[Rdo-list] Mailing list incident, post mortem

Mohammed Arafa mohammed.arafa at gmail.com
Thu Jan 22 19:33:26 UTC 2015


Rich

Thank you for the RCA :)
We are all human and all is forgiven

Thanks

On Thu, Jan 22, 2015 at 1:22 PM, Rich Bowen <rbowen at rcbowen.com> wrote:

> Thank you all for your patience over the last few days with the
> unsubscribe messages. I've been working with Red Hat infosec to figure out
> what happened, and I want to let you know what we found out, and allay your
> concerns.
>
> First of all, it appears that this incident was 100% my fault. It appears,
> from server logs, very clear that I pasted a list of email addresses into a
> subscribe form and pressed submit, or enter, or otherwise submitted the
> form.
>
> That I didn't do this intentionally, I hope you can believe, but, rather,
> that it happened in a moment of stupidity or absentmindedness of something.
>
> So, the good news is, it doesn't appear that the list was compromised in
> any way.
>
> What is not clear at this moment is where these email addresses came from,
> and how they got into my paste buffer, since some of them were familiar to
> me, and others were not. I'm still trying to find the common thread.
>
> With the help of Red Hat IT, we've identified the entire list of
> addresses, and unsubscribed them. There were, apparently some false
> positives in there, and some of those people have resubscribed. To them,
> again, I'm very sorry.
>
> --
> Rich Bowen - rbowen at rcbowen.com - @rbowen
> http://apachecon.com/ - @apachecon
>
> _______________________________________________
> Rdo-list mailing list
> Rdo-list at redhat.com
> https://www.redhat.com/mailman/listinfo/rdo-list
>
> To unsubscribe: rdo-list-unsubscribe at redhat.com
>



-- 


<https://candidate.peoplecert.org/ReportsLink.aspx?argType=1&id=13D642E995903C076FA394F816CC136539DBA6A32D7305539E4219F5A650358C02CA2ED9F1F26319&AspxAutoDetectCookieSupport=1>

  *805010942448935*
<https://www.redhat.com/wapps/training/certification/verify.html?certNumber=805010942448935&verify=Verify>

*GR750055912MA*
<https://candidate.peoplecert.org/ReportsLink.aspx?argType=1&id=13D642E995903C076FA394F816CC136539DBA6A32D7305539E4219F5A650358C02CA2ED9F1F26319&AspxAutoDetectCookieSupport=1>

*Link to me on LinkedIn <http://www.linkedin.com/in/mohammedarafa>*
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.rdoproject.org/pipermail/dev/attachments/20150122/5e92a907/attachment.html>


More information about the dev mailing list