自拍偷在线精品自拍偷,亚洲欧美中文日韩v在线观看不卡

開源CMS框架Drupal社區(qū)官網(wǎng)被黑導(dǎo)致賬戶信息泄露

安全
今天早上打開郵箱收到了來自Drupal官網(wǎng)的聲明以及要求用戶修改密碼的郵件。大體內(nèi)容就是講述官方發(fā)行系統(tǒng)被外界通過在服務(wù)器上的第三方系統(tǒng)的漏洞而非法入侵,而不是社區(qū)網(wǎng)站本身自己的漏洞,用戶的用戶名,郵箱,以及hash過得密碼庫被泄露。

今天早上打開郵箱收到了來自Drupal官網(wǎng)的聲明以及要求用戶修改密碼的郵件。大體內(nèi)容就是講述官方發(fā)行系統(tǒng)被外界通過在服務(wù)器上的第三方系統(tǒng)的漏洞而非法入侵,而不是社區(qū)網(wǎng)站本身自己的漏洞,用戶的用戶名,郵箱,以及hash過得密碼庫被泄露。

郵件全文如下:

Dear community member,

We respect the privacy of your information, which is why, as a precautionary measure, we are writing to let you know about an incident that involves your personal information. The Drupal.org Security and Infrastructure Teams have discovered unauthorized access to account information on Drupal.org and groups.drupal.org. Information exposed includes usernames, email addresses, and country information, as well as hashed passwords. However, we are still investigating the incident and may learn about other types of information compromised, in which case we will notify you accordingly.

This unauthorized access was made via third-party software installed on the Drupal.org server infrastructure, and was not the result of a vulnerability within the Drupal software itself. This notice applies specifically to user account data stored on Drupal.org and groups.drupal.org, and not to sites running Drupal generally.

We have implemented additional security measures designed to prevent the recurrence of such an attack, and to protect the privacy of our community members.

The next time you attempt to log into your account, you will be required to create a new password.

Below are steps you can take to further protect your personal information online. We encourage you to take preventative measures now to help prevent and detect the misuse of your information.

First, we recommend as a precaution that you change or reset passwords on other sites where you may use similar passwords, even though all passwords on Drupal.org are stored salted and hashed. All Drupal.org passwords are both hashed and salted, although some older passwords on groups.drupal.org were not salted.

To make your password stronger:

* Do not use passwords that are simple words or phrases(不要使用弱密碼)

* Never use the same password on multiple sites or services(不要在不同網(wǎng)站使用相同密碼)

* Use different types of characters in your password (uppercase letters, lowercase letters, numbers, and symbols).(密碼中使用不同類型的字符組合)

Second, be cautious if you receive emails asking for your personal information and be on the lookout for unwanted spam. It is not our practice to request personal information by email. Also, beware of emails that threaten to close your account if you do not take the “immediate action” of providing personal information.

責(zé)任編輯:藍(lán)雨淚 來源: FreebuF
相關(guān)推薦

2023-07-06 07:06:25

2022-04-18 11:46:44

銀行系統(tǒng)SSRF漏洞信息泄露

2009-11-24 10:41:59

2010-04-15 12:04:58

2015-06-10 10:35:51

2014-06-20 09:47:59

2015-10-13 10:42:33

2024-01-25 08:11:31

2012-05-09 11:52:37

Twitter信息泄露

2014-05-29 09:13:15

2021-04-15 07:35:23

黑客Clubhouse數(shù)據(jù)泄露

2021-09-23 16:42:12

比特幣黑客數(shù)字貨幣

2012-04-23 09:19:30

2011-09-27 17:06:25

2013-10-09 10:21:21

2016-02-22 17:31:04

2011-10-25 09:12:08

Jease

2011-11-23 09:58:09

2012-05-31 09:50:26

開源CMS

2010-05-18 17:47:28

點贊
收藏

51CTO技術(shù)棧公眾號