LWN.net Logo

Nastier attack

Nastier attack

Posted Jul 15, 2008 4:46 UTC (Tue) by dvdeug (subscriber, #10998)
In reply to: Nastier attack by rgmoore
Parent article: Study: Attacks on package managers

Why is this a nasty attack? Compare to:

1. Portscan a lot of computers; save the results
2. When there's a security update, hit the computers running that program

It doesn't require you to have a mirror (and hence a large traceable presence) and hits all
targets, not just one distro. It's less targetted, but how often has that been a problem in
Internet attacks?


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds