nagios backdoor

Zack Colgan zcolgan at clearbearing.com
Thu Jun 6 22:10:02 CEST 2013


On 06/06/2013 03:48 PM, Κοκμάδης Δημήτριος wrote:
> The full text:
> 
> 
> Dear Client
> 
> At the end of last week, Hetzner technicians discovered a "backdoor" in one 
> of our internal monitoring systems (Nagios).
> 
> An investigation was launched immediately and showed that the administration 
> interface for dedicated root servers (Robot) had also been affected. Current 
> findings would suggest that fragments of our client database had been copied 
> externally.  
> 

Sounds more like there was a backdoor into the _server named_ Nagios,
rather than Nagios the application, given the way they identify the
system names there.

-Zack

------------------------------------------------------------------------------
How ServiceNow helps IT people transform IT departments:
1. A cloud service to automate IT design, transition and operations
2. Dashboards that offer high-level views of enterprise services
3. A single system of record for all IT processes
http://p.sf.net/sfu/servicenow-d2d-j
_______________________________________________
Nagios-users mailing list
Nagios-users at lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/nagios-users
::: Please include Nagios version, plugin version (-v) and OS when reporting any issue. 
::: Messages without supporting info will risk being sent to /dev/null


More information about the Users mailing list