[AusNOG] APNIC resets passwords after whois credentials spill

Bevan Slattery bevan at slattery.net.au
Tue Oct 24 23:03:26 EST 2017


+1.  Exemplary.

[b]

> On 24 Oct 2017, at 9:12 pm, Ian Henderson <ianh at ianh.net.au> wrote:
> 
>> On 24 October 2017 at 07:00, Mister Pink <misterpink at gmail.com> wrote:
>> APNIC has been forced to reset all passwords for objects in its whois database after leaking authentication credentials that were hashed with a relatively weak hashing algo.
> 
> Hats off to APNIC's response here, they were honest, timely, and decisive. Sure this should have been cleaned up years ago, but eh, these things happen.
> _______________________________________________
> AusNOG mailing list
> AusNOG at lists.ausnog.net
> http://lists.ausnog.net/mailman/listinfo/ausnog
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.ausnog.net/pipermail/ausnog/attachments/20171024/f7ad879b/attachment.html>


More information about the AusNOG mailing list