TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Security Notice: Linode Manager Password Reset

143 pointsby jbraithwaiteabout 12 years ago

13 comments

mrbabout 12 years ago
I have said it before: I have a hard time trusting Linode after the major March 2012 security incident (HN thread: <a href="https://news.ycombinator.com/item?id=3654110" rel="nofollow">https://news.ycombinator.com/item?id=3654110</a> ; my comment: <a href="https://news.ycombinator.com/item?id=5339799" rel="nofollow">https://news.ycombinator.com/item?id=5339799</a>)<p>At the time they did not give much information. They did not do a follow up. They did not discuss plans to prevent the same type of breach. I am not surprised that today, they got breached again! <i>sigh</i><p>And again, they are making the same mistakes. They are not giving much information. They are not going to do a follow up. Etc.
评论 #5542661 未加载
评论 #5542387 未加载
评论 #5542036 未加载
评论 #5542186 未加载
mh-about 12 years ago
so every time someone tries to make unauthorized attempts to access a single customer's account.. <i>all</i> customers are to be required to reset their passwords?
评论 #5541944 未加载
评论 #5541937 未加载
评论 #5542066 未加载
datadrewabout 12 years ago
The Visa I was using for billing with Linode had an authorized "test charge" earlier this week, and I had the card number replaced. Now I see this, and it makes me wonder.
评论 #5542205 未加载
评论 #5542696 未加载
评论 #5542413 未加载
评论 #5542751 未加载
cliffbeanabout 12 years ago
On one hand, I love Linode. It's a sweet Linux box in the cloud.<p>On the other hand, I have a hard time using it for anything sensitive. Quotes like "We have implemented all appropriate measures to provide the maximum amount of protection to our customers." somehow don't reassure me.
评论 #5542363 未加载
jeffpalmerabout 12 years ago
I wonder if this is another attempt at hacking an account containing bitcoins? Last time the thieves made out with close to 50k BTC if I recall correctly.
评论 #5542065 未加载
mwcampbellabout 12 years ago
This incident has got me seriously thinking about switching VPS providers. Does anyone know of a VPS provider that offers two-factor authentication for its management interface?
评论 #5543628 未加载
qqqqqqabout 12 years ago
It's good that Linode is taking security seriously, but the pessimist in me wonders; if all it takes to get a password reset site-wide is an attack on a single user, wouldn't that open up a whole new, rather aggravating attack aimed solely at making users fed up with having their password reset all the time?
评论 #5542002 未加载
评论 #5542020 未加载
评论 #5542005 未加载
plamabout 12 years ago
so what's a good alternative that offers all of security, reliability, good service, about $40 for 2GB/8-cores, multi-locations, etc?
ballardabout 12 years ago
Linode security notice sent to customers.<p><a href="https://gist.github.com/5376298" rel="nofollow">https://gist.github.com/5376298</a>
评论 #5553053 未加载
jebblueabout 12 years ago
I'm glad to see Linode is keeping an eye out for its customers, nothing wrong with that.
spdyabout 12 years ago
Now the question is who got hacked? If they take actions like this.
评论 #5541960 未加载
oybektoirovabout 12 years ago
nice job linode!
bluetoothabout 12 years ago
Welp, it looks like it's time to move to Amazon EC2. It's cheaper and hasn't (to my knowledge) been hacked yet.
评论 #5542106 未加载
评论 #5542071 未加载
评论 #5542047 未加载
评论 #5543266 未加载
评论 #5542031 未加载