The OpenWRT forum, a large community of people who prefer alternative open-source operating systems for routers, has announced that it has fallen victim to a data.

The forum administrators made sure to publish an announcement to explain to users exactly what happened but also to warn them of the potential risks due to the breach of some of data .
OpenWRT forum: A good password is not enough
The cyberattack occurred on Saturday. It is said that an unauthorized user gained access with administrator rights and copied a list of data user and related statistical information.
The attacker used the account of an OpenWRT forum administrator. This account had a “good password ,” but the breach was possible because two-factor authentication (2FA) was not enabled, a security measure that helps a lot in such cases.

According to OpenWRT moderators, the attacker stole email and usernames. However, it is believed that he was unable to download the forum database , meaning that the passwords are reasonably secure.
In any case, the administrators decided to reset all forum passwords to ensure they were secure and revoked all API keys used for project development processes.
According to the OpenWRT forum guidelines, users must manually set a new password by going to the login menu and providing username . They will then follow the instructions to “get a new password.” Those logging in using GitHub credentials should change their passwords there as well.
Forum administrators warn that users may face phishing attacks, given that email.

“This means you may receive phishing emails that include your name. DO NOT click on links, but instead manually type in the forum URL,” the announcement advises.
“We apologize for the disruption caused by this attack. We will provide updates if we learn more about the attacker or any information that was revealed” – OpenWRT forum moderators.
A few details about OpenWRT
OpenWRT is a Linux-based firmware project that provides custom software for a wide range of routers. It is suitable for those who want to discover and unlock advanced options supported by their router.
Since the number of devices using custom firmware is smaller and there is an emphasis on security, attacks against them are fewer. Additionally, if there is a problem, updates and fixes are provided quickly.
Source: Bleeping Computer
