Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Download Sites Hacked, Source Code Backdoored
Brian McWilliams, SecurityFocus 2002-06-03

The popular open-source security tool Fragroute is bugged in plain sight by unknown hackers, who may have struck before.

Comments Mode:
Download Sites Hacked, Source Code Backdoored 2002-06-04
Coldman (6 replies)
well.. 2002-06-04
frozen chocolate jesus
Download Sites Hacked, Source Code Backdoored 2002-06-04
cras (1 replies)
Download Sites Hacked, Source Code Backdoored 2002-06-05
Anonymous (1 replies)
since the site itself was hacked, it is possible that the private key that would have been used to sign the code could have been stolen as well. This would have defeated the digital signing system, as the cracker could have signed the code as the author.

Solution? I guess dont store private keys on a networked computer... but then how do you sign files you will post?

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/462/12910#12910
Download Sites Hacked, Source Code Backdoored 2002-06-07
Chris Berry <compjma (at) hotmail (dot) com [email concealed]> (1 replies)
open vrs closed... 2002-06-05
Anonymous
You're wrong. 2002-06-14
twoforty
Not only one 2002-06-07
notstarh







 

Privacy Statement
Copyright 2009, SecurityFocus