Educause Security Discussion mailing list archives

Re: Compromised version of phpMyAdmin contains backdoor


From: "Basile, Daniel L." <Basile () TAMHSC EDU>
Date: Wed, 26 Sep 2012 01:42:57 +0000

Absolutely not.  That is one of the major concerns. 

-Dan Basile

On Sep 25, 2012, at 8:19 PM, "Valdis Kletnieks" <Valdis.Kletnieks () VT EDU> wrote:

On Tue, 25 Sep 2012 20:56:14 -0000, Chuck Braden said:

If you are running phpMyAdmin, and have recently performed an update, you
might have a compromised version.  In short, any version that was downloaded
from the SourceForge Mirror site - cdnetworks-kr-1

Has anybody established that's the *only* thing pwned on that SourceForge mirror?


Current thread: