Forum

Possible Back Door?

RaGe10940
11 May 2013, 03:41
Hiawatha version: 9.0
Operating System: Ubuntu 12.04 Server and Desktop

I'm sure you've heard of this but how is Hiawatha defending / dealing with this new attack? :

http://www.net-security.org/secworld.php?id=14882

http://apache.slashdot.org/story/13/05/09/003236/backdoor-targeting-apache-servers-spreads-to-nginx-lighttpd

http://apache.slashdot.org/story/13/04/29/1258205/sophisticated-apache-backdoor-in-the-wild

http://www.welivesecurity.com/2013/04/26/linuxcdorked-new-apache-backdoor-in-the-wild-serves-blackhole/

I'm reading that it is a mostly a cPanel and idiotically configured server which runs as "root'

Would love your words on it though Hugo.
Hugo Leisink
11 May 2013, 07:32
From what I've heard, they haven't figured out yet how the attackers gained access to the compromised servers. Also non-cPanel servers were infected. And replacing a binary has nothing to do with the security of that application. So, there is not much for me to say.
RancerDS
18 May 2013, 17:16
I'd read the first article, It did not mention Hiawatha web-services software. Not sure and am curious why you would ask how Hiawatha deals with something that doesn't affect it?
This topic has been closed.