Welcome | Sign In
TechNewsWorld.com
Malware

Cyber-Vandals Scrawl Antiwar Message on UN Site

Print Version
E-Mail Article
Reprints
Cyber-Vandals Scrawl Antiwar Message on UN Site

Calling themselves "CyberProtest," a group of hackers initiated what security experts believe was a SQL injection exploit on the Web page of United Nations Secretary-General Ban Ki-Moon. The hackers changed some text in one of Ban's speeches to include text accusing the United States and Israel of killing children.


A group of hackers infiltrated the United Nations' Web site over the weekend, defacing the page of Secretary-General Ban Ki-Moon with antiwar political graffiti.

Hackers reportedly replaced portions of recent speeches made by Ban with accusations that the United States and Israel are killing children. An Italian software developer first reported the hacked Web site, which was out of commission for most of Sunday as the UN scrambled to scrub it of the insertion. By Monday it was operational again.

By all accounts, the attack appeared to have been a SQL injection exploit, allowing the hackers to add their own HTML code to the Web site. The graffiti on the Web site suggested that at least three hackers that use the name CyberProtest were involved.

The Next Step

Beyond some embarrassment, political graffiti does not cause much harm either in cyberspace or in the real world. However, the fact that hackers were able accomplish their goals could have deeper ramifications, Sophos security consultant Ron O'Brien told TechNewsWorld.

"The concern about the ability to hack public Web sites is increasing because in addition to defacing the Web site, it is also possible to embed malware," he commented.

No malware was embedded in the UN site during this attack, he added.

The Latest Vector

It is becoming increasingly clear that infecting public Web sites is the latest preferred vector for hackers, he said.

"We are asking everyone who owns or runs a Web site to make sure they are not vulnerable in that respect," O'Brien said.

The best way to ensure a Web site is free of malware is to scan it at the server level, he noted.

From 5,000 to 29,000

Over the last month there has been a huge surge in such attacks on Web sites, he added -- from 5,000 per day a month or so ago to an average of 29,000 per day now.

More worrisome is that some are legitimate and well-trafficked Web sites. Besides the UN, the IRS and the U.S. Department of Transportation have had their Web sites hacked recently, according to O'Brien.

The typical end goal for these attacks has been to establish armies of zombie computers that can be used in subsequent attacks.

More Than Just a Prank

Over the July 4 weekend, for example, a large malware campaign circulated using e-greeting cards.

"You clicked on the card and were redirected to the Web site that contained the malicious code," O'Brien said.

Last week, the cyberspace community saw the first fruits of that campaign: the largest spam cycle to date, according to O'Brien.

The attack helped further a pump-and-dump stock scheme that Sophos called one of the largest to date.


Print Version E-Mail Article Reprints More by Erika Morphy


Related News Alerts

Sophos Activate Alert | Search Archives

More by Erika Morphy

Twitter Flies the Coop
March 16, 2010
Twitter has found a way to flit around to other Web locales through a feature called "@anywhere." Amazon, eBay, The Huffington Post, YouTube and others will be able to open a Twitter window to users, allowing them to send and receive messages without leaving the site. Social media marketers are salivating at the possibilities.
Pegasystems' Chordiant Buy Not Without Risks
March 16, 2010
Pegasystems' acquisition of Chordiant could lead to a merging of the companies' synergies, resulting in an Oracle-type solution at a lower cost. Or, it could lead to conflicts over philosophical perspectives and infighting over which technology to keep and which to let go, ultimately derailing the integration.
Google Poised to Make Good on Its China Threat
March 15, 2010
Negotiations between Google and China over Web censorship have apparently failed to produce a compromise that both sides could agree to. Although no official announcement has been made, all signs are pointing in the direction of Google's imminent withdrawal of its search operations from the country.
Don't miss a story -- sign up for our FREE e-mail newsletters and view the latest headlines at a glance.
Tech News Flash [ View Sample ]
E-Commerce Minute [ View Sample ]
ECT News Network Weekly Newsletter [ View Sample ]
Shortcuts
ECT News Network Information
Reader Services
Corporate
ECT News Network