Re: [OpenIndiana-discuss] OpenIndiana Confluence security incident

2019-05-13 Thread Till Wegmüller
As someone who works alsmost daily with Mediawiki as a user. It can prevent anonymous Postings but it is terrible at it and has even more Exploits wirtten against it than Confluence. If possible we try to put it behind http basic auth whenever we can. Also I do not see why a docs site would be

Re: [OpenIndiana-discuss] OpenIndiana Confluence security incident

2019-05-13 Thread Richard L. Hamilton
> On May 13, 2019, at 01:25, Tony Brian Albers wrote: > > On Sat, 2019-05-11 at 07:59 -0500, Gary Mills wrote: >> On Fri, May 10, 2019 at 09:15:34AM +, Alexander Pyhalov via >> openindiana-discuss wrote: >>> >>> Given that actually nobody has cared enough for this infrastructure >>>

Re: [OpenIndiana-discuss] OpenIndiana Confluence security incident

2019-05-12 Thread Tony Brian Albers
On Sat, 2019-05-11 at 07:59 -0500, Gary Mills wrote: > On Fri, May 10, 2019 at 09:15:34AM +, Alexander Pyhalov via > openindiana-discuss wrote: > > > > Given that actually nobody has cared enough for this infrastructure > > server, we suggest the following steps. > > 1) Moving all valuable

Re: [OpenIndiana-discuss] OpenIndiana Confluence security incident

2019-05-11 Thread Gary Mills
On Fri, May 10, 2019 at 09:15:34AM +, Alexander Pyhalov via openindiana-discuss wrote: > > Given that actually nobody has cared enough for this infrastructure > server, we suggest the following steps. > 1) Moving all valuable information from wiki to > https://docs.openindiana.org and >

Re: [OpenIndiana-discuss] OpenIndiana Confluence security incident

2019-05-10 Thread Joshua M. Clulow
On Fri, 10 May 2019 at 09:27, Tim Mooney wrote: > > Our infrastructure was too long without attention. As a result, > > confluence was compromised. Confluence runs on > > w01.openindiana.everycity.co.uk, together with main site and > > exim/mailman. > > Thanks for the info, and for the cleanup

Re: [OpenIndiana-discuss] OpenIndiana Confluence security incident

2019-05-10 Thread Tim Mooney
In regard to: [OpenIndiana-discuss] OpenIndiana Confluence security...: Our infrastructure was too long without attention. As a result, confluence was compromised. Confluence runs on w01.openindiana.everycity.co.uk, together with main site and exim/mailman. Thanks for the info, and for the

[OpenIndiana-discuss] OpenIndiana Confluence security incident

2019-05-10 Thread Alexander Pyhalov via openindiana-discuss
Hi. Our infrastructure was too long without attention. As a result, confluence was compromised. Confluence runs on w01.openindiana.everycity.co.uk, together with main site and exim/mailman. 1) We know, confluence was compromised (expected date of infection - Apr 17). The malware was detected