-
Notifications
You must be signed in to change notification settings - Fork 897
Description
caught this post elsewhere.
Our AV researchers have analyzed the following link that was cloud-submitted as suspect:
https://gist.github.com/anonymous/e48209b03f1dd9625a992717e7b89c4f
The document is from an unknown author and describes "non-cryptanalytic attacks against FreeBSD update components." The affected components are the portsnap and freebsd-update tools, both directly and indirectly.
From what we can tell, the text file is part of a larger stash of documents, all with the same attack-defense style. We have other documents, dated 2014 and 2015, detailing attacks against the update systems of multiple Linux distributions and the corresponding defenses against "the adversary."
We believe this to be the work of an MITM-capable advanced threat actor.
Full details of our findings will be released in the coming weeks. This is a courtesy heads-up to FreeBSD users.