From owner-freebsd-questions@FreeBSD.ORG Wed Aug 13 17:52:50 2003 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id BB8AA37B401 for ; Wed, 13 Aug 2003 17:52:50 -0700 (PDT) Received: from ns2.foolishgames.net (ns2.foolishgames.net [216.93.162.119]) by mx1.FreeBSD.org (Postfix) with ESMTP id 3F1E043F3F for ; Wed, 13 Aug 2003 17:52:50 -0700 (PDT) (envelope-from luke@foolishgames.com) Received: from foolishgames.com (adsl-68-73-66-71.dsl.klmzmi.ameritech.net [68.73.66.71]) (authenticated bits=0) by ns2.foolishgames.net (8.12.9/8.12.9) with ESMTP id h7E0qfrG040653; Wed, 13 Aug 2003 17:52:42 -0700 (PDT) (envelope-from luke@foolishgames.com) Date: Wed, 13 Aug 2003 20:52:47 -0400 Content-Type: text/plain; charset=US-ASCII; format=flowed Mime-Version: 1.0 (Apple Message framework v552) To: Matt Heath From: Lucas Holt In-Reply-To: <3F3AB602.7020704@thebigchoice.com> Message-Id: <9F6A7A0A-CDF1-11D7-93AA-0030656DD690@foolishgames.com> Content-Transfer-Encoding: 7bit X-Mailer: Apple Mail (2.552) cc: FreeBSD Questions Mailing List Subject: Re: ftp.gnu.org got cracked... how does this affect FreeBSD? X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 14 Aug 2003 00:52:51 -0000 Are you sure it was a guy? Male hackers usually aren't that patient. I doubt the source was altered anyway. Someone would have caught it by now.. they did when apache.org was attacked through their database server a few years back. On Wednesday, August 13, 2003, at 06:04 PM, Matt Heath wrote: >> >> >> So far there's no evidence that any distfiles were compromised. For >> files in the ports collection, they would have been caught by the md5 >> checksum. >> > > I wouldn't be so sure, the guy was harvesting passwords. > Although I don't know the details of the commit procedure he would > surely be able to fiddle with any commits which are, by definition, > going to have different checksums. > > but I'm guessing. In the face of no facts it is the only choice I have. > > > > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to > "freebsd-questions-unsubscribe@freebsd.org" > > Lucas Holt Luke@FoolishGames.com ________________________________________________________ FoolishGames.com (Jewel Fan Site) JustJournal.com (Free blogging) "Only two things are infinite, the universe and human stupidity, and I'm not sure about the former." - Albert Einstein (1879-1955)