Feeds

DNS mega-hack hits thousands of sites

More on Fluffi Bunni Jihad

  • alert
  • submit to reddit

The Essential Guide to IT Transformation

Thousands of UK Web sites registered with domain name registrar NetNames had their front pages redirected to a rant by hacker Fluffi Bunni this morning.

Jonathan Robinson, chief executive at Net Benefit, which runs the NetNames registration and hosting service, told us that the "majority" of its 100,000 customers had their Web traffic re-routed in the hack. He said the firm was focused on restoring services, which were disrupted for more than an hour before been returned to normal between 10am and 1030am today, than counting the number of people affected.

The hack, which directed surfers to a diatribe entitled "Fluffi Bunni goes Jihad", involved an attack on NetNames' Domain Name System server, according to Robinson.

Fluffi Bunni compromised the network of Net Benefit before sniffing a password and disrupting the firm's DNS server to pull off the attack, he said.

The DNS servers were loaded with the latest version of BIND and the attack was not on them directly, according to Robinson, who added that he was now satisfied its systems were secure.

Register readers have informed us of the numerous Web sites affected by the attack among whom were www.forceinternet.co.uk, www.expressandstar.co.uk, www.ammoweeklybulletin.co.uk, www.discoveryhealth.co.uk, www.clicktomusic.co.uk, Totaljob.com, Vnunet.com, and www.westlife.co.uk. The list goes on.

Aidan Goldstraw, head of Internet development at the Express & Star Wolverhampton, was scathing in his criticism of NetNames.

"The hack affected both our own secondary domain, expressandstar.com, and dozens of other third party sites we host with NetNames Web forwarding arrangements.

"What I found incredible was that no-one at NetNames appeared to have the gumption to pull the network plug out of the back of the machine as soon as they knew what was happening".

He added: "I also find it worrying that a company whose stock-in-trade is domain management could fall prey to what at least appears to be a fairly elementary scripting hack."

Russ Spooner, a security consultant at network security specialists Interrorem, pointed out that a DNS redirection hack was particular embarrassing for Net Benefit, The domain registrar has issued press releases advising firms to protect their online identity, something it has conspicuously failed to do itself in this case.

Mark Read, a professional services consultant at MIS Corporate Defence, accused Net Benefit "as a firm offering Internet services" of failing to do its job properly and protect against hack attacks.

Previous victims of Fluffi Bunni (aka Fluffy Bunny) include the Apache Project and Exodus Communications. The attacks by the group (or individual) operating under the Fluffi Bunni moniker are generally more sophisticated than the average defacements. ®

Related Stories:
'Fluffi Bunni' hacker declares Jihad
Hackers run amok during Defcon
Cowboy cracker nails Apache
Linux hackers fall victim to crackers

Build a business case: developing custom apps

More from The Register

next story
14 antivirus apps found to have security problems
Vendors just don't care, says researcher, after finding basic boo-boos in security software
'Things' on the Internet-of-things have 25 vulnerabilities apiece
Leaking sprinklers, overheated thermostats and picked locks all online
iWallet: No BONKING PLEASE, we're Apple
BLE-ding iPhones, not NFC bonkers, will drive trend - marketeers
Only '3% of web servers in top corps' fully fixed after Heartbleed snafu
Just slapping a patched OpenSSL on a machine ain't going to cut it, we're told
How long is too long to wait for a security fix?
Synology finally patches OpenSSL bugs in Trevor's NAS
Secure microkernel that uses maths to be 'bug free' goes open source
Hacker-repelling, drone-protecting code will soon be yours to tweak as you see fit
Israel's Iron Dome missile tech stolen by Chinese hackers
Corporate raiders Comment Crew fingered for attacks
Tor attack nodes RIPPED MASKS off users for 6 MONTHS
Traffic confirmation attack bared users' privates - but to whom?
Roll out the welcome mat to hackers and crackers
Security chap pens guide to bug bounty programs that won't fail like Yahoo!'s
prev story

Whitepapers

Implementing global e-invoicing with guaranteed legal certainty
Explaining the role local tax compliance plays in successful supply chain management and e-business and how leading global brands are addressing this.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.
Why and how to choose the right cloud vendor
The benefits of cloud-based storage in your processes. Eliminate onsite, disk-based backup and archiving in favor of cloud-based data protection.
The Essential Guide to IT Transformation
ServiceNow discusses three IT transformations that can help CIO's automate IT services to transform IT and the enterprise.
Maximize storage efficiency across the enterprise
The HP StoreOnce backup solution offers highly flexible, centrally managed, and highly efficient data protection for any enterprise.