Hacktivists attack UN.org
All we are saying is give hacking a chance
Posted in Enterprise Security, 13th August 2007 12:59 GMT
Free whitepaper – Vulnerability management buyer's checklist
The United Nations website came under attack by hacktivists over the weekend.
Unidentified peace activists turned hackers replaced speeches by secretary-general Ban Ki-Moon with pacifist messages. The attack on UN.org was more subtle than a straightforward front page defacement.
Hackers reportedly used a SQL injection vulnerability to alter content on the site, powered by Apache servers running on a Unix platform.
As security blog Hackademix, which captured the attack, notes it's surprising for such a high-profile site to leave itself exposed to such a well understood class of flaw.
The site was restored, and the offending content purged, on Sunday afternoon. UN techies patched the main vulnerability involved in the attack, but Hackademix reckons the site is yet to be fully protected against similar attacks in future. ®


Airport insecurity: the case of lost laptops
Reducing messaging and web security costs with managed services
Avoiding 7 common mistakes of IT security compliance
Extended Validation SSL Certificates
Feds: Hospital hacker's 'massive' DDoS averted
Microsoft knew of nasty IE bug a year before attacks
BlockMaster SafeStick hardware-encrypted USB drive