Security Incident on FreeBSD Infrastructure

The newest distros the lastest Nvidia driver, gadgets .....

Moderators: b1o, jkerr82508

User avatar
rolf
Guru-Berserk
Posts: 1107
Joined: 16 Mar 2010, 16:07

Security Incident on FreeBSD Infrastructure

Postby rolf » 18 Nov 2012, 15:20

I guess BSD is not Linux but similar enough. :confused

http://www.freebsd.org/news/2012-compromise.html

It's sobering to see the vulnerabilities in FOSS development and distribution. I thought the following posts made good points:

http://lists.freebsd.org/pipermail/free ... 02595.html

http://www.linux.com/news/featured-blog ... -kernelorg

User avatar
viking60
Über-Berserk
Posts: 9351
Joined: 14 Mar 2010, 16:34

Re: Security Incident on FreeBSD Infrastructure

Postby viking60 » 18 Nov 2012, 16:25

Image
Sobering indeed - I guess BSD is interesting because it is the foundation of OSX. FreeBSD has had a good reputation as a server - so far. The Linux kernel is handled in Git so it will not be possible to inject anything there without others knowing. And It is now discussed for FreeBSD too - that seems sensible.
But there is no reason to feel completely invulnerable. The best way to avoid this stuff is to know your system - and I thought those FreeBSD guys did! :confused

I think this means that Linux servers are more secure than FreeBSD. But I am sure the BSD guys will fix this. It is very interesting how long it toke before they discovered that the servers were compromised. :think:
Manjaro 64bit on the main box -Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz and nVidia Corporation GT200b [GeForce GTX 275] (rev a1. + Centos on the server - Arch on the laptop.
"There are no stupid questions - Only stupid answers!"

User avatar
rolf
Guru-Berserk
Posts: 1107
Joined: 16 Mar 2010, 16:07

Re: Security Incident on FreeBSD Infrastructure

Postby rolf » 18 Nov 2012, 17:09

viking60 wrote:Image
Sobering indeed - I guess BSD is interesting because it is the foundation of OSX. FreeBSD has had a good reputation as a server - so far. The Linux kernel is handled in Git so it will not be possible to inject anything there without others knowing. And It is now discussed for FreeBSD to - that seems sensible.
But there is no reason to feel completely invulnerable. The best way to avoid this stuff is to know your system - and I thought those FreeBSD guys did! :confused ... :think:

In some of the links to the freebsd list where I first saw this story, http://www.dslreports.com/forum/r277367 ... ity-breach you can see resistance to change in the developer ranks. I think there might be parallels to how POK et al are against some changes coming from transition to OpenMandriva https://ml.mandriva.com/wws/arc/cooker/ ... 00062.html
I love a good food fight! Image

User avatar
viking60
Über-Berserk
Posts: 9351
Joined: 14 Mar 2010, 16:34

Re: Security Incident on FreeBSD Infrastructure

Postby viking60 » 18 Nov 2012, 17:20

Oh boy! If it really toke two months then that is way to long. ...Good fight there :berserk2 :-D
Manjaro 64bit on the main box -Intel(R) Core(TM) i7 CPU 920 @ 2.67GHz and nVidia Corporation GT200b [GeForce GTX 275] (rev a1. + Centos on the server - Arch on the laptop.
"There are no stupid questions - Only stupid answers!"


Return to “Linux News”