Hackers took over the Gentoo Linux GitHub repository



Popular Linux distribution Gentoo has been “totally pwned” according to researchers at Sophos, and none of the current code can be trusted. The team immediately posted an update and noted that none of the real code has been compromised. However, they have pulled the GitHub repository until they can upload a fresh copy of the unadulterated code.

“Today 28 June at approximately 20:20 UTC unknown individuals have gained control of the GitHub Gentoo organization, and modified the content of repositories as well as pages there. We are still working to determine the exact extent and to regain control of the organization and its repositories. All Gentoo code hosted on github should for the moment be considered compromised,” wrote Gentoo administrators. “This does NOT affect any code hosted on the Gentoo infrastructure. Since the master Gentoo ebuild repository is hosted on our own infrastructure and since Github is only a mirror for it, you are fine as long as you are using rsync or webrsync from gentoo.org.”

None of the code is permanently damaged because the Gentoo admins kept their own copy of the code. Gentoo stated that the compromised code could contain malware and bugs and that users should avoid the GitHub version until it is reinstated.

“The Gentoo Infrastructure team have identified the ingress point, and locked out the compromised account,” wrote the admins. “Three Github repositories containing the Gentoo code, Musl, and systemd. All of these repositories are being “reset back to a known good state.”

Popular Linux distribution Gentoo has been “totally pwned” according to researchers at Sophos, and none of the current code can be trusted. The team immediately posted an update and noted that none...

Today at “Muscle Beach” in Venice, Calif., Netflix and Lyft joined forces for a promotional campaign in support of the streaming media site’s (really excellent) dramatization of t...

When police had difficulty identifying the man whom they believed opened fire on a newsroom in Maryland, killing five people, they turned to one of the most controversial yet potent tools in the st...

Facebook likes to keep it in the family. Gabe Madway, Instagram’s director of comms who’s run its day-to-day efforts for the past four years, is departing to work for a new company late...

Developers and creators, this is your shot to flex your technical building skills for a chance to win free passes to Disrupt SF 2018 — and maybe even $10,000! Sign up today to participate in ...

This week, Tinder responded to a letter from Oregon Senator Ron Wyden calling for the company to seal up security loopholes in its app that could lead to blackmail and other privacy incursions. In ...

There’s a new astronaut on its way to the International Space Station this morning aboard SpaceX’s most recent resupply launch, and it’s only the size of a medicine ball. CIMON (C...

YouTube has confirmed that picture-in-picture mode — previously a paid-only feature — has now rolled out to all U.S. YouTube users on Android on supported devices. The feature, which wo...

For the last several years, we’ve compiled profiles of women founders and investors at the end of each year because they’ve either raised substantial amounts of money or otherwise achie...

Amazon is addressing one of the larger issues with its Echo Dot Kids Edition — support for Spotify’s streaming music service, with the option to filter out explicit lyrics. The news was...

Spin, an electric scooter startup, is raising around $125 million via a blockchain-based security token offering (STO), Axios first reported and TechCrunch has independently learned. Spin, which de...

Two sites that are actively cataloging failed crypto projects, Coinopsy and DeadCoins, have found that over a 1,000 projects have failed so far in 2018. The projects range from true abandonware to ...

Say you have a job with a large company and you want to know how much vacation time you have left, or how to add your new baby to your healthcare. This usually involves emailing or calling HR and w...

It’s been more than four years since “The Hard Thing About Hard Things” was published, and it remains — including to minds of many of us at TechCrunch — one of the bes...

Earlier today we revealed that Apple was re-building maps from the ground up. These are some questions from readers that came up when we went live. You can ask more questions here and I’ll tr...

Domo, the business analytics company based out of Utah, today became the latest enterprise tech company to go public, and it did so with a small pop. Trading on Nasdaq as DOMO, the company opened a...

Out on the plains of East Texas, not far from Dallas, a company called TMGcore is mining crypto. The company, funded to the tune of $70 million, will be mining multiple cryptocurrencies and is usin...

In only a few short months — on September 5-7 — TechCrunch will play host to more than 10,000 members of the tech startup community at Disrupt San Francisco 2018. Our flagship event draws the best ...

https://www.geezgo.com/sps/28612

Post a Comment

[disqus][blogger][facebook]

Geezwild

Contact Form

Name

Email *

Message *

Powered by Blogger.
Javascript DisablePlease Enable Javascript To See All Widget