Showing posts with label Red Hat. Show all posts
Showing posts with label Red Hat. Show all posts

Tuesday, 22 September 2015

Red Hat Warns Ceph Hacked Websites


Attackers have managed various websites of Ceph to hack, the free software storage platform developed by Red Hat. It involves ceph.com and download.inktank.com. Both websites are hosted outside the infrastructure of Red Hat.

Via download.inktank.com can Ceph Red Hat for Ubuntu and CentOS are downloaded. Ceph.com offers the upstream packages "for the Ceph community versions. The investigation into the hacking of the websites is ongoing, but as seen Red Hat, there is no code on the compromised websites. Yet the software developer says it can not be excluded that the sites any time or compromised code offered.

For both the software download.inktank.com as ceph.com also be new digital keys used with which the software is signed. Users should only use Ceph software that is signed with these new keys. In addition, managers of CentOS and Ubuntu using Ceph precaution download and install the new software autographed. Red Hat notes that managers of Red Hat Enterprise Linux systems need to take any action.

Wednesday, 13 May 2015

Virtual Floppy Drive Creates Serious Leak In Virtual Machines


Researchers have discovered an eleven year old and serious vulnerability in various virtualization platforms, allowing an attacker to escape from virtual machines. The vulnerability has security Crowd Strike called " Venom got "and is located in the virtual floppy disk controller (FDC) of QEMU. QEMU, which stands for Quick Emulator, is free and open source virtualization software.

The vulnerable code is used by various appliances and virtualization platforms including Xen, KVM and QEMU client. Popular virtualization software such as VMware, Microsoft Hyper-V hypervisor and Bochs is not vulnerable. By using the vulnerability that may escape an attacker out of the virtual machine and then, whether or not to get over the other virtual machines, access to the network. While floppy disks no longer be used, would provide many standard virtualization solutions from a virtual floppy drive.

By attacking the Venom leak can get assailants as Crowd Strike access to intellectual property of companies, as well as sensitive and personally identifiable information. Possibly would be thousands of organizations and millions of users of sensitive virtual machines use risk. The leak would be present in the code since 2004. Yet there are no attacks observed in the wild. To carry out the attack must have an attacker or malware on root or administrator privileges on the host system.

For QEMU Project, Xen Project and Red Hat have now been released security updates. Another solution is to configure the virtual machine hypervisor in a certain way, the impact of the vulnerability can reduce or even prevent altogether. Something Crowd Strike in the advisory explains.