@hambier@mastodon.opencloud.lu
Post #2165642
2026-04-30 20:35 UTC
What's going on? Has Ubuntu been pwned? Almost 4 hours now... https://status.canonical.com/
Is it conceivable that their infra could be compromised to such a degree that there's a risk of them publishing compromised .DEBs when the servers come back up? That's a scary thought, as improbable as it might be. Anyway, I've turned off unattended-upgrades for now. (Mitigation for the copyfail CVE is in place.)
I'm glad I don't work in IT professionally...
Replies (3)
-
@hambier@mastodon.opencloud.lu 2026-04-30 21:00
Apparently it's just a DDoS: https://www.reddit.com/r/Ubuntu/comments/1t07tb2/canonical_ubuntu_being_targeted_by_a_ddos_attack/
-
@hambier@mastodon.opencloud.lu 2026-05-01 07:40
15h and counting. From their status page: "Canonical’s web infrastructure is under a sustained, cross-border attack and we are working to address it. We will provide more information in our official channels as soon as we are able to." #Ubuntu
-
@gunstick@mastodon.opencloud.lu 2026-05-01 07:30
@hambier Inthought I turned unattended off. But it is not because those updates are not run by the systemd service with that name, but by systemd timers. You need to disable the timer.