For those who run on Matrix.org and wonder why there is no connection:

Matrix announced an emergency maintenance… on Twitter:

twitter.com/matrixdotorg/statu

Sadly @matrix didn't receive the love it deserves and informs the Fediverse.

Anyway, that's why we have a community. We compensate short coming of each other and together make sure the world becomes a better place!

#Matrix #matrixDown #riot

Matrix is coming back up! One of the first things happening was writing a new blog post about the incident which you can find here:

matrix.org/blog/2019/04/11/sec

TL;DR: Some outdated software was discovered and cracked by an attack which then had access to various data points.

Important: Change your password ASAP (including NickServ when you used the IRC bridges)

Hint: The homeserver is not back up yet.

#matrix #matrixDown #Riot

The homeservers are back up 🎉

It seems like they are missing some pictures right now, I guess those will come back later.

Make sure you change your password (and NickServ passwords) and happy chatting!

See you around 👋

#matrix #matrixDown #matrixBackUp #Riot

Too early to be happy, seems like the attacker found their way in and is still around on Matrix's infrastructure.

The attack has proven themselves to have shell access on their synapse instance, which is definitely bad. It means that all user accounts are compromised and have to be reset.

twitter.com/matrixdotorg/statu

There will go a lot of efforts into figuring out the details and fixing the vulnerability.

Meanwhile, send some love to the people behind matrix!

#matrix #matrixDown #riot

Follow

@sheogorath they should really think about suspending all services until they get the threat actor out of their systems and they know they’re contained and recovered.

The irony of the strap line “An open network for secure, decentralized communication.” Also isn’t lost on me. 🤔

I wish them well; I know how tough this can be.

Sign in to participate in the conversation
Fosstodon

Fosstodon is a Mastodon instance that is open to anyone who is interested in technology; particularly free & open source software.