class=”article first_main_article” readability=”39″>

A few days ago we had to Chakra around here with the launch of its latest version. Today we return to the distro more ‘kdeera’ the picture for a very different matter: Community repository has been hacked .

ccr community repo chakra plasmoid icon by malcer d531xhf1 hacked the Chakra Community Repository

news found in The Chakra Bay, a new Spanish-language blog dedicated to covering news about Chakra that I recommend to all users of the distro. By all accounts, one called “Troll” has infiltrated the CCR (the Chakra Community Repository, as the Arch Linux AUR) and is dedicated to packages and delete user accounts .

seems that site administrators have managed to block the attacker, but the repository is unusable at the moment, in read-only mode, while troubleshooting some vulnerabilities in code . When ready will turn up any missing packages and will start a campaign to adopt packages that have no maintainer.

not the first time something like this happens, I’m sure you remember the security breach that affected sites or kernel.org Linux Foundation, but unlike those this time there have been only vandalism , which is something, but not the worst thing that could have happened. I wonder what might have no interest in doing something like this …

Powered By WizardRSS.com | Full Text RSS Feed | Amazon WordPress Plugin | Android Forums | WordPress Tutorials

class=”article first_main_article” readability=”34″>Surely

you have ever heard or read about OpenVPN , a connectivity solution for virtual private networks based entirely on Open Source.

 openvpn OpenVPN 500x379 the web, hacked

However, as shown in MuyComputerPRO, the website of the California-based company responsible for this connectivity solution for virtual private networks has been hacked .

The site has been restored but is not known whether the attackers have gained access to information stored in databases. You have all the news data in the original article in MuyComputerPRO , including the capture of the web as it was after the attack.

No related posts.

Powered By WizardRSS.com | Full Text RSS Feed | WordPress Amazon Plugin | Android Forums | WordPress Tutorials

new chrome icon1 300x300 Chrome browser was the first hacked at Pwn2Own 2012 Chrome was one of the few browsers that came unharmed during the Pwn2Own 2011 edition of the competition that brings together hackers worldwide to undermine the security of browsers and mobile devices. For this reason this year the experts put all the emphasis on software and managed to hack Google .

The team for violating the security of Chrome was Vupen Security, the same as Safari hacked at Pwn2Own 2011. What is really unique is that specialists last year and had exploited vulnerabilities in the browser but the Californian firm Google did not recognize his work.

plan to hack Chrome at Pwn2Own 2012 was developed for six weeks, depending Vupen experts explained. Anyway hackers assessed the level of protection much Google , the browser developed at Mountain View is considered one of the most reliable today.


The sandbox Chrome is one of the safest exists. Not an easy task to create a threat that is capable of evading all the protections of the browser. I can say that Chrome is one of the safest browsers available. This only shows that any browser or software can be hacked if you have sufficient motivation and ability.

Vupen words co-founder, Chaoki Bekrar are more than clear. Hopefully the work of experts now it is taken into account by Google to fix security flaws that may affect users. Chrome is a browser constantly updating and certainly the gaps will be closed soon.

Road | The Verge | ZDNet.

new chrome icon1 300x300 Chrome browser was the first hacked at Pwn2Own 2012 Chrome was one of the few browsers that came unharmed during the Pwn2Own 2011 edition of the competition that brings together hackers worldwide to undermine the security of browsers and mobile devices. For this reason this year the experts put all the emphasis on software and managed to hack Google .

The team for violating the security of Chrome was Vupen Security, the same as Safari hacked at Pwn2Own 2011. What is really unique is that specialists last year and had exploited vulnerabilities in the browser but the Californian firm Google did not recognize his work.

plan to hack Chrome at Pwn2Own 2012 was developed for six weeks, depending Vupen experts explained. Anyway hackers assessed the level of protection much Google , the browser developed at Mountain View is considered one of the most reliable today.


The sandbox Chrome is one of the safest exists. Not an easy task to create a threat that is capable of evading all the protections of the browser. I can say that Chrome is one of the safest browsers available. This only shows that any browser software can be hacked or if there is sufficient motivation and ability.

Vupen words co-founder, Chaoki Bekrar are more than clear. Hopefully the work of experts now it is taken into account by Google to fix security flaws that may affect users. Chrome is a browser constantly updating and certainly the gaps will be closed soon.

Road | The Verge | ZDNet.

class=”article first_main_article” readability=”36″>

MuySeguridad our colleagues say, GitHub, one of the world’s largest repositories of open source software and commercial on the web, was hacked by the developer Egor Homakov, angry by not resolve a vulnerability that it had reported .

 500x312 github1 hacked GitHub, Ruby on Rails vulnerability

Egor

Homakov, developer and hacker, a number of vulnerabilities discovered in Ruby on Rails, the framework used by GitHub – that left exposed applications hosted on the repository that could be exploited by an attacker .

Homakov reported vulnerabilities to those responsible for Ruby on Rails and also on GitHub. As the first have responded that the fault was not in its software and the latter said work to fix the vulnerability .

You have all the details about the event in the original story, in MuySeguridad .

Powered By WizardRSS.com | Full Text RSS Feed | Amazon Script | Android Forums | WordPress Tutorials

 dictate 8 months in prison for the young man who hacked Facebook

Glenn Mangham is a young British student specializes in developing software that broke several times in the Facebook servers during 2011. The hacker was arrested in July last year and charged with five counts of hacking in August, why will spend the next eight months in prison .

The judgment defined by Judge Alistair McCreath marks the end to an investigation conducted jointly by Facebook, FBI and Scotland Yard. Note that the first case of its kind in the UK. “You and others who are tempted to act like you did need to understand how serious this” , the magistrate said the defendant of 26 years.

Let’s recap a little bit for those familiar with the subject. Between April 27 and May 9, 2011 Glenn Mangham for multiple servers hacked Facebook. Once arrested the young man pleaded guilty but said his actions were designed to help social network to improve security conditions .

From the site created by Mark Zuckerberg said data that users never have been compromised during eruptions, but not seriously downplayed the issue. According to Judge McCreath, Facebook spent more than $ 200,000 to fix the security holes exploited by Mangham.

In the last few years have seen many cases of hackers hired by large companies to fix security flaws violated themselves. Evidently the young Brit would follow suit and WIN did not go as expected .

Track | Reuters | Venture Beat.

For many (and I include myself in that group) e-mail Hotmail is no longer a must . Much of which we account for the Windows Live service we use only the Messenger, but it never hurts to look at the news which gives us the popular e-mail platform from Microsoft.

developers of the service recently added a very interesting and can be very useful at this time full of hacks. From now on users can flag messages under “My friend was hacked!” , if they appear suspicious emails of people from their contact lists.

This new feature will be available on the menu “Enter As …” under the options Unread, Read, Dial , unmarked and mail spoofing. At the moment the interesting option is only available to Americans, but over the hours (may take a couple of days) will enable worldwide .

The truth is a very interesting option for administrators to investigate Hotmail will allow easier any incident occurring in the service. It’s clearly a very good support for the report of identity theft.

We can not say that the new feature of Windows Live email is revolutionary, but it can position itself as an interesting tool to avoid scams or attacks of any kind .

At other times we talked on the site about this new “fashion” of hacks against certain Web services corporations or organizations. Usually Twitter accounts are the first fall into the hands of hackers, and when the white notes are the perpetrators take advantage of media to disseminate false news.

That’s what happened the other hours of Fox News Politics has the bird’s social network, which was breached by a hacker group calling itself “Scriptkiddies.” Hackers broke into Twitter and WIN “killed” Barack Obama , the current president of the United States. And all this under the July 4, the most important national holiday for Americans.

The timeline of Twitter with all the messages involving the death of Obama

Perpetrators reported that the president had bled to death in a restaurant in Iowa after receiving two shots (one in the neck and another in the pelvic area). Initially, the news spread fast in Twitter but when users saw no other means referred to Obama’s death began to denounce the intrusion.

By the time Fox News has made no statements about it and Fox News Politics has showed no new posts in the last six hours. The last message sent by hackers was dedicated to Joe Biden , who currently serves as Vice President Obama: “We wish Joe Biden the best of luck as our new President. In these crazy times there is still light at the end of the tunnel, “read the tweet.

The release of the official site SEGA Pass

It seems like a never ending story, because every week we find the same news. The information related to hacking of large corporations have become a constant in our daily walk information, and this time the unfortunate distinction of being the victim for SEGA .

The community online SEGA Pass was violated by computer criminals on Thursday, but only in recent times known the true extent of the attack. According to official figures have committed 1.29 million user accounts with its corresponding registration data.

usernames, real names, birth dates, passwords and email addresses were stolen from portal servers belonging to the Japanese. The only information that is saved from hack were the numbers that belong to a credit or debit cards indexed in the accounts.

This is due to SEGA not store payment data but using a third party to do so. However, since the corporation recommend putting an eye on the bank and change all passwords of web services that could engage in this intrusion.

The company announced that SEGA Pass will remain offline indefinite (so far the community continues to fall), and so far no details are known about those responsible for the violation. Before any new reports to it.

Endless Nightmare: Sony hacked services

There is no doubt that in 2011 will be remembered as a year of Sony terror , and surely the company executives are praying that the months pass quickly and finished the ordeal in which they are immersed. This time we have a new computer attack that targeted two of the many services of the firm Asian .

A group of cyber criminals belonging to the group Lulz Security announced the intrusion into the servers of Sony Pictures and Sony BMG , and the corresponding data theft belonging to workers and users of both sites. In total, would have exposed sensitive information a million people .

As the perpetrators are in their power email, passwords, birth dates, addresses and other information stored on sites that were committed . And Sony should be begging the heavens for a few weeks of peace.

managers compromise the security of the servers are not novices. In recent times, for example, have achieved much relevance for the attack to different web pages and services from two major television networks in the United States: PBS and Fox Broadcasting .

Through a statement Lulz Security managers began to distribute a portion of the database stolen and invited supporters to donate funds and the group can remain operational . With respect to Sony Pictures and Sony BMG, its sites are already operational but makes no reference to attacks .

Track | Wired.