Fake Redhat Security Advisory


Recommended Posts

Sharing as an FYI ... Please never apply security updates by email as it's likely to be virus infected. All vendors require downloads from their website to ensure safety and never distribute patches by email.

Fake Redhat Security Advisory Circulating

http://www.redhat.com/security/

http://isc.sans.org//diary.php?date=2004-10-24

23rd October 2004 -- Red Hat has been made aware that emails are circulating that pretend to come from the Red Hat Security Team. These emails tell users to download and run an update from a users home directory. This fake update appears to contain malicious code. Official messages from the Red Hat security team are never sent unsolicited, are always sent from the address [email protected], and are digitally signed by GPG. All official updates for Red Hat products are digitally signed and should not be installed unless they are correctly signed and the signature is verified.

Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...