Monday, September 15, 2014

A Problem With IRC Chat

A lot of discussion related to development and support in the Open Source world happens over IRC. If you are part of that community, this may be relevant to you.

SECURITY ALERT
[16:04] [MOTD] -                       SECURITY ALERT
[16:04] [MOTD] -
Over the weekend of 13th-14th September freenode staff noticed
some compromised binaries present on a number of servers.
The servers in question have been removed from the network and
shut down.  However, it's possible that network traffic  -
including SSL traffic - has been sniffed and passwords
exposed.
[16:04] [MOTD] -
We therefore recommend that all users change their nickserv
password(s) to a new value which is not shared with any
other service.
[16:04] [MOTD] -
You can do this with /msg nickserv set password newpasshere
[16:04] [MOTD] -
Please note that investigation is ongoing to discover the root
cause of the attack, and until this investigation is complete
we cannot be 100% certain that all traces of the compromises
have been removed. We may have to ask you to change your
passwords again after analysis has completed.
[16:04] [MOTD] -
Further details will appear on

As an aside: not posting for a while (things are busy) seems to have foxed those annoying +1 bots for the moment. The ones that +1 every post you make, seconds after submission. Alas, it won't last.

