Hacker News new | ask | show | jobs
by cmurf 3778 days ago
Might not hurt to post this in the comments section of the Mint blog.
2 comments

If they used the same password on the forums and blog then they still have a problem. They need to be notified of this and change the password to a more secure one.

The config.php file should not be readable by an anonymous user, that is a security risk.

>The config.php file should not be readable by an anonymous user, that is a security risk.

Yes usually unauthorized people having access to your server results in various security risks.

I took the liberty of posting the link to that comment in Linux Mint blog comments. Hopefully they review that soon.