Feeds

Want to know what people email to Saddam Hussein?

Hacking insight

  • alert
  • submit to reddit

SANS - Survey on application security programs

An insight in what people want to tell Saddam Hussein comes from the pitifully poor security setup on the Iraqi President's main Web page.

The contact email address on the Iraqi President's site, run by Uruklink.net (Iraq's state-controlled ISP), is press@uruklink.net.

It seems most unlikely that the Iraqi President himself uses this account, but the people emailing this address can reasonably be supposed to want to contact the Iraqi dictator, and that's where our interest lies.

Wired reports how it possible (at least earlier this month) to browse emails sent to this address. By clicking on "Check your e-mail in Uruk" on the homepage of Uruklink.net and then guessing the login name and password for press@uruklink.net - which turned out to be the same five-letter word.

Messages sent to the address, Wired reports, range from death threats and business offers to fawning praise. Many of these messages were marked unread and it seems the mailbox (Iraq's equivalent of president@whitehouse.gov) has exceeded its allocation, with messages now bouncing back to their senders.

But let's get back to talking about the contents of these emails.

Most worrying are various offers to help Iraq secure weapons of mass destruction, especially at a time when the US tries to rally world opinion in its quest to overthrow the Iraqi dictator on the basis of his alleged support for global terrorism.

Whether such messages were sent, and the means to uncover them discovered, as part of some black propaganda effort we'll leave it for you to decide. They certainly make interesting reading.

Wired carries extensive extracts from these various missives here. ®

Related Stories

Guess who Saddam's favourite server manufacturer is
Iraq buys 4000 PlayStation 2s in world conquest bid

3 Big data security analytics techniques

More from The Register

next story
Dropbox defends fantastically badly timed Condoleezza Rice appointment
'Nothing is going to change with Dr. Rice's appointment,' file sharer promises
Audio fans, prepare yourself for the Second Coming ... of Blu-ray
High Fidelity Pure Audio – is this what your ears have been waiting for?
Record labels sue Pandora over vintage song royalties
Companies want payout on recordings made before 1972
MtGox chief Karpelès refuses to come to US for g-men's grilling
Bitcoin baron says he needs another lawyer for FinCEN chat
Ex–Apple CEO John Sculley: Ousting Steve Jobs 'was a mistake'
Twenty-nine years later, post-Pepsi exec has flat-forehead moment
Number crunching suggests Yahoo! US is worth less than nothing
China and Japan holdings worth more than entire company
Zucker punched: Google gobbles Facebook-wooed Titan Aerospace
Up, up and away in my beautiful balloon flying broadband-bot
prev story

Whitepapers

Securing web applications made simple and scalable
In this whitepaper learn how automated security testing can provide a simple and scalable way to protect your web applications.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Top three mobile application threats
Learn about three of the top mobile application security threats facing businesses today and recommendations on how to mitigate the risk.
Combat fraud and increase customer satisfaction
Based on their experience using HP ArcSight Enterprise Security Manager for IT security operations, Finansbank moved to HP ArcSight ESM for fraud management.