Yahoo! Servers Hacked Using Shellshock Flaw, Company Claims No Data Stolen
A report by the President of Future Technologies, Jonathan Hall also said that WinZip-a file compress tool and Lycos-a search engine was also susceptible to similar shellshock bug. Shellshock also described as Teenage Mutant Ninja Turtles, enables hackers to run malicious code on the bash shell which is used to provide commands to the system. This vulnerability is potentially used to gain the control of the system or to steal data. Hall was the first one to identify this issue and was then contacted to respective companies. Later, Yahoo! and WinZip responded whereas Lycos has denied the breach.
Yahoo! had announced that the company had successfully isolated the handful of safe servers and assured that no data has been affected by the attack. According to Hall, the FBI has also been informed about the cyber-attack and the officials have taken the information and went their way. Further investigations are in progress.
Source: #-Link-Snipped-# | #-Link-Snipped-#