Postmortem on Transmission server compromise

Discussion of Transmission that doesn't fit in the other categories
Post Reply
dtab
Posts: 3
Joined: Sun Nov 08, 2015 3:18 am

Postmortem on Transmission server compromise

Post by dtab »

Hi folks

Has there been a postmortem published explaining how Transmission's servers were hacked to serve malware? I understand that getting hacked is a common thing these days, I'm far more interested in seeing how the Transmission team has learned and increased their defences against a similar thing happening in the future.
dtab
Posts: 3
Joined: Sun Nov 08, 2015 3:18 am

Re: Postmortem on Transmission server compromise

Post by dtab »

Hi folks, any update on this?
Robby
Posts: 54
Joined: Sun May 06, 2007 9:16 pm

Re: Postmortem on Transmission server compromise

Post by Robby »

Heh…
John Clay
Transmission Project
Posts: 993
Joined: Sat Jan 14, 2006 6:02 pm

Re: Postmortem on Transmission server compromise

Post by John Clay »

We've posted a QA on the issue, but essentially everything is now on GitHub and protected by CloudFlare as well.

https://transmissionbt.com/keydnap_qa/
Robby
Posts: 54
Joined: Sun May 06, 2007 9:16 pm

Re: Postmortem on Transmission server compromise

Post by Robby »

Good job. :)
Post Reply