Ubuntu Linux Forum Hacked ! once again

ubuntu linux forum hacked
https://itsfoss.com/wp-content/uploads/2016/07/Ubuntu-Forums-hacked-again.jpg

The Ubuntu online forums have been hacked, and data belonging to over 2 Million users have been compromised, Canonical just announced.

The compromised users’ data include their IP addresses, usernames, and email addresses, according to the company, who failed to apply a patch to secure its users’ data.

Instead, the breach only affected the Ubuntu online forums that people use to discuss the OS, said BetaNews, who initially reported the news.

“There has been a security breach on the Ubuntu Forums site,” Jane Silber, Chief Executive Officer at Canonical wrote in a blog post. “We take information security and user privacy very seriously, follow a strict set of security practices and this incident has triggered a thorough investigation.”

“Corrective action has been taken, and full service of the Forums has been restored. In the interest of transparency, we’d like to share the details of the breach and what steps have been taken. We apologize for the breach and ensuing inconvenience.”

Sounds really awful. This again proves that the Weakest Link in the security is still – Humans.

The vulnerability is one of the oldest, but most powerful and most dangerous flaw that could affect any website or web application that uses an SQL-based database.

According to Silber, here’s what the attackers were able to access:

 

  • The attackers were able to inject formatted SQL to the Forums database on the Forums database servers, which gave them access to read from any table.
  • The attackers then used the above access to download portions of the ‘user’ table containing usernames, email addresses, and IP addresses for 2 Million users.

Although Canonical responded fast and had since patched the flaw, it is still disappointing that the firm’s silly mistake to not installing a patch for a known bug caused exposure of its users personal data.

[Source:The Hackers News]

To see more:http://thehackernews.com/2016/07/ubuntu-hacked.html

TWITTER
Visit Us
Follow Me

Leave a Reply

Your email address will not be published. Required fields are marked *