1.82m affected by Ubuntu Forums data breach; passwords stolen

Sunday, July 21st, 2013

The Ubuntu forums are the latest to suffer a data breach, from a hacker, taking place last night. An estimated 1.82 million accounts have been affected and at the time of writing the site is still down for maintenance. According to the placeholder page currently on the Ubuntu site, only the forums were ...

Use Splunk to show your active netstat connections, geographically

Friday, July 5th, 2013

I was geeking out a bit tonight thinking about a friend's situation and thought that I could probably do something useful in Splunk that might be helpful to others.  Sure enough, a few minutes later and I am viewing all my active netstat connections geographically as they are established:   Once the ...

Attack hitting Apache websites is invisible to the naked eye

Monday, April 29th, 2013

Ongoing exploits infecting tens of thousands of reputable sites running the Apache Web server have only grown more powerful and stealthy since Ars first reported on them four weeks ago. Researchers have now documented highly sophisticated features that make these exploits invisible without the use of special forensic detection methods. Linux/Cdorked.A, as ...

Windows passwords easily guessed by 25-GPU server

Sunday, December 9th, 2012

Ever wondered how secure the password to your Windows workstation is? Well, as it turns out, it's pretty insecure when put up against a 25-GPU server cluster running a combination of Linux and freely available password-cracking software suites. Said server, powered by 25 AMD Radeon graphics cards, manages to brute ...

Hackers break into two FreeBSD Project servers using stolen SSH keys

Monday, November 19th, 2012

Intrusions on two machines within the FreeBSD.org cluster were detected on Nov. 11, the FreeBSD security team said Saturday. "The affected machines were taken offline for analysis. Additionally, a large portion of the remaining infrastructure machines were also taken offline as a precaution," said a message on the project's public ...