The developers of the MidnightBSD project, which is developing a desktop-oriented operating system based on FreeBSD with elements ported from DragonFly BSD, OpenBSD, and NetBSD, have warned users about the detection of traces of a hack on one of their servers. The breach occurred due to the exploitation of a vulnerability, CVE-2021-26084, which was discovered at the end of August in the proprietary collaboration engine Confluence (the company Atlassian had been offering free use of this product for non-commercial and open projects).
The server also hosted the project's database and stored files, which were used, among other things, for intermediate storage of new package versions before publication on the primary FTP server. According to preliminary data, the main package repository and the available downloadable ISO images have not been compromised.
It appears that the attack was not targeted, and the MidnightBSD project became one of the victims of mass hacks. servers affecting vulnerable versions of Confluence, after which malware aimed at cryptocurrency mining was installed. Currently, the software of the hacked system has been reinstalled from scratch and 90% of the services that were disabled after the hack have been restored. The release of MidnightBSD 2.1 has been postponed. server The Revolt project is developing an open alternative to the Discord platform.
Source: opennet.ru
