Hackers have compromised two servers used by the FreeBSD Project to build third-party software packages. Anyone who installed such packages since Sept. 19 should completely reinstall their machines, the project’s security team warns. The intruders gained access to the servers using a legitimate SSH authentication key stolen from a developer, the team says. The incident only affected the collection of software packages distributed by the project and not the operating system’s “base” components, such as the kernel, system libraries, compiler or command-line tools.”]

