<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" 
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:wfw="http://wellformedweb.org/CommentAPI/"
     xmlns:dc="http://purl.org/dc/elements/1.1/"
     xmlns:meneame="http://meneame.net/faq-es.php"
 >
<channel>
	<title>Menéame: comentarios [751089]</title>
	<link>http://www.meneame.net</link>
	<image><title>www.meneame.net</title><link>http://www.meneame.net</link><url>http://cdn.mnmstatic.net/img/mnm/eli-rss.png</url></image>
	<description>Sitio colaborativo de publicación y comunicación entre blogs</description>
	<pubDate>Mon, 31 Aug 2009 09:33:35 +0000</pubDate>
	<generator>http://blog.meneame.net/</generator>
	<language>es</language>
	<item>
		<meneame:comment_id>4790893</meneame:comment_id>
		<meneame:link_id>751089</meneame:link_id>
		<meneame:order>11</meneame:order>
		<meneame:user>equisdx</meneame:user>
		<meneame:votes>0</meneame:votes>
		<meneame:karma>12</meneame:karma>
		<meneame:url>https://www.meneame.net/story/apache.org-owned</meneame:url>
		<title>#11 Apache.org Owned !</title>
		<link>https://www.meneame.net/story/apache.org-owned/c011#c-11</link>
		<pubDate>Mon, 31 Aug 2009 09:33:35 +0000</pubDate>
		<dc:creator>equisdx</dc:creator>
		<guid>https://www.meneame.net/story/apache.org-owned/c011#c-11</guid>
		<description><![CDATA[<p>Resumen de la historia en español: <a href="http://www.hispasec.com/unaaldia/3962" title="www.hispasec.com/unaaldia/3962" rel="nofollow">www.hispasec.com/unaaldia/3962</a></p><p>&#187;&nbsp;autor: <strong>equisdx</strong></p>]]></description>
	</item>

	<item>
		<meneame:comment_id>4779686</meneame:comment_id>
		<meneame:link_id>751089</meneame:link_id>
		<meneame:order>10</meneame:order>
		<meneame:user>divad</meneame:user>
		<meneame:votes>0</meneame:votes>
		<meneame:karma>8</meneame:karma>
		<meneame:url>https://www.meneame.net/story/apache.org-owned</meneame:url>
		<title>#10 Apache.org Owned !</title>
		<link>https://www.meneame.net/story/apache.org-owned/c010#c-10</link>
		<pubDate>Fri, 28 Aug 2009 22:04:58 +0000</pubDate>
		<dc:creator>divad</dc:creator>
		<guid>https://www.meneame.net/story/apache.org-owned/c010#c-10</guid>
		<description><![CDATA[<p>Descripción detallada del ataque y las medidas que se tomaron:<br />
<br />
<a href="https://blogs.apache.org/infra/entry/apache_org_downtime_initial_report" title="blogs.apache.org/infra/entry/apache_org_downtime_initial_report" rel="nofollow">blogs.apache.org/infra/entry/apache_org_downtime_initial_report</a></p><p>&#187;&nbsp;autor: <strong>divad</strong></p>]]></description>
	</item>

	<item>
		<meneame:comment_id>4776054</meneame:comment_id>
		<meneame:link_id>751089</meneame:link_id>
		<meneame:order>9</meneame:order>
		<meneame:user>ValaV</meneame:user>
		<meneame:votes>0</meneame:votes>
		<meneame:karma>8</meneame:karma>
		<meneame:url>https://www.meneame.net/story/apache.org-owned</meneame:url>
		<title>#9 Apache.org Owned !</title>
		<link>https://www.meneame.net/story/apache.org-owned/c09#c-9</link>
		<pubDate>Fri, 28 Aug 2009 11:42:25 +0000</pubDate>
		<dc:creator>ValaV</dc:creator>
		<guid>https://www.meneame.net/story/apache.org-owned/c09#c-9</guid>
		<description><![CDATA[<p><a class="tooltip c:751089-8" href="https://www.meneame.net/story/apache.org-owned/c08#c-8" rel="nofollow">#8</a> ¿Apostamos?</p><p>&#187;&nbsp;autor: <strong>ValaV</strong></p>]]></description>
	</item>

	<item>
		<meneame:comment_id>4775956</meneame:comment_id>
		<meneame:link_id>751089</meneame:link_id>
		<meneame:order>8</meneame:order>
		<meneame:user>somebody</meneame:user>
		<meneame:votes>0</meneame:votes>
		<meneame:karma>6</meneame:karma>
		<meneame:url>https://www.meneame.net/story/apache.org-owned</meneame:url>
		<title>#8 Apache.org Owned !</title>
		<link>https://www.meneame.net/story/apache.org-owned/c08#c-8</link>
		<pubDate>Fri, 28 Aug 2009 11:32:47 +0000</pubDate>
		<dc:creator>somebody</dc:creator>
		<guid>https://www.meneame.net/story/apache.org-owned/c08#c-8</guid>
		<description><![CDATA[<p>Que este comprometida la clave SSH no significa que fuera una clave SSH vulnerable como las de Debian/Ubuntu etc, podría ser una clave robada de algun administrador, por ejemplo...</p><p>&#187;&nbsp;autor: <strong>somebody</strong></p>]]></description>
	</item>

	<item>
		<meneame:comment_id>4775910</meneame:comment_id>
		<meneame:link_id>751089</meneame:link_id>
		<meneame:order>7</meneame:order>
		<meneame:user>albandy</meneame:user>
		<meneame:votes>0</meneame:votes>
		<meneame:karma>11</meneame:karma>
		<meneame:url>https://www.meneame.net/story/apache.org-owned</meneame:url>
		<title>#7 Apache.org Owned !</title>
		<link>https://www.meneame.net/story/apache.org-owned/c07#c-7</link>
		<pubDate>Fri, 28 Aug 2009 11:27:34 +0000</pubDate>
		<dc:creator>albandy</dc:creator>
		<guid>https://www.meneame.net/story/apache.org-owned/c07#c-7</guid>
		<description><![CDATA[<p><a class="tooltip c:751089-6" href="https://www.meneame.net/story/apache.org-owned/c06#c-6" rel="nofollow">#6</a> Pues eso no tiene excusa de ningún tipo, me parece que al admin se le va a caer el pelo.</p><p>&#187;&nbsp;autor: <strong>albandy</strong></p>]]></description>
	</item>

	<item>
		<meneame:comment_id>4775809</meneame:comment_id>
		<meneame:link_id>751089</meneame:link_id>
		<meneame:order>6</meneame:order>
		<meneame:user>ValaV</meneame:user>
		<meneame:votes>0</meneame:votes>
		<meneame:karma>8</meneame:karma>
		<meneame:url>https://www.meneame.net/story/apache.org-owned</meneame:url>
		<title>#6 Apache.org Owned !</title>
		<link>https://www.meneame.net/story/apache.org-owned/c06#c-6</link>
		<pubDate>Fri, 28 Aug 2009 11:16:59 +0000</pubDate>
		<dc:creator>ValaV</dc:creator>
		<guid>https://www.meneame.net/story/apache.org-owned/c06#c-6</guid>
		<description><![CDATA[<p><a class="tooltip c:751089-5" href="https://www.meneame.net/story/apache.org-owned/c05#c-5" rel="nofollow">#5</a> Nop, Bugg en OPENSSH de hace ~~un par de años descubieto por Luciano Bello, por el cual solo se generaban 65k (numero de memoria) claves distintas para ssh, <strong>algo que se solucionaba facilmente actualizando ese paquete</strong>.</p><p>&#187;&nbsp;autor: <strong>ValaV</strong></p>]]></description>
	</item>

	<item>
		<meneame:comment_id>4775718</meneame:comment_id>
		<meneame:link_id>751089</meneame:link_id>
		<meneame:order>5</meneame:order>
		<meneame:user>albandy</meneame:user>
		<meneame:votes>0</meneame:votes>
		<meneame:karma>11</meneame:karma>
		<meneame:url>https://www.meneame.net/story/apache.org-owned</meneame:url>
		<title>#5 Apache.org Owned !</title>
		<link>https://www.meneame.net/story/apache.org-owned/c05#c-5</link>
		<pubDate>Fri, 28 Aug 2009 11:06:59 +0000</pubDate>
		<dc:creator>albandy</dc:creator>
		<guid>https://www.meneame.net/story/apache.org-owned/c05#c-5</guid>
		<description><![CDATA[<p>Entonces deduzco (no se si erróneamente) que alguien tenía en su equipo las claves rsa/dsa sin cifrar y son esas las que han conseguido.</p><p>&#187;&nbsp;autor: <strong>albandy</strong></p>]]></description>
	</item>

	<item>
		<meneame:comment_id>4775693</meneame:comment_id>
		<meneame:link_id>751089</meneame:link_id>
		<meneame:order>4</meneame:order>
		<meneame:user>txalin</meneame:user>
		<meneame:votes>0</meneame:votes>
		<meneame:karma>9</meneame:karma>
		<meneame:url>https://www.meneame.net/story/apache.org-owned</meneame:url>
		<title>#4 Apache.org Owned !</title>
		<link>https://www.meneame.net/story/apache.org-owned/c04#c-4</link>
		<pubDate>Fri, 28 Aug 2009 11:04:37 +0000</pubDate>
		<dc:creator>txalin</dc:creator>
		<guid>https://www.meneame.net/story/apache.org-owned/c04#c-4</guid>
		<description><![CDATA[<p>Alguien no ha actualizado su openssh <img data-src="https://cdn.mnmstatic.net/v_149/img/menemojis/36/roll.gif" alt=":roll:" title=":roll:" width="18" height="18" src="https://cdn.mnmstatic.net/v_149/img/g.gif" class="emoji lazy" /></p><p>&#187;&nbsp;autor: <strong>txalin</strong></p>]]></description>
	</item>

	<item>
		<meneame:comment_id>4775630</meneame:comment_id>
		<meneame:link_id>751089</meneame:link_id>
		<meneame:order>3</meneame:order>
		<meneame:user>waskan</meneame:user>
		<meneame:votes>1</meneame:votes>
		<meneame:karma>13</meneame:karma>
		<meneame:url>https://www.meneame.net/story/apache.org-owned</meneame:url>
		<title>#3 Apache.org Owned !</title>
		<link>https://www.meneame.net/story/apache.org-owned/c03#c-3</link>
		<pubDate>Fri, 28 Aug 2009 10:57:20 +0000</pubDate>
		<dc:creator>waskan</dc:creator>
		<guid>https://www.meneame.net/story/apache.org-owned/c03#c-3</guid>
		<description><![CDATA[<p>10:42am UTC: Compromise was due to a compromised SSH Key, not due to any software<br />
exploits in Apache itself.<br />
<br />
More details soon.<br />
<br />
Esperemos que solo sea eso...</p><p>&#187;&nbsp;autor: <strong>waskan</strong></p>]]></description>
	</item>

	<item>
		<meneame:comment_id>4775546</meneame:comment_id>
		<meneame:link_id>751089</meneame:link_id>
		<meneame:order>2</meneame:order>
		<meneame:user>ValaV</meneame:user>
		<meneame:votes>0</meneame:votes>
		<meneame:karma>8</meneame:karma>
		<meneame:url>https://www.meneame.net/story/apache.org-owned</meneame:url>
		<title>#2 Apache.org Owned !</title>
		<link>https://www.meneame.net/story/apache.org-owned/c02#c-2</link>
		<pubDate>Fri, 28 Aug 2009 10:47:03 +0000</pubDate>
		<dc:creator>ValaV</dc:creator>
		<guid>https://www.meneame.net/story/apache.org-owned/c02#c-2</guid>
		<description><![CDATA[<p>INCREIBLE!!!! Aun a  vueltas con las claves SSH!</p><p>&#187;&nbsp;autor: <strong>ValaV</strong></p>]]></description>
	</item>

	<item>
		<meneame:comment_id>4775531</meneame:comment_id>
		<meneame:link_id>751089</meneame:link_id>
		<meneame:order>1</meneame:order>
		<meneame:user>albandy</meneame:user>
		<meneame:votes>0</meneame:votes>
		<meneame:karma>11</meneame:karma>
		<meneame:url>https://www.meneame.net/story/apache.org-owned</meneame:url>
		<title>#1 Apache.org Owned !</title>
		<link>https://www.meneame.net/story/apache.org-owned/c01#c-1</link>
		<pubDate>Fri, 28 Aug 2009 10:45:19 +0000</pubDate>
		<dc:creator>albandy</dc:creator>
		<guid>https://www.meneame.net/story/apache.org-owned/c01#c-1</guid>
		<description><![CDATA[<p>Sinceramente, digno de admirar el mensaje que han dejado los de apache, a saber cuantos sitios pueden haber sido hackeados (ya sean de software libre o software privativo) y no han dicho ni mu.<br />
<br />
He llegado a pensar que se estaban aprovechando de la vulnerabilidad recién descubierta para atacar con el slowloris y provocar un DOS, esperemos que solo sea eso y los contenidos de apache continúen intactos.</p><p>&#187;&nbsp;autor: <strong>albandy</strong></p>]]></description>
	</item>

</channel>
</rss>
