Ubuntu Forum intrusion, user data leakage
Ubuntu Forums, the official forum of Ubuntu, was intruded by attackers, and more than 2 million user data, such as IP addresses, user names, and email addresses, were stolen. Canonical, responsible for Ubuntu development, explained the incident through an official blog: At UTC on January 1, July 14, it was notified that someone had obtained a copy of the Forum database. A preliminary investigation confirmed that the data was leaked, therefore, the Forum is immediately closed as a precaution. Further investigation found that the Forumrunner plug-in used by the Forum had a known SQL injection vulnerability and was not patched in time. Attackers can exploit this vulnerability to Download user-related databases, excluding passwords. The Forum uses Ubuntu Single Sign-on. The password field stored in the database is a random string.