The Drupal open-source group reset passwords after detecting unauthorized access to account information, according to a security update. The warning applies to users with data stored on Drupal.org and groups.drupal.org, and not to all sites running Drupal.
Hackers gained access to the data through third-party software on the server infrastructure. Information exposed includes user names, email addresses, country information, and hashed passwords. Though Drupal doesn`t store credit card information, they recommended users to monitor their financial accounts as a precaution.
“We are still investigating the incident and may learn about other types of information compromised, in which case we will notify you accordingly,” Drupal Association Executive Director Holly Ross said. “As a precautionary measure, we’ve reset all Drupal.org account holder passwords and are requiring users to reset their passwords at their next login attempt.”
Besides resetting passwords, Drupal also recommended users change their login details on other sites where they use similar passwords. They also told members to be cautious if they receive spam asking for personal details.
“It is not our practice to request personal information by e-mail,” Drupal representatives said. “Also, beware of emails that threaten to close your account if you do not take the Ëœimmediate action` of providing personal information.”
Drupal is an open source software maintained and developed by a community of over 630,000 users and developers that allows people to organize, manage and publish their content.
tags
Bianca Stanescu, the fiercest warrior princess in the Bitdefender news palace, is a down-to-earth journalist, who's always on to a cybertrendy story.
View all postsNovember 14, 2024
September 06, 2024