Someone at the Webhostingtalk.com forums managed to access other’s users directories via ssh. He was not only able to access the directory, but he was able to access logs, configs, and database passwords. He admits he did not ‘phreak’ or hack anything, simply that Dreamhost’s security, or lack thereof, failed.
Seems the employees there need to stop ‘livin’ it up’ and get to work.
WHT Original Thread
RSS feed for comments on this post · TrackBack URI
Leave a reply