홈랩에서 Forgejo의 취약점으로 해킹 사고가 발생한 사례 분석.
홈랩이 지원 종료된 Forgejo v13을 운영하면서 발생한 CVE-2026-60004 취약점으로 인해 해킹 당했다. 이 사고로 약 24시간 동안 암호화폐 채굴기가 실행되었으며, 공격자는 새로운 계정을 만들어 악성 Git 훅을 실행했다. 공개적으로 사용 가능한 취약점을 악용한 사례로, 보안 관리의 중요성을 강조한다.
Incident analysis of a home lab hack exploiting a vulnerability in Forgejo.
A home lab running the deprecated Forgejo v13 was compromised due to the CVE-2026-60004 vulnerability, leading to the execution of a cryptocurrency miner for about 24 hours. Attackers created new accounts and executed malicious Git hooks at the diffpatch endpoint. This incident underscores the importance of security management by exploiting publicly available vulnerabilities.