6 ms·
No. Simple logic: The defacement was amature at best. If the group has a 0-day in a hypervisor they would have gone to multiple hosting companies and multiple
by xSwag 13y ago
No.
Simple logic: The defacement was amature at best. If the group has a 0-day in a hypervisor they would have gone to multiple hosting companies and multiple attacks would have taken place, there are many more targets that are worth much more than openSSL.
Most likely, the administration panel of the hosting company was comprimised through malware/phishing. Seriously, if a group like this had a 0-day in hypervisor then they would be doing much much more damage.
- beambot 13y agoDefacing OpenSSL's website might be low-value, but backdooring OpenSSL code (trusting-trust style!) would be about as high-value a target as I could imagine.
- jonah 13y agoIf they were smart enough to backdoored the code, I'd hope they were smart enough to be as stealth as possible and not deface the site too.
- spenvo 13y agoThere's no way to know that there was only one party involved. In other words, who's to say that the NSA (/GHCQ,etc) was the same party that ultimately defaced the website?