Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised.

If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised.

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
10 Indlæg 9 Posters 0 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • jerry@infosec.exchangeJ This user is from outside of this forum
    jerry@infosec.exchangeJ This user is from outside of this forum
    jerry@infosec.exchange
    wrote sidst redigeret af
    #1

    If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. The latest patch will help clean up the mess.

    See here: https://github.com/Chocobozzz/PeerTube/releases/tag/v8.1.8

    jerry@infosec.exchangeJ jerry@hear-me.socialJ jawnsy@mastodon.socialJ aspragg@ohai.socialA almonds@mastodon.mit.eduA 7 Replies Last reply
    1
    0
    • jerry@infosec.exchangeJ jerry@infosec.exchange

      If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. The latest patch will help clean up the mess.

      See here: https://github.com/Chocobozzz/PeerTube/releases/tag/v8.1.8

      jerry@infosec.exchangeJ This user is from outside of this forum
      jerry@infosec.exchangeJ This user is from outside of this forum
      jerry@infosec.exchange
      wrote sidst redigeret af
      #2

      Also, hat tip to the peertube developers for being so responsive.

      1 Reply Last reply
      0
      • jerry@infosec.exchangeJ jerry@infosec.exchange

        If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. The latest patch will help clean up the mess.

        See here: https://github.com/Chocobozzz/PeerTube/releases/tag/v8.1.8

        jerry@hear-me.socialJ This user is from outside of this forum
        jerry@hear-me.socialJ This user is from outside of this forum
        jerry@hear-me.social
        wrote sidst redigeret af
        #3

        @jerry@infosec.exchange It was quite a thing to wake up to this morning. I upgraded my instance before I even had my coffee.

        cthos@mastodon.cthos.devC 1 Reply Last reply
        0
        • jerry@infosec.exchangeJ jerry@infosec.exchange

          If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. The latest patch will help clean up the mess.

          See here: https://github.com/Chocobozzz/PeerTube/releases/tag/v8.1.8

          jawnsy@mastodon.socialJ This user is from outside of this forum
          jawnsy@mastodon.socialJ This user is from outside of this forum
          jawnsy@mastodon.social
          wrote sidst redigeret af
          #4

          @jerry Impressive release with detections and mitigations in the notes. The team did well responding to it.

          jgg@qoto.orgJ 1 Reply Last reply
          0
          • jerry@infosec.exchangeJ jerry@infosec.exchange

            If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. The latest patch will help clean up the mess.

            See here: https://github.com/Chocobozzz/PeerTube/releases/tag/v8.1.8

            aspragg@ohai.socialA This user is from outside of this forum
            aspragg@ohai.socialA This user is from outside of this forum
            aspragg@ohai.social
            wrote sidst redigeret af
            #5

            @jerry If you've been compromised, will a patch really clean things up? I thought the general wisdom was that you should nuke the site from orbit and perform a clean OS install + restore from backups?

            1 Reply Last reply
            0
            • jerry@infosec.exchangeJ jerry@infosec.exchange

              If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. The latest patch will help clean up the mess.

              See here: https://github.com/Chocobozzz/PeerTube/releases/tag/v8.1.8

              almonds@mastodon.mit.eduA This user is from outside of this forum
              almonds@mastodon.mit.eduA This user is from outside of this forum
              almonds@mastodon.mit.edu
              wrote sidst redigeret af
              #6

              @jerry I wonder if someone can design a SQL injection to update instances, for the users who are having trouble contacting their instance maintainers

              1 Reply Last reply
              0
              • jerry@infosec.exchangeJ jerry@infosec.exchange

                If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. The latest patch will help clean up the mess.

                See here: https://github.com/Chocobozzz/PeerTube/releases/tag/v8.1.8

                tunafishtiger@mastodon.onlineT This user is from outside of this forum
                tunafishtiger@mastodon.onlineT This user is from outside of this forum
                tunafishtiger@mastodon.online
                wrote sidst redigeret af
                #7

                @jerry @lety

                1 Reply Last reply
                0
                • jerry@hear-me.socialJ jerry@hear-me.social

                  @jerry@infosec.exchange It was quite a thing to wake up to this morning. I upgraded my instance before I even had my coffee.

                  cthos@mastodon.cthos.devC This user is from outside of this forum
                  cthos@mastodon.cthos.devC This user is from outside of this forum
                  cthos@mastodon.cthos.dev
                  wrote sidst redigeret af
                  #8

                  @Jerry@hear-me.social @jerry@infosec.exchange Same... and now it's time for coffee.

                  1 Reply Last reply
                  0
                  • jerry@infosec.exchangeJ jerry@infosec.exchange

                    If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. The latest patch will help clean up the mess.

                    See here: https://github.com/Chocobozzz/PeerTube/releases/tag/v8.1.8

                    milkytwix@social.tchncs.deM This user is from outside of this forum
                    milkytwix@social.tchncs.deM This user is from outside of this forum
                    milkytwix@social.tchncs.de
                    wrote sidst redigeret af
                    #9

                    @jerry does this affect tchncs @milan ?

                    1 Reply Last reply
                    0
                    • jawnsy@mastodon.socialJ jawnsy@mastodon.social

                      @jerry Impressive release with detections and mitigations in the notes. The team did well responding to it.

                      jgg@qoto.orgJ This user is from outside of this forum
                      jgg@qoto.orgJ This user is from outside of this forum
                      jgg@qoto.org
                      wrote sidst redigeret af
                      #10

                      @jawnsy @jerry

                      At this time and age, an SQL injection vulnerability is a clear proof of sloppiness, unless the vulnerability is in the data access library they are using, of course.

                      There are so many ways to access a database that make impossible that kind of attack that there is no excuse.
                      It is not something weird or complex; even PHP official documentation explains clearly how to avoid them when they explain how to access a DB.

                      Let's hope they have learned their lesson and they change all their DB code according to best practices.

                      We are in 2026, for God's sake.

                      1 Reply Last reply
                      0
                      • jwcph@helvede.netJ jwcph@helvede.net shared this topic
                      Svar
                      • Svar som emne
                      Login for at svare
                      • Ældste til nyeste
                      • Nyeste til ældste
                      • Most Votes


                      • Log ind

                      • Har du ikke en konto? Tilmeld

                      • Login or register to search.
                      Powered by NodeBB Contributors
                      Graciously hosted by data.coop
                      • First post
                        Last post
                      0
                      • Hjem
                      • Seneste
                      • Etiketter
                      • Populære
                      • Verden
                      • Bruger
                      • Grupper