED PAID HACKING ATTACKS ON LINUX MINT AN INDICATOR OF SOME TYPICAL PC LAND "DIRTY POOL" ????

Petty criminals out to rip off a website for a quick buck will generally strike and then run off and hide.

Paid professional hacker jobs like the Linux Mint Hack job have the attacking people to stick around and to repeatedly try to despoil all items and efforts that they can get their hands on over a period of days, taking on some ongoing detection risks to themselves to do so.    

Persistence is a function of payday over in HACKLAND, in other words.


Undecided


Back to top
 
« Last Edit: 02/27/16 at 14:37:00 by Oldfeller--FSO »  

Former Savage Owner
  IP Logged
Oldfeller--FSO
Serious Thumper
ModSquad
*****
Offline

Hobby is now
"concentrated
neuropany"

Posts: 12673
Fayetteville, NC
Gender: male
Re: Follow up on Linux Mint website getting hacked
Reply #3 - 02/27/16 at 10:10:34
 

http://www.zdnet.com/article/why-switch-to-windows-10-or-a-mac-when-you-can-u...



Read the above for a possible motivation behind the Linux Mint hack attacks --- just who was Linux Mint in the process of discommoding at the moment?

I read the article again with a mixed heart.   Except for Clem and his boys choosing to use WordPress with all of its known vulnerabilities on their web pages, the Linux Mint folks would still be right where the article paints them.

Also very sad but true, rewriting the web pages with a better, more secure web creation  tool is not going to be enough --- getting the mice back out of the walls means changing every password and using stronger measures ongoing concerning upgrade verifications and UPDATE verifications, etc. etc.  

And these are exactly the sort of awkward troublesome cumbersome things Linux Mint was NOT known for in the past.

Back to top
 
« Last Edit: 02/27/16 at 14:38:36 by Oldfeller--FSO »  

Former Savage Owner
  IP Logged
Pages: 1
Send Topic Print


« Home

 
« Home
SuzukiSavage.com
09/28/24 at 16:30:03



General CategoryThe Cafe › Follow up on Linux Mint website getting hacked


SuzukiSavage.com » Powered by YaBB 2.2!
YaBB © 2000-2007. All Rights Reserved.