Feeds

Blizzard of smut cuts off Council websites

From Wittering to ogling, and beyond

Reducing security risks from open source software

If you’re seeking smut, you only need go as far at present as the leafy green home pages of West Wittering Parish Council. Or there's Worcestershire County Council’s Healthy Schools Forum which, in an area dedicated to "internet safety", advises visitors on where to find "sexy escorts", before inviting them into a chat room to talk with "sexy girls".

This is not the latest bizarre outreach programme from local councils, seeking to reconnect with the sexually frustrated. Rather, it is the result of poor security, compounded by less than vigilant moderation.

Our story began at the weekend, when a diligent reader dropped a list of dodgy searches into our lap. Google for, say, "site:salford.gov.uk" and "porn", and you will turn up more than 1000 links to some fairly unsavoury content.

Who else? If you replace Salford with any of the following, you will get similar results: Lichfielddc (Lichfield District Council); Homecare (National Homecare Council); RCAHMS (Royal Commission on Ancient and Historical Monuments Scotland); Basildon Basildon District Council) and Communitylearningwest Worcestershire (Worcestershire County Council).

And then there is West Wittering Parish Council, which was, until yesterday, where you would find the website for the Parish Council of that name.

screen grab of wittering web site

The West Wittering PCC site before it was pulled

According to Paul Baccas, virus and spam researcher at SophosLabs, there may be two quite different processes going on here. In most cases – RCAHMS, possibly: Salford and Lichfield too - all that appears to be happening is a severe overdose of spam. Someone has identified an existing messageboard on the target site, and spam has followed through the hole in the fence, frequently containing links that would forward anyone who clicked onward to another URL.

Known as "link spamming", the purpose of this practice is to boost the search engine rating of the targeted content. That’s irritating, but easy enough to fix with a good dose of moderation.

Maximizing your infrastructure through virtualization

Whitepapers

Seven Steps to Software Security
Seven practical steps you can begin to take today to secure your applications and prevent the damages a successful cyber-attack can cause.
Consolidation: The Foundation for IT Business Transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.
Designing a Defense for Mobile Applications
Learn about the various considerations for defending mobile applications - from the application architecture itself to the myriad testing technologies.
Build a business case: developing custom apps
Learn how to maximize the value of custom applications by accelerating and simplifying their development.
Consolidation: the foundation for IT and business transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.