<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised.]]></title><description><![CDATA[<p>If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised.  The latest patch will help clean up the mess.</p><p>See here: <a href="https://github.com/Chocobozzz/PeerTube/releases/tag/v8.1.8" rel="nofollow noopener"><span>https://</span><span>github.com/Chocobozzz/PeerTube</span><span>/releases/tag/v8.1.8</span></a></p>]]></description><link>https://forum.fedi.dk/topic/7abf96f1-db19-4c77-a499-d6df5d6b0761/if-you-run-a-peertube-instance-and-have-not-patched-in-the-past-4-hours-you-are-way-behind-and-likely-have-been-compromised.</link><generator>RSS for Node</generator><lastBuildDate>Mon, 25 May 2026 12:56:12 GMT</lastBuildDate><atom:link href="https://forum.fedi.dk/topic/7abf96f1-db19-4c77-a499-d6df5d6b0761.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 23 May 2026 13:23:05 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. on Sat, 23 May 2026 22:15:46 GMT]]></title><description><![CDATA[<p><span><a href="/user/jawnsy%40mastodon.social">@<span>jawnsy</span></a></span> <span><a href="/user/jerry%40infosec.exchange">@<span>jerry</span></a></span> </p><p>At this time and age, an SQL injection vulnerability is a clear proof of sloppiness, unless the vulnerability is in the data access library they are using, of course.</p><p>There are so many ways to access a database that make impossible that kind of attack that there is no excuse. <br />It is not something weird or complex; even PHP official documentation explains clearly how to avoid them when they explain how to access a DB.</p><p>Let's hope they have learned their lesson and they change all their DB code according to best practices. </p><p>We are in 2026, for God's sake.</p>]]></description><link>https://forum.fedi.dk/post/https://qoto.org/users/jgg/statuses/116626197465684543</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://qoto.org/users/jgg/statuses/116626197465684543</guid><dc:creator><![CDATA[jgg@qoto.org]]></dc:creator><pubDate>Sat, 23 May 2026 22:15:46 GMT</pubDate></item><item><title><![CDATA[Reply to If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. on Sat, 23 May 2026 20:05:00 GMT]]></title><description><![CDATA[<p><span><a href="/user/jerry%40infosec.exchange">@<span>jerry</span></a></span> does this affect tchncs <span><a href="https://social.tchncs.de/@milan">@<span>milan</span></a></span> ?</p>]]></description><link>https://forum.fedi.dk/post/https://social.tchncs.de/users/milkytwix/statuses/116625683289171024</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://social.tchncs.de/users/milkytwix/statuses/116625683289171024</guid><dc:creator><![CDATA[milkytwix@social.tchncs.de]]></dc:creator><pubDate>Sat, 23 May 2026 20:05:00 GMT</pubDate></item><item><title><![CDATA[Reply to If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. on Sat, 23 May 2026 16:23:15 GMT]]></title><description><![CDATA[<p><span><a href="/user/jerry%40hear-me.social">@<span>Jerry@hear-me.social</span></a></span> <span><a href="/user/jerry%40infosec.exchange">@<span>jerry@infosec.exchange</span></a></span> Same... and now it's time for coffee.</p>]]></description><link>https://forum.fedi.dk/post/https://mastodon.cthos.dev/users/cthos/statuses/116624811315718238</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mastodon.cthos.dev/users/cthos/statuses/116624811315718238</guid><dc:creator><![CDATA[cthos@mastodon.cthos.dev]]></dc:creator><pubDate>Sat, 23 May 2026 16:23:15 GMT</pubDate></item><item><title><![CDATA[Reply to If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. on Sat, 23 May 2026 16:01:59 GMT]]></title><description><![CDATA[<p><span><a href="/user/jerry%40infosec.exchange">@<span>jerry</span></a></span> <span><a href="/user/lety%40doesstuff.social">@<span>lety</span></a></span></p>]]></description><link>https://forum.fedi.dk/post/https://mastodon.online/users/tunafishtiger/statuses/116624727733612091</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mastodon.online/users/tunafishtiger/statuses/116624727733612091</guid><dc:creator><![CDATA[tunafishtiger@mastodon.online]]></dc:creator><pubDate>Sat, 23 May 2026 16:01:59 GMT</pubDate></item><item><title><![CDATA[Reply to If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. on Sat, 23 May 2026 15:32:09 GMT]]></title><description><![CDATA[<p><span><a href="/user/jerry%40infosec.exchange">@<span>jerry</span></a></span> I wonder if someone can design a SQL injection to update instances, for the users who are having trouble contacting their instance maintainers</p>]]></description><link>https://forum.fedi.dk/post/https://mastodon.mit.edu/users/almonds/statuses/116624610392620887</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mastodon.mit.edu/users/almonds/statuses/116624610392620887</guid><dc:creator><![CDATA[almonds@mastodon.mit.edu]]></dc:creator><pubDate>Sat, 23 May 2026 15:32:09 GMT</pubDate></item><item><title><![CDATA[Reply to If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. on Sat, 23 May 2026 14:17:25 GMT]]></title><description><![CDATA[<p><span><a href="/user/jerry%40infosec.exchange">@<span>jerry</span></a></span> If you've been compromised, will a patch really clean things up? I thought the general wisdom was that you should nuke the site from orbit and perform a clean OS install + restore from backups?</p>]]></description><link>https://forum.fedi.dk/post/https://ohai.social/users/aspragg/statuses/116624316527496151</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://ohai.social/users/aspragg/statuses/116624316527496151</guid><dc:creator><![CDATA[aspragg@ohai.social]]></dc:creator><pubDate>Sat, 23 May 2026 14:17:25 GMT</pubDate></item><item><title><![CDATA[Reply to If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. on Sat, 23 May 2026 14:15:03 GMT]]></title><description><![CDATA[<p><span><a href="/user/jerry%40infosec.exchange">@<span>jerry</span></a></span> Impressive release with detections and mitigations in the notes. The team did well responding to it.</p>]]></description><link>https://forum.fedi.dk/post/https://mastodon.social/users/jawnsy/statuses/116624307198800861</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://mastodon.social/users/jawnsy/statuses/116624307198800861</guid><dc:creator><![CDATA[jawnsy@mastodon.social]]></dc:creator><pubDate>Sat, 23 May 2026 14:15:03 GMT</pubDate></item><item><title><![CDATA[Reply to If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. on Sat, 23 May 2026 13:55:27 GMT]]></title><description><![CDATA[<p><span><a href="/user/jerry%40infosec.exchange">@<span>jerry@infosec.exchange</span></a></span> It was quite a thing to wake up to this morning. I upgraded my instance before I even had my coffee.</p>]]></description><link>https://forum.fedi.dk/post/https://hear-me.social/users/Jerry/statuses/116624230136516043</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://hear-me.social/users/Jerry/statuses/116624230136516043</guid><dc:creator><![CDATA[jerry@hear-me.social]]></dc:creator><pubDate>Sat, 23 May 2026 13:55:27 GMT</pubDate></item><item><title><![CDATA[Reply to If you run a peertube instance and have not patched in the past 4 hours, you are way behind and likely have been compromised. on Sat, 23 May 2026 13:34:15 GMT]]></title><description><![CDATA[<p>Also, hat tip to the peertube developers for being so responsive.</p>]]></description><link>https://forum.fedi.dk/post/https://infosec.exchange/users/jerry/statuses/116624146820380670</link><guid isPermaLink="true">https://forum.fedi.dk/post/https://infosec.exchange/users/jerry/statuses/116624146820380670</guid><dc:creator><![CDATA[jerry@infosec.exchange]]></dc:creator><pubDate>Sat, 23 May 2026 13:34:15 GMT</pubDate></item></channel></rss>