[blog] 01/01: 107: link to 'Several openSUSE services disabled due to a security breach'

Holger Levsen holger at layer-acht.org
Sun May 14 10:45:30 UTC 2017


This is an automated email from the git hooks/post-receive script.

holger pushed a commit to branch master
in repository blog.

commit 1c582553869ca97efa3058202590524eff7f9791
Author: Holger Levsen <holger at layer-acht.org>
Date:   Sun May 14 12:45:24 2017 +0200

    107: link to 'Several openSUSE services disabled due to a security breach'
    
    Signed-off-by: Holger Levsen <holger at layer-acht.org>
---
 drafts/107.mdwn | 6 ++++++
 1 file changed, 6 insertions(+)

diff --git a/drafts/107.mdwn b/drafts/107.mdwn
index f34836d..d40aa6e 100644
--- a/drafts/107.mdwn
+++ b/drafts/107.mdwn
@@ -1,3 +1,9 @@
+Media coverage:
+
+[openSUSE had to report a security breach in their infrastructure, including their build services](https://lists.opensuse.org/opensuse-announce/2017-05/msg00000.html) and while they state that the scope and impact is still unclear, it is a pretty clear example that noone can rely on being able to secure their infrastructure all the times. Reproducible Builds also cannot do that, but they allow independent verification of the build results at least.
+
+(And please don't get us wrong: this can happen to *anyone*. Kudos to openSUSE for being open it. Now let's continue work on reproducible builds everywhere!)
+
 Toolchain:
 
 - https://bugs.debian.org/862059 ("sbuild: please sign buildinfo files")

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/reproducible/blog.git



More information about the Reproducible-commits mailing list