ITPRO

Printed from www.itpro.co.uk

Register to receive our regular email newsletter at http://www.itpro.co.uk/reg/register.

The newsletter contains links to our latest IT news, product reviews, features and how-to guides, plus special offers and competitions.

Skip to navigation

    Apache web server hit by hack attack

The website of the popular open source web server has been hit by hackers.

By Asavin Wattanajantra, 1 Sep 2009 at 11:31

Apache has confirmed it was hit using a compromised SSH key to access one of its servers, which forced the shutdown of its website and most apache.org services.

The attack forced Apache, which at the last count accounted for nearly 50 per cent of all web servers, to shut down all machines involved as a precautionary measure.

After an initial investigation, it decided the best course of action was to change the DNS for most of its apache.org services to a machine that wasn’t affected.

Further investigation revealed that the European fallover and backup machine, aurora.apache.org, was not affected. Although some rogue files had been copied over, none had been executed.

This allowed Apache to restore its websites to the version present before accounts could have been compromised.

Most user facing websites and services are now available, although Apache stated that some machines remained offline.

“To the best of our knowledge, no end users were affected by this incident, and the attackers were not able to escalate their privileges on any machines,” said the Apache infrastructure team in a blog post.

It added: “While we have no evidence that downloads were affected, uses are always advised to check digital signatures when provided.”

Email to a friend

Print this page

< Previous   Web Servers : News Next >

Be the first to comment on this article

You need to Login or Register to comment.

    You may also like...

 Sponsored Links

advertisement

    You may also like...

    Latest Web Servers Analysis & Insight

AWS instance starting

Amazon EC2’s Windows Server free version

Setting up a Windows server on Amazon's AWS is well within the reach of most IT pros, and it can even be free, Steve Cassidy discovers.

Read more

 

    Latest Web Servers Reviews

DeviceLock 7 review

Rating: 5

Accidental or deliberate data leakage is now a major security headache for businesses. Dave Mitchell takes a look at DeviceLock 7 to see if it plugs those holes that others leave behind.

Read more

 
advertisement

    Register for IT PRO

You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.

Sponsored Links
Advertisement