>We'll really just have to wait until they disclose what happened. If this turns out to be a
security issue, I don't think anyone will ever trust them again (given the lack of
disclosure). OTOH, it could just be failed hardware. Hard to tell without some actual
information.
"Please don't update" with failed hardware? No, if the hardware failed they'd just let it go
("server is busted, please use a mirror"). This smells much like the Debian intrusion in July
2006.