[PLUG] Got hacked last night - HELP!

Paul Johnson baloo at ursine.dyndns.org
Wed Oct 6 06:46:02 UTC 2004


<#secure method=pgp mode=sign>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Michael Rasmussen <mikeraz at patch.com> writes:

> On Tue, Oct 05, 2004 at 05:04:18PM -0700, Paul Johnson wrote:
>> Which won't catch anything already installed, and what makes you think
>> rpm wasn't replaced with a version that gives the output the attacker
>> wants?  Once you're compromised, you can't trust any binary on your
>> system, and that includes RPM.
>> 
>> And don't call me Russ.
>
> Paul (sorry) I haven't encountered a hacked rpm yet.  Certainly
> reinstalling rpm is a trivial start.

But for that, you'd need to be able to trust rpm in the first place...
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)

iD8DBQFBY/U1UzgNqloQMwcRAqASAKC6wl709waxuQUhR59hpp5VOszMmgCfcC/m
9r0ndJ4oqCX/9mTca7PRgDc=
=owu5
-----END PGP SIGNATURE-----




More information about the PLUG mailing list