*SECRETS LEAK* on paste.openstack.org
Bug #1913326 reported by
Monty Taylor
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
OpenStack Core Infrastructure |
Fix Released
|
Critical
|
Jeremy Stanley |
Bug Description
as a result of leaks of passwords, tokens, keys and configuration from https:/
There is over 801 000 files, many of them contains secrets - already changed credentials of openstack project administrator - Monty Taylor is example (sorry man, and respect for your work)I am asking for quick reactions to protect your data and systems.
I kindly ask you to support and donate the charity foundation SpartanieDzieci
Changed in ossa: | |
status: | New → Confirmed |
assignee: | nobody → Monty Taylor (mordred) |
information type: | Public → Public Security |
affects: | ossa → openstack-ci |
To post a comment you must log in.
Closing this for now, it was a specific incident and the affected user was aware. In the near future we plan to modify https:/ /opendev. org/opendev/ lodgeit/ src/branch/ master/ lodgeit/ views/new_ paste.html to invert or remove the "paste private" option so that nondeterministic URLs are used by default.