Re: Attackers hitting vulnerable HDFS installations

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Honestly:

>From what I know of Gluster, and my experience with Samba.

If they target Gluster, you are going to get pwned.  HARD.

Many, many, many, many times.

Trust me... On the Samba Team, we try to avoid security issues VERY actively, and we still get a few here and there.

You can walk up to a gluster brick today with no auth... and goto town, never mind any of the "standard" attack vectors, like buffer overflows, bad data, etc.

I'd like to believe I'm wrong.  I want to be PROVEN wrong.

But I suspect... You got it right, Gluster isn't big enough to attack today.

... I want to be proven wrong!

-Ira

----- Original Message -----
> (warning, slightly offensive language)
> 
> https://www.theregister.co.uk/2017/02/09/hadoop_clusters_fked/
> 
> Similar attacks have occurred against MongoDB and ElasticSearch.  How long
> before they target us?  How will we do?
> _______________________________________________
> Gluster-devel mailing list
> Gluster-devel@xxxxxxxxxxx
> http://lists.gluster.org/mailman/listinfo/gluster-devel
> 
_______________________________________________
Gluster-devel mailing list
Gluster-devel@xxxxxxxxxxx
http://lists.gluster.org/mailman/listinfo/gluster-devel



[Index of Archives]     [Gluster Users]     [Ceph Users]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [eCos]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux