Feeds

Hacker groups declare war on US.gov

Pesky kids

  • alert
  • submit to reddit

Providing a secure and efficient Helpdesk

A record number of malicious hacking attempts were made this month, and anti-American groups are responsible.

So says Mi2g, the London-based security consultancy, which notes that US government on-line computers belonging to the House of Representatives, Department of Agriculture, Department of Education, National Park Service, NASA and the US Geological Survey were attacked in September.

According to Mi2g, malicious hacker groups such as S4t4n1c_S0uls, USG, WFD, EgyptianHackers, Arab VieruZ, MHA, The Bugz and FBH, as responsible for many anti-Israeli and anti-Indian attacks, as well as the US targets.

Mi2g has recorded 9,011 digital attacks to date in September, following previous record highs of 4,904 and 5,830 recorded in July and August of this year, compared with 3,499 and 2,820 for the same months last year. September 2001 saw a huge decline in malicious hacking activity with just 816 attacks recorded. This fall is attributed to the aftershock surrounding 911.

This month, US-registered domains suffered the most, with 4,157 attacks, well ahead of the number two nation on the list Brazil which suffered 835 attacks. The UK, Germany and India were next most popular targets, with less than 400 attacks each.

Mi2g also reports that systems running Microsoft Windows suffered more attacks than all other operating systems combined, with only 1,740 attacks on Linux, 933 attacks on BSD and 229 attacks on Solaris.

"Many hacker groups, in anonymous interviews with Mi2g, have said that they prefer attacking Linux systems and very rarely target anything running Windows, simply because to do so is far too easy," claims Jan Andresen of Mi2g. "Those hacking for intellectual gain or fun will generally be attracted to the greater challenge associated with hacking Linux systems."

"Hacker groups with political motivations target country or content specific on-line systems regardless of operating systems and this is where Windows comes under maximum fire."

According to DK Matai, chairman and chief executive officer of Mi2g, an increasing number of vulnerabilities are being found in generic operating systems, server software, applications and libraries deployed on mission critical systems. These flaws are often time consuming to patch and as a result, fixes on these holes are often delayed.

"Applying patches was traditionally relegated to the weekend. Invariably some mission critical machines don't get patched in time despite the best will to do so," said Matai. "Those are perfect doorways for hackers and they are being exploited ruthlessly."

Mi2g forecasts that there will be more than 45,000 digital attacks globally in 2002, up from 31,322 in 2001, 7,821 in 2000; 4,197 in 1999 and only 269 in 1998. © ENN

Choosing a cloud hosting partner with confidence

More from The Register

next story
SMASH the Bash bug! Apple and Red Hat scramble for patch batches
'Applying multiple security updates is extremely difficult'
Shellshock: 'Larger scale attack' on its way, warn securo-bods
Not just web servers under threat - though TENS of THOUSANDS have been hit
Apple's new iPhone 6 vulnerable to last year's TouchID fingerprint hack
But unsophisticated thieves need not attempt this trick
Hackers thrash Bash Shellshock bug: World races to cover hole
Update your gear now to avoid early attacks hitting the web
Oracle SHELLSHOCKER - data titan lists unpatchables
Database kingpin lists 32 products that can't be patched (yet) as GNU fixes second vuln
Who.is does the Harlem Shake
Blame it on LOLing XSS terroristas
Researchers tell black hats: 'YOU'RE SOOO PREDICTABLE'
Want to register that domain? We're way ahead of you.
Stunned by Shellshock Bash bug? Patch all you can – or be punished
UK data watchdog rolls up its sleeves, polishes truncheon
prev story

Whitepapers

A strategic approach to identity relationship management
ForgeRock commissioned Forrester to evaluate companies’ IAM practices and requirements when it comes to customer-facing scenarios versus employee-facing ones.
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Beginner's guide to SSL certificates
De-mystify the technology involved and give you the information you need to make the best decision when considering your online security options.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.