Apache Server Got Hacked


Written on August 31, 2009 – 4:39 pm | by admin

At Friday Aug 28, 2009 Apache server got hacked.
Apparently the intruder got into by accessing their SSH key authentication.
As they mentioned in they blog “The account was accessed using SSH key authentication from this host.”

The attackers created several files in the directory containing files for www.apache.org, including several CGI scripts. These files were then rsynced to our production webservers by automated processes. At about 07:00 on August 28 2009 the attackers accessed these CGI scripts over HTTP, which spawned processes on our production web services.

And they said
“To the best of our knowledge at this time, no end users were affected by this incident, and the attackers were not able to escalate their privileges on any machines.
While we have no evidence that downloads were affected, users are always advised to check digital signatures where provided.”

You can read their complete reports on their blog https://blogs.apache.org/infra/entry/apache_org_downtime_initial_report

Bookmark, Share and Enjoy:
  • Digg
  • Sphinn
  • del.icio.us
  • Facebook
  • Mixx
  • Google Bookmarks
  • Fleck
  • FriendFeed
  • Internetmedia
  • LinkaGoGo
  • LinkArena
  • LinkedIn
  • Live
  • MisterWong
  • MisterWong.DE
  • MSN Reporter
  • MyShare
  • MySpace
  • Ping.fm
  • Reddit
  • SphereIt
  • StumbleUpon
  • Technorati
  • TwitThis
  • Yahoo! Bookmarks
  • Yahoo! Buzz

Post a Comment