Yahoo Says Some Systems Breached, But Not by Shellshock

Advertisement
By Agence France-Presse | Updated: 8 October 2014 09:07 IST
Yahoo said some of its servers were breached briefly by hackers, but that the attack was unrelated to the newly discovered Shellshock vulnerability, and that no user data was compromised.

In a posting late Monday on the Hacker News forum, Yahoo's chief information security officer Alex Stamos said hackers managed to breach three of its sports servers that deliver live game-streaming data.

"After investigating the situation fully, it turns out that the servers were in fact not affected by Shellshock," Stamos wrote, referring to the recently discovered flaw which could affect millions of computers and other Internet-connected devices.

"At this time we have found no evidence that the attackers compromised any other machines or that any user data was affected. This flaw was specific to a small number of machines and has been fixed."

Advertisement

The comments came after security researcher Jonathan Hall reported the breach, and said it was the result of the flaw known as Shellshock or Bash. On Tuesday, Hall maintained that the attack was the result of a Shellshock attack.

"The Yahoo infiltration WAS from the 'Shellshock' vulnerability... How do I know? Because I sat there watching it happen."

Stamos said the situation led to confusion because attackers had been trying to use the flaw to gain access.

Advertisement

"As you can imagine this episode caused some confusion in our team, since the servers in question had been successfully patched (twice!!) immediately after the Bash issue became public," he said.

"Once we ensured that the impacted servers were isolated from the network, we conducted a comprehensive trace of the attack code through our entire stack which revealed the root cause: not Shellshock."

Advertisement

The US government and technology experts warned last month of a vulnerability in some computer-operating systems, including Apple's Mac OS, which could allow widespread and serious attacks by hackers.

(Also see: 'Vast Majority of Mac Users' Not Vulnerable to Bash 'Shellshock' Exploit)

The flaw affects "Unix-based operating systems" powered by Linux and Apple's Mac OS. Apple recently said it created a patch for its operating systems, and other software firms have done the same.

 

Catch the latest from the Consumer Electronics Show on Gadgets 360, at our CES 2026 hub.

Advertisement

Related Stories

Popular Mobile Brands
  1. Arc Raiders Will Get Multiple New Maps This Year, Says Embark
  2. iQOO 15 Ultra Teaser Hints at Launch Date, Active Cooling Support
  3. Samsung Galaxy S26 Ultra Colourways Spotted in Leaked SIM Tray Images
  4. Here's How Much the Realme P4 Power Could Cost in India
  5. Oakley Meta HSTN Smart Glasses Review
  6. Viruses and Bacteria Evolve Differently in Space, ISS Study Finds
  7. Sarvam Maya OTT Release: Know Everything About This Malayalam Fantasy Drama Film
  8. Amazon Great Republic Day Sale: Best Deals on Printers Under Rs. 10,000
  9. Samsung Galaxy Z Fold 8 May Sport a Smaller Crease Using This Technology
  1. Global RAM Shortage Is Reportedly Causing GPU, Storage Drive Prices to Skyrocket
  2. Viruses and Bacteria Evolve Differently in Space, ISS Study Finds
  3. Rockstar Games Said to Have Granted a Terminally Ill Fan's Wish to Play GTA 6
  4. Oppo K15 Turbo Series Tipped to Feature Built-in Cooling Fans; Oppo K15 Pro Model Said to Get MediaTek Chipset
  5. Samsung Galaxy Z Fold 8 Said to Feature Dual Ultra-Thin Glass OLED Panel to Reduce Crease Visibility
  6. Honor Magic 8 Pro Air Launched Alongside Honor Magic 8 RSR Porsche Design: Price, Specifications
  7. Realme Neo 8 Key Specifications Including 8,000mAh Battery, Ultrasonic Fingerprint Sensor Confirmed
  8. Astronomers Find Massive Iron-Rich Feature Lurking Under the Ring Nebula
  9. Asus Reportedly Halts Smartphone Launches ‘Temporarily’ to Focus on AI Robots, Smart Glasses
  10. JioHotstar Announces Monthly Subscription Plans Across Mobile, Super, and Premium Tiers
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.