Feeds

DoubleClick undergoes security audit after hack attack

Security experts say firm should consider "pulling plug on servers" until flaws are fixed

  • alert
  • submit to reddit

Designing a Defense for Mobile Applications

Internet advertising firm DoubleClick has denied reports that the security of its Web servers has been compromised by vulnerabilities which lay unnoticed for the last two years.

French security site Kitetoa.com claims that a flaw with the doubleclick.net Web server, which runs Microsoft's IIS, means hackers had backdoor access to confidential data. DoubleClick denies this but admits it is undergoing a security audit after what it said were unsuccessful attacks by hackers last week.

According to Kitetoa, missconfigured Web servers at DoubleClick allowed the installation of a Trojan horse program on the firm's systems.

A screenshot published by Kitetoa appears to show the Web servers have been tampered with and that a file called eEyehack.exe uploaded onto its servers on April 29 1999. It points to an exploit first described by security consultants eEye Digital Security as the mechanism of the attack.

Network security consultant Paul Rogers, of MIS Corporate Defence, said there is no firm evidence eEye's exploit, which allows Trojans to be uploaded onto servers, was used against DoubleClick. The date of the file was before the publication of the eEye advisory and the size of the file, which might be a Trojan, does not correspond to any well known backdoor program.

Rogers said far firmer evidence that DoubleClick's servers are insecure is provided by another screenshot Kitetoe.com has obtained. This apparently shows username and passwords protecting DoubleClick's Abacus server, its market research division.

"If I was able to obtain this whilst doing an penetration test for one of my clients I'd advise them to pull the plugs on their boxes," said Rogers. "DoubleClick should consider running their services from a different platform whilst damaged host servers are repaired. It might also consider restricting access to services."

A spokeswoman for DoubleClick denied that its servers had been compromised for the last two years but admitted that it was in the process of conducting a full security audit after an attack by hackers last week. She stated that these attacks were unsuccessful.

In a statement on the attacks sent to The Register, DoubleClick said: "Over the last week there have been unsuccessful attempts made to hack into DoubleClick's servers. DoubleClick is now undergoing a comprehensive security audit, including the expertise of external security professionals and engineers, to fully ensure the continued integrity of our servers." ®

External links:
Kitetoa.com

Using blade systems to cut costs and sharpen efficiencies

More from The Register

next story
BBC goes offline in MASSIVE COCKUP: Stephen Fry partly muzzled
Auntie tight-lipped as major outage rolls on
iPad? More like iFAD: We reveal why Apple fell into IBM's arms
But never fear fanbois, you're still lapping up iPhones, Macs
Nadella: Apps must run on ALL WINDOWS – PCs, slabs and mobes
Phone egg, meet desktop chicken - your mother
White? Male? You work in tech? Let us guess ... Twitter? We KNEW it!
Grim diversity numbers dumped alongside Facebook earnings
HP, Microsoft prove it again: Big Business doesn't create jobs
SMEs get lip service - what they need is dinner at the Club
ITC: Seagate and LSI can infringe Realtek patents because Realtek isn't in the US
Land of the (get off scot) free, when it's a foreign owner
Dude, you're getting a Dell – with BITCOIN: IT giant slurps cryptocash
1. Buy PC with Bitcoin. 2. Mine more coins. 3. Goto step 1
There's NOTHING on TV in Europe – American video DOMINATES
Even France's mega subsidies don't stop US content onslaught
You! Pirate! Stop pirating, or we shall admonish you politely. Repeatedly, if necessary
And we shall go about telling people you smell. No, not really
prev story

Whitepapers

Designing a Defense for Mobile Applications
Learn about the various considerations for defending mobile applications - from the application architecture itself to the myriad testing technologies.
How modern custom applications can spur business growth
Learn how to create, deploy and manage custom applications without consuming or expanding the need for scarce, expensive IT resources.
Reducing security risks from open source software
Follow a few strategies and your organization can gain the full benefits of open source and the cloud without compromising the security of your applications.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.
Consolidation: the foundation for IT and business transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.