The Register® — Biting the hand that feeds IT

Feeds

Hacktivists attack UN.org

All we are saying is give hacking a chance

Regcast training : Hyper-V 3.0, VM high availability and disaster recovery

The United Nations website came under attack by hacktivists over the weekend.

Unidentified peace activists turned hackers replaced speeches by secretary-general Ban Ki-Moon with pacifist messages. The attack on UN.org was more subtle than a straightforward front page defacement.

Hackers reportedly used a SQL injection vulnerability to alter content on the site, powered by Apache servers running on a Unix platform.

As security blog Hackademix, which captured the attack, notes it's surprising for such a high-profile site to leave itself exposed to such a well understood class of flaw.

The site was restored, and the offending content purged, on Sunday afternoon. UN techies patched the main vulnerability involved in the attack, but Hackademix reckons the site is yet to be fully protected against similar attacks in future. ®

Agentless Backup is Not a Myth

Latest Comments
Anonymous Coward

Accuracy indeed

"Hey Ysrail and Usa dont kill children and other people Peace for ever No war."

Now, to me, that looks a lot like "accusing the US and Israel of killing children" Sure, a truly tedious pedant could argue that one is a warning about future behaviour and the other is a comment on the present behaviour of the Israelis and Yanks...

but it would only be an acceptable critique of this communique if it was done - in grammatically perfect Turkish - by a Brit. Mr Pearce, over to you...

0
0

Busy little bees

Our Turkish friends have been busy little bees - they can't really be called activists though. Just tards who have discovered a new toy.

0
0

SQL injection?

That's one of the first things I demonstrate! It's incredibly easy and the skiddie tools make it even easier. If you've got the cash and can set up a convincing "company", you can buy some really good ones from **********.

If they haven't patched that one, there are tons of others that are still open. Some people think that just because their server is branded as "secure" that they don't have to worry about the underlying applications. Fools, suckers, sheep, 0wn3d. All apply.

0
0

More from The Register

 breaking news
Number of cops abusing Police National Computer access on the rise
Only a telegram from the Queen can get you off it
 breaking news
NSA PRISM snoop-gate: Won't someone think of the children, wails Apple
10,000 things probed, mostly about missing kids, Alzheimer patients, we're told
Flash flaw potentially makes every webcam or laptop a PEEPHOLE
But it's a Google problem - Chrome only, insists Adobe
Internet fraud still stings suckers
Australians twice as gullible as Americans
 breaking news
NSA PRISM-gate: Relax, GCHQ spooks 'keep us safe', says Cameron
Whatever they are up to, it's all above board, we're told
 breaking news
Yahoo! joins! rivals! in! PRISM! data! request! admission!
Keep calm and carry on using American tech firms, folks
PRISM snitch claims NSA hacked Chinese targets since 2009
Snowden suddenly looks safer in Hong Kong after revelations
 breaking news
US chief spook: Look, we only want to spy on 6.66 BEELLLION of you
Americans assured they are not in the NSA's sights
Speech-to-text drives motorists to distraction
Will talking to you mean I crash into that car up ahead, Siri?
DHS warns of vulns in hospital medical equipment
Has your doctor's anasthesia machine been hacked?