The developer of Plone CMS, which is often cited as the most secure system content management system (CMS) market, reports that recent posts about a hack into FBI systems are most likely fake.
Ο hacker CyberZeist, acting for account by Anonymous, revealed that in late December he managed to break the CMS software used by the FBI, managing to intercept more than 150 accounts, with hashed codes access.
CyberZeist reported that it used one exploit to a security hole in Plone CMS, which is used by the FBI, and that the zero-day is still being sold on the black market.
In a very long publication today, Plone reports that the hack of the FBI system is unlikely, noting that the company is not aware of any zero-day flaw in its software.
"Notices of security repairs are usually issued with a two-week notice. "If the Plone security team receives reports of a zero day exploit already in place, a security update will be released immediately."
Describing the hack claim as a hoax, Plone is trying to shoot down the hack, pointing out that some of the details CyberZeist provided are not accurate, such as its operational server, which the hacker said was FreeBSD 6.2-RELEASE.
"It's extremely unlikely that the FBI is running such an old version of FreeBSD. In addition, FreeBSD 6.2 provides Python 2.4, while Plone runs Python 2.5 and does not run on older versions of Python, ”said Plone.
So, what was the purpose of the hacker in reporting that he breached the σελίδα the FBI?
According to Plone, which describes its software as "an extremely secure content management system," the hacker is most likely trying to sell a fake exploit and needs media advertising to increase the price.
But for now, it's very difficult to say what happened to the FBI CMS, but CyberZeist has promised to give more information about the violation when the zero-day sale stops.
Anyway we will somehow find out who is lying…
PS: I have to install this CMS, the company's claims to be the safest one on the market, I was curious.