Package: ftpbackup
Version: 0.3-1
Severity: critical

ftpbackup is sending a non-encrypted copy of most sensitive files of a system,
including all what's in /etc and /home, and all of the MySQL database over
an FTP link, and to potentially non-trusted 3rd party FTP areas. Its author
even claims that it is the right fit for sending it over the FTP space of
French ISPs. It certainly is not the case.

Please don't allow this software to migrate to Testing until this issue is
addressed correctly. Also, some kind of upper case huge warning should at
least have been added to the long description, but it hasn't been done, which
may lead to miss-use by unexperienced users.

Reply via email to