Google Friend Connect



Sunday, September 11, 2011

Important: Security Breach on Linux.com, LinuxFoundation.org

I got this notice when visiting http://www.linuxfoundation.org/ and http://www.linux.com/ websites date and time 11 September 2011 19:58

Linux Foundation infrastructure including LinuxFoundation.org, Linux.com, and their subdomains are down for maintenance due to a security breach that was discovered on September 8, 2011. The Linux Foundation made this decision in the interest of extreme caution and security best practices. We believe this breach was connected to the intrusion on kernel.org.

We are in the process of restoring services in a secure manner as quickly as possible. As with any intrusion and as a matter of caution, you should consider the passwords and SSH keys that you have used on these sites compromised. If you have reused these passwords on other sites, please change them immediately. We are currently auditing all systems and will update this statement when we have more information.

We apologize for the inconvenience. We are taking this matter seriously and appreciate your patience. The Linux Foundation infrastructure houses a variety of services and programs including Linux.com, Open Printing, Linux Mark, Linux Foundation events and others, but does not include the Linux kernel or its code repositories.

Please contact us at info@linuxfoundation.org with questions about this matter.

The Linux Foundation

Email from info@linuxfoundation.org

Important: Security Breach on Linux.com, LinuxFoundation.org


Attention Linux.com and LinuxFoundation.org users,

We are writing you because you have an account on Linux.com, LinuxFoundation.org, or one of the subdomains associated with these domains. On September 8, 2011, we discovered a security breach that may have compromised your username, password, email address and other information you have given to us. We believe this breach was connected to the intrusion on kernel.org.

As with any intrusion and as a matter of caution, you should consider the passwords and SSH keys that you have used on these sites compromised. If you have reused these passwords on other sites, please change them immediately. We are currently auditing all systems and will update public statements when we have more information.

We have taken all Linux Foundation servers offline to do complete re-installs. Linux Foundation services will be put back up as they become available. We are working around the clock to expedite this process and are working with authorities in the United States and in Europe to assist with the investigation.

The Linux Foundation takes the security of its infrastructure and that of its members extremely seriously and are pursuing all avenues to investigate this attack and prevent future ones. We apologize for this inconvenience and will communicate updates as we have them.

Please contact us at info@linuxfoundation.org with questions about this matter.

The Linux Foundation

My advice to System Administrators from Malaysia, lets join OWASP Malaysia Chapter for ICT security alerts and discussion.

OWASP Malaysia Chapter links :-

OWASP.my Discussion Group In Facebook

OWASP Malaysia Twitter

OWASP Malaysia Local Chapter Facebook Page

OWASP Malaysia Local Chapter official Website

OWASP Malaysia Local Chapter Mailing List



No comments:

Post a Comment

Popular Posts