Stories
Slash Boxes
Comments

SoylentNews is people

posted by mrpg on Saturday May 04 2019, @12:01AM   Printer-friendly
from the apparently-sysvinit-on-debian-works-now dept.

https://lwn.net/Articles/786593/

An April Fools joke that went sour seems to be at least the proximate cause for a rather large upheaval in the Devuan community. For much of April 1 (or March 31 depending on time zone), the Devuan web site looked like it had been taken over by attackers, which was worrisome to many, but it was all a prank. The joke was clever, way over the top, unprofessional, or some combination of those, depending on who is describing it, but the incident and the threads on the devuan-dev mailing list have led to rancor, resignations, calls for resignations, and more.

Quick summary:

- Nicosia (a core dev) posted to the mailing list saying Devuan was compromised.
- Nicosia kept up the joke for some time.
- Nicosia admitted it was a prank later.
- Mike Bird suggested legal action against Nicosia and auditing/rebuilding the affected servers.
- Nicosia stepped down on April 11.
- Roio (a core dev) accused CenturionDan (a core dev) of causing Nicosia to step down.
- Reurich (a core dev) commented on the divide between people who want to use Devuan professionally and people who use Devuan for fun.
- Roio objected to Reurich.
- Reurich considered stepping down.

Some facts (?) gathered from the comments:

- Many core devs were unaware of the joke. They thought the compromise was real, as everyone but Nicosia was blocked from logging in to the affected server. They worked to shut down their infrastructure and isolate it from the supposedly compromised machine.
- The Devuan continuous integration server is apparently still down.

Related: Devuan Site Possibly Hacked


Original Submission

 
This discussion has been archived. No new comments can be posted.
Display Options Threshold/Breakthrough Mark All as Read Mark All as Unread
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
  • (Score: 2) by HiThere on Saturday May 04 2019, @04:35PM

    by HiThere (866) Subscriber Badge on Saturday May 04 2019, @04:35PM (#838869) Journal

    Reasonable, but I consider *buntu to be significantly different from Debian. Admittedly they are based on Debian, but Mandrake (whatever it's called now) was originally based on Red Hat, too. I'm more comfortable saying that Mint and the *buntus are basically the same, but the last time I tried Mint was, for some reason, extremely slower. I can't defend any guess as to why, but since I often have a bunch of Firefox windows open, it could be some browser interaction.

    Really, the package format is less important that other choices. E.g. Red Hat made it impossible to read a disk partition when mounted from another system. I didn't intentionally *ASK* for encryption, but they must have decided that I wanted it. So ever since I've avoided Red Hat. This attitude *has* spilled over onto SUSE, but I'm not sure how validly. Of course, I'm one of those people who for a period of time tried every distribution they could get their hands on. (Well, actually until Red Hat discontinued their Professional Edition, I was a steady user of Red Hat. When they dropped it suddenly and without warning, they also dropped any allegiance I had to them. But they didn't do it also ungracefully, so I also didn't dislike them. [IIRC, at first I switched to Pink Tie Linux, as I still didn't have a fast internet connection.])

    --
    Javascript is what you use to allow unknown third parties to run software you have no idea about on your computer.
    Starting Score:    1  point
    Karma-Bonus Modifier   +1  

    Total Score:   2