Username: 
Password: 
Restrict session to IP 

Security Breach

Global Rank: 229
Totalscore: 93264
Posts: 1680
Thanks: 1358
UpVotes: 920
Registered: 16y 282d




Last Seen: 16h 13m
The User is Offline
Security Breach
Google/translate7Thank You!4Good Post!0Bad Post! link
Dear challengers,

ogon found out that /etc/.git is world readable on the warchall box.
We use git to track changes to the machine config.

Any warchall user password might be affected by that read. (No time to investigate)

If you re-use your warchall password somewhere else, f.e. on wechall.net, it is a good idea to change it.

Thanks go out to ogon for letting us know!

Happy Challenging!

- gizmore
The geeks shall inherit the properties and methods of object earth.
Global Rank: 180
Totalscore: 111489
Posts: 95
Thanks: 84
UpVotes: 98
Registered: 10y 71d
occasus`s Avatar



Last Seen: 13h 18m
The User is Offline
RE: Security Breach
Google/translate1Thank You!1Good Post!0Bad Post! link
Congratz ogon... and thank you...

Thank you Gizmore, too
Global Rank: 7837
Totalscore: 1165
Posts: 1
Thanks: 1
UpVotes: 1
Registered: 3y 94d
Last Seen: 3y 92d
The User is Offline
RE: Security Breach
Google/translate1Thank You!1Good Post!0Bad Post! link
Is it a good idea to change our password now? Or are you still working on fixing it?
Global Rank: 10425
Totalscore: 435
Posts: 1
Thanks: 1
UpVotes: 1
Registered: 3y 104d
Last Seen: 2y 95d
The User is Offline
RE: Security Breach
Google/translate1Thank You!1Good Post!0Bad Post! link
Congratz ogon! Thanks!!!

Thank you Gizmore!!
Global Rank: 229
Totalscore: 93264
Posts: 1680
Thanks: 1358
UpVotes: 920
Registered: 16y 282d




Last Seen: 16h 13m
The User is Offline
RE: Security Breach
Google/translate0Thank You!0Good Post!0Bad Post! link
Quote from endpoint
Aug 24, 2021 - 04:24:15

Is it a good idea to change our password now? Or are you still working on fixing it?

I had set the /etc/.git permissions to be not world readable anymore.
So you can change your password.
Also note that this only affects your warchall password, not the wechall one.
The geeks shall inherit the properties and methods of object earth.
endpoint, quangntenemy, TheHiveMind, Z, balicocat, Ge0, samuraiblanco, arraez, jcquinterov, hophuocthinh, alfamen2, burhanudinn123, Ben_Dover, stephanduran89, braddie0, SwolloW, dangarbri, csuquvq have subscribed to this thread and receive emails on new posts.
1 people are watching the thread at the moment.
This thread has been viewed 5557 times.