Educause Security Discussion mailing list archives

Re: Compromised version of phpMyAdmin contains backdoor


From: Valdis Kletnieks <Valdis.Kletnieks () VT EDU>
Date: Tue, 25 Sep 2012 21:19:04 -0400

On Tue, 25 Sep 2012 20:56:14 -0000, Chuck Braden said:

If you are running phpMyAdmin, and have recently performed an update, you
might have a compromised version.  In short, any version that was downloaded
from the SourceForge Mirror site - cdnetworks-kr-1

Has anybody established that's the *only* thing pwned on that SourceForge mirror?

Attachment: _bin
Description:


Current thread: