SlideShare a Scribd company logo
Kernel.org hacked & rooted - 09-01-2011
by Intizone - Intizone - Tech Savvy's Choice, Tech Blog on Latest News, hosting, reviews, howto, freebies -
http://intizone.net



Kernel.org hacked & rooted
by Intizone - Thursday, September 01, 2011

http://intizone.net/2011/09/01/kernel-org-hacked-rooted/

Kernel.org - The Core of Linux




Kernel.org introduction
Kernel.org serves the kernel of linux which is the core of linux in running every single hardware and
software. Without the kernel, a computer simply cannot boot up as it cannot connect to the hardware.

Summary
Kernel.org's server was hacked and rooted and measures have been taken to solve the issue with the help
of authorities.

Attack initiation date: 12th August 2011

Attack discoveration: 28th August 2011

Measures Taken to solve the problem:

  1. Full reinstallation of server.
  2. Notify authorities to investigate the attack.
  3. Checking on the files in git.

Kernel.org Hacked & Rooted Full Story
The discovering of the hack and root of kernel.org



                                                                                                             page 1 / 2
Kernel.org hacked & rooted - 09-01-2011
                                   by Intizone - Intizone - Tech Savvy's Choice, Tech Blog on Latest News, hosting, reviews, howto, freebies -
                                   http://intizone.net


                                   Well, the story first started on 12th August. Server Hera was hacked and rooted. The server may be
                                   exploited due to the fact that an user's information was compromised. SSH passwords were changed and a
                                   rootkit called Phalanx was injected to the system. User's actions are logged and exploit codes are being
                                   run.

                                   The discover of trojan and rootkit

                                   The trojan was discovered due to the Xnest /dev/mem error message w/o Xnest installed. However, it is
                                   unknown whether the systems with this error message are vulnerable or not. This discover was made on
                                   28th August.

                                   Actions taken on the hack and root of kernel.org

                                   The boxes are taken offline and backups and reinstallations are done. Besides, the authorities in Europe
                                   and United States are also notified to help kernel.org in the investigation of the attack. Analysis on the
                                   code within the git will be taken to confirm that no file has been injected with the rootkit or trojan.

                                   My Opinion on this attack incident
                                   I think that there must be a flaw on the server or it may due to a human flaw so the server administrators
                                   must be alert and check their logs daily to prevent such an incident from bringing a greater damage to the
                                   world as almost every servers in the world uses Linux based distro as their server.




                                                                                                                                                page 2 / 2

Powered by TCPDF (www.tcpdf.org)

More Related Content

PDF
The A and the P of the T
PPTX
Hacker bootcamp
PPTX
Trojans and backdoors
PPSX
Detection of running backdoors
PPT
Backdoor
PPT
Trojan backdoors
DOCX
Introduction to trojans and backdoors
PPTX
BackDoors Seminar
The A and the P of the T
Hacker bootcamp
Trojans and backdoors
Detection of running backdoors
Backdoor
Trojan backdoors
Introduction to trojans and backdoors
BackDoors Seminar

What's hot (19)

PDF
Web backdoors attacks, evasion, detection
PPTX
Essential security for linux servers
PPT
Wittyvirusabic
PDF
Dissecting the Hack: Malware Analysis 101
PDF
Research Paper on Rootkit.
PPTX
Trojan virus & backdoors
PPT
Linux security-fosster-09
PPTX
Playing with fuzz bunch and danderspritz
PPTX
Trojan horsies prez
PPT
Keyloggers and Spywares
PDF
Stuxnet
PPT
Stuxnet flame
PDF
Malware freak show
PPTX
Ник Белогорский - Будни Кремниевой Долины. История карьеры Ника, борьба с хак...
PPTX
Modern computer virology
PPTX
Bots and Botnet
PDF
Baton rouge std testing
PDF
CarolinaCon 2008 Rootkits Then and Now
PPTX
The Stuxnet Virus FINAL
Web backdoors attacks, evasion, detection
Essential security for linux servers
Wittyvirusabic
Dissecting the Hack: Malware Analysis 101
Research Paper on Rootkit.
Trojan virus & backdoors
Linux security-fosster-09
Playing with fuzz bunch and danderspritz
Trojan horsies prez
Keyloggers and Spywares
Stuxnet
Stuxnet flame
Malware freak show
Ник Белогорский - Будни Кремниевой Долины. История карьеры Ника, борьба с хак...
Modern computer virology
Bots and Botnet
Baton rouge std testing
CarolinaCon 2008 Rootkits Then and Now
The Stuxnet Virus FINAL

Similar to Kernel.org Hacked & Rooted (20)

PPT
Threats, Vulnerabilities & Security measures in Linux
PDF
An overview of unix rootkits
PPTX
Security Walls in Linux Environment: Practice, Experience, and Results
PPTX
Kautilya: Teensy beyond shell
PPTX
Teensy Programming for Everyone
PDF
Research and discuss an incident where it was discovered that a Remo.pdf
PDF
Ceh v5 module 18 linux hacking
PPTX
Deft v7
DOCX
Chapter 10. ScenariosI have always been a big fan of learnin
PPTX
Linux Operating System
PDF
2011-A_Novel_Approach_to_Troubleshoot_Security_Attacks_in_Local_Area_Networks...
PPT
Presentation Prepared By: Mohamad Almajali
PDF
Rootkit&honeypot aalonso-dcu-dec09
PPTX
Firmware analysis 101
PDF
LXC, Docker, security: is it safe to run applications in Linux Containers?
PDF
DTS Solution - Yehia Mamdouh - Release your pet worm on your infrastructure....
PDF
Survey of Rootkit Technologies and Their Impact on Digital Forensics
PPTX
Lifnaaaaaa e
ODP
Introduction To Linux Security
PPTX
powe point presentation on kali linux and ethical hacking
Threats, Vulnerabilities & Security measures in Linux
An overview of unix rootkits
Security Walls in Linux Environment: Practice, Experience, and Results
Kautilya: Teensy beyond shell
Teensy Programming for Everyone
Research and discuss an incident where it was discovered that a Remo.pdf
Ceh v5 module 18 linux hacking
Deft v7
Chapter 10. ScenariosI have always been a big fan of learnin
Linux Operating System
2011-A_Novel_Approach_to_Troubleshoot_Security_Attacks_in_Local_Area_Networks...
Presentation Prepared By: Mohamad Almajali
Rootkit&honeypot aalonso-dcu-dec09
Firmware analysis 101
LXC, Docker, security: is it safe to run applications in Linux Containers?
DTS Solution - Yehia Mamdouh - Release your pet worm on your infrastructure....
Survey of Rootkit Technologies and Their Impact on Digital Forensics
Lifnaaaaaa e
Introduction To Linux Security
powe point presentation on kali linux and ethical hacking

More from Intizone @ Blogging Zone (6)

PDF
AMD FX - 8.429GHZ World Record Fastest Processor
PDF
Overselling and why it is bad
PDF
Change Firefox Addon Version
PDF
Welcome to Intizone.net
PDF
News Summary Added
PDF
Preview Facebook Settings
AMD FX - 8.429GHZ World Record Fastest Processor
Overselling and why it is bad
Change Firefox Addon Version
Welcome to Intizone.net
News Summary Added
Preview Facebook Settings

Recently uploaded (20)

PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PPTX
1. Introduction to Computer Programming.pptx
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PDF
Encapsulation theory and applications.pdf
PDF
Mushroom cultivation and it's methods.pdf
PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PDF
MIND Revenue Release Quarter 2 2025 Press Release
PDF
A comparative analysis of optical character recognition models for extracting...
PDF
Approach and Philosophy of On baking technology
PDF
Network Security Unit 5.pdf for BCA BBA.
PDF
Accuracy of neural networks in brain wave diagnosis of schizophrenia
PDF
Spectral efficient network and resource selection model in 5G networks
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Heart disease approach using modified random forest and particle swarm optimi...
PDF
Unlocking AI with Model Context Protocol (MCP)
PPTX
SOPHOS-XG Firewall Administrator PPT.pptx
PPTX
TLE Review Electricity (Electricity).pptx
PDF
Assigned Numbers - 2025 - Bluetooth® Document
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PPTX
OMC Textile Division Presentation 2021.pptx
Per capita expenditure prediction using model stacking based on satellite ima...
1. Introduction to Computer Programming.pptx
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Encapsulation theory and applications.pdf
Mushroom cultivation and it's methods.pdf
Building Integrated photovoltaic BIPV_UPV.pdf
MIND Revenue Release Quarter 2 2025 Press Release
A comparative analysis of optical character recognition models for extracting...
Approach and Philosophy of On baking technology
Network Security Unit 5.pdf for BCA BBA.
Accuracy of neural networks in brain wave diagnosis of schizophrenia
Spectral efficient network and resource selection model in 5G networks
Reach Out and Touch Someone: Haptics and Empathic Computing
Heart disease approach using modified random forest and particle swarm optimi...
Unlocking AI with Model Context Protocol (MCP)
SOPHOS-XG Firewall Administrator PPT.pptx
TLE Review Electricity (Electricity).pptx
Assigned Numbers - 2025 - Bluetooth® Document
Advanced methodologies resolving dimensionality complications for autism neur...
OMC Textile Division Presentation 2021.pptx

Kernel.org Hacked & Rooted

  • 1. Kernel.org hacked & rooted - 09-01-2011 by Intizone - Intizone - Tech Savvy's Choice, Tech Blog on Latest News, hosting, reviews, howto, freebies - http://intizone.net Kernel.org hacked & rooted by Intizone - Thursday, September 01, 2011 http://intizone.net/2011/09/01/kernel-org-hacked-rooted/ Kernel.org - The Core of Linux Kernel.org introduction Kernel.org serves the kernel of linux which is the core of linux in running every single hardware and software. Without the kernel, a computer simply cannot boot up as it cannot connect to the hardware. Summary Kernel.org's server was hacked and rooted and measures have been taken to solve the issue with the help of authorities. Attack initiation date: 12th August 2011 Attack discoveration: 28th August 2011 Measures Taken to solve the problem: 1. Full reinstallation of server. 2. Notify authorities to investigate the attack. 3. Checking on the files in git. Kernel.org Hacked & Rooted Full Story The discovering of the hack and root of kernel.org page 1 / 2
  • 2. Kernel.org hacked & rooted - 09-01-2011 by Intizone - Intizone - Tech Savvy's Choice, Tech Blog on Latest News, hosting, reviews, howto, freebies - http://intizone.net Well, the story first started on 12th August. Server Hera was hacked and rooted. The server may be exploited due to the fact that an user's information was compromised. SSH passwords were changed and a rootkit called Phalanx was injected to the system. User's actions are logged and exploit codes are being run. The discover of trojan and rootkit The trojan was discovered due to the Xnest /dev/mem error message w/o Xnest installed. However, it is unknown whether the systems with this error message are vulnerable or not. This discover was made on 28th August. Actions taken on the hack and root of kernel.org The boxes are taken offline and backups and reinstallations are done. Besides, the authorities in Europe and United States are also notified to help kernel.org in the investigation of the attack. Analysis on the code within the git will be taken to confirm that no file has been injected with the rootkit or trojan. My Opinion on this attack incident I think that there must be a flaw on the server or it may due to a human flaw so the server administrators must be alert and check their logs daily to prevent such an incident from bringing a greater damage to the world as almost every servers in the world uses Linux based distro as their server. page 2 / 2 Powered by TCPDF (www.tcpdf.org)