If you downloaded Linux Mint on Saturday, attackers might have a back door on your computer.
“Hackers made a modified Linux Mint ISO, with a backdoor in it, and managed to hack our website to point to it,” Clement Lefebvre, one of Mint’s creators, wrote in a blog post over the weekend (via Ars Technica). The post also recommended anyone running the corrupted system totally wipe their systems and change all of their online passwords.
The attack is specific to Linux Mint 17.3 Cinnamon edition, and only applies to people who downloaded that ISO from the website: BitTorrent users aren’t affected, and neither are Mint users who updated from previous versions using apt-get or other methods. But if you downloaded a Cinnamon ISO from the Mint website on Saturday, February 20, Lefebvre recommends taking action immediately.
“Delete the ISO,” Lefebvre wrote. “If you burnt it to DVD, trash the disc. If you burnt it to USB, format the stick.”
And if you actually installed the corrupted Mint version? The steps are even more severe. To quote Lefebvre, users should:
If you want to know if you’re infected, the blog post offers valid MD5 signatures for the installation ISOs.
It’s not known who carried out the attack, and what motivates the attackers, but the hacked ISOs were hosted by a server in Sofia, Bulgaria.
It hasn’t been a great couple of months for Linux’s security reputation. In December a bootloader bug revealed at a Polytechnic University Cybersecurity Group showed that you can hack most Linux distros by hitting the backspace key 28 times.
“If more efforts are made to attack our project and if the goal is to hurt us, we’ll get in touch with authorities and security firms to confront the people behind this,” wrote Lefebvre.
Every operating system has its share of vulnerabilities, and it’s good that Mint’s were noticed early. Here’s hoping the Mint team can get everything under control before any more corrupted ISOs are distributed.
Related Posts
This extraordinary humanoid robot plays basketball like a pro, really
Digital Trends has already reported on the G1’s ability to move in a way that would make even the world’s top gymnasts envious, with various videos showing it engaged in combat, recovering from falls, and even doing the housework.
How to Use Pollo AI Video Generator: A Step-by-Step Guide
Here we’re talking about the Pollo AI video generator which can be used with a variety of prompts, and I’ll talk you through using each one.
This 49-inch curved Samsung ultrawide is down to $799.99 and basically replaces two monitors at once
You’re getting a massive 49-inch curved Dual QHD panel, 120Hz refresh rate, USB-C, HDR400, and an adjustable stand that’s built for serious productivity but still fast and smooth enough for after-hours gaming.