Skip Navigation

PSA: We're back, here's a post-mortem!

Hi Beeple!

Here's a vague version of events :

  • 11PM EST: Lemmy.world got hacked
  • 12:20AM EST: Blahaj.zone got hacked
  • 12:25AM EST: I shut down the server
  • 12:30AM EST: I make announcements to tell people about this
  • 12:45AM EST: I have an idea of what the problem is but there is no fix
  • 2:20AM EST: I go to sleep
  • 8:50AM EST: The server is booted back up, steps are applied to mitigate issues (Rotating JWTs, Clearing DB of the source of vulnerability, deleting custom emoji), UI is updated with the fix, CSP and other security options are applied
  • 11:40AM EST: We start testing things to make sure are working And well, now here we are.

If you have issues logging in or using an app:

  1. Log out if you somehow are still logged in
  2. Clear all cache, site data, etc.
  3. Hard refresh Beehaw using CTRL+F5
  4. Log back in.

If you still have issues, write to us at support@beehaw.org

To be clear : We have not been hacked as far as we know, we were completely unaffected. This was done preemptively.

Oh yeah, in case, you haven't, this is a good opportunity and reminder to follow us on Mastodon as the communication line was still up despite Beehaw being down : https://hachyderm.io/@beehaw

86 comments
  • shutting down the server early was best. the nature of open source software is what allows these incidents to be mitigated as quickly as they are. thanks a lot to you guys, and to all of the team at Lemmy who worked to resolve this.

    heroes <3

  • This is why I am on Beehaw. The Admins really care about the Instance and the content on it.

    That's why I want to bring attention to the fact, that U can support them. https://opencollective.com/beehaw

    I am not a Admin, Mod or anything else. I just really like Beehaw and support them. And you should too.

  • Thank you for all you do, from what I was hearing I was in no way expecting you to have the site back up within 12 hours. Many kudos.

  • morning thought: I've definitely joined the right instance. (also the start from the assumption of good faith guidelines linked to in Gaywallet's recent post)

  • Great job keeping the site safe guys!

    Nice to see it back up again! It being offline was surprisingly palpable. Missed it!

    I'm guessing it's probably not the last big thing that's going to hit Lemmy instances in the future, everything still being in early development and all. Only things we can do is keep an eye out, have vigilant admins and plenty of backups!

    And patient users but we seem to have that. :)

  • Anyone know where we can get updates on what is happening with lemmy.world? I have an account there as well but I'm afraid to even open the site now.

  • Great job! Being preemptive in a case like this is very good! Thanks for all your work!

86 comments