Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Download Sites Hacked, Source Code Backdoored
Brian McWilliams, SecurityFocus 2002-06-03

The popular open-source security tool Fragroute is bugged in plain sight by unknown hackers, who may have struck before.

Comments Mode:
Download Sites Hacked, Source Code Backdoored 2002-06-04
Coldman (6 replies)
These examples shows that opens source code is not more secure than closed source code, probably even more dangerous, since most people [wrongly] believe that OS software is less vulnerable...

Most users who download sources and then compile those usualy don't have enough knowledge and experience to make any changes (even small ones), so they obviously can't check that the code is free from backdoors...

And concerning digital signatures... Well, again - most users are not going to check those anyway, so... It is possible to force signature checking on binary installation in some systems, but you just cannot force this in case of sources. No way...

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/462/12887#12887
well.. 2002-06-04
frozen chocolate jesus
Download Sites Hacked, Source Code Backdoored 2002-06-04
cras (1 replies)
Download Sites Hacked, Source Code Backdoored 2002-06-05
Anonymous (1 replies)
Download Sites Hacked, Source Code Backdoored 2002-06-07
Chris Berry <compjma (at) hotmail (dot) com [email concealed]> (1 replies)
open vrs closed... 2002-06-05
Anonymous
You're wrong. 2002-06-14
twoforty
Not only one 2002-06-07
notstarh







 

Privacy Statement
Copyright 2009, SecurityFocus