بالعربية
Where am I? Home /


BREAKING NEWS :

Website defacing – a new trend in hacking?

By Ivor Rankin on Sunday, June 08, 2008


The recent hacking of a prominent UAE newspaper's website by a nationalist group has triggered off debates on the source and reason behind this attack.

Whilst no details have been made publicly available regarding this defacement; it was at most an unfortunate, opportunistic attack perpetrated by a hacking group who tends to favour mass defacements of websites as their Modus Operandi.

The hacking group in question is likely to choose web servers based on a particular server operating system, as seen in over 95% of all their previous exploits dating back to 2006. ‘Mass defacers' usually target blocks of Internet addresses to find vulnerable systems and then proceed to exploit the vulnerabilities, in this case with defacements. Such attackers are purely opportunistic, and tend to target operating systems or web servers that they are technically well-versed with or use attack tools to assist them in their exploits.

Whilst this hacker group defaced four websites in the UAE around the same time, it is interesting to note that there have been over 30 publicly known defacements of websites in the UAE since the start of the year. Such attacks against organisations anywhere in the world - regardless of whether they are painted under the veil of hacktivism, extortion or political activism - are, at the end of the day, just cyber crimes perpetrated by cyber criminals. Globally, organisations can do little to control or mitigate an attacker's motivations; in depth security assessments, testing and sound security practices, and an increased 24x7 security vigilance are the essential prerequisites to thwarting these and other similar attacks in future.

Although there is a lot of speculation on various forums, etc about this incident; people should not read more into this incident other than it was simply an opportunistic attack. It in no way indicates state sponsored cyber attacks of any kind, and more interestingly the vast majority of this hacker group's previous website defacements targeted countries as far and wide as Brazil, Norway, China, the US and other countries all with defacement messages stating their affection for Iran and Azerbaijan.
Story continues below
advertisement



The global need for improved, more stringent web application security design, and effective patch management are vital to the continued uninterrupted delivery of services by Internet-facing organisations in the era of Web 2.0 and the ever evolving risks that organisations will continue to face.

Ivor Rankin is Senior Technical Security Practice Manager, Symantec Global Security Services


User Comments

All posts are sent to the administrator for review and are published only after approval. ITP.net reserves the right to remove any comment at any time for any reason. Please keep your responses appropriate and on topic.
Name *
( Remember Me )
Email *
(Your email address will not be published)
City
Country
Subject *
Comment *
 


Please click post only once - your comment will not be published immediately.

Related Comment

Henry Bell discusses ways to stay safe while surfing on coffee shops' wireless networks 

Related Feature

Making space

Networks

NME looks at what is being done across the region when it comes to the effects of SAN and iSCSI. 

Related Feature

Healthy networks

Networks

The hospitality and healthcare sectors are experiencing tremendous growth in the Middle East. With that growth comes an... 


Competitions

WIN Track Ready

Ends On Wednesday, 15 July 2009

If you want to have precise control over your mouse pointer and don’t have the space for a mouse to run free on your desk, one of the five Trackman Marbles we’re giving away is just what you need.


Advertising Features


Latest Products
ESET Smart Security 4

Software | Applications | June 2009

Ready to protect.

RATING


Samsung SGH-D980

Hardware | Handhelds | June 2009

Two phones in one.

RATING


BlackBerry Bold

Hardware | Handhelds | June 2009

Built for business users.

RATING


Logitech Illuminated Keyboard

Hardware | Peripherals | June 2009

As smooth as butter.

RATING


Lead Manager – Communications
Location: Doha, Qatar
Customer Care Manager
Location: Abu Dhabi, UAE
Software/Hardware Engineer
Location: Saudi Arabia
Schedule Performance Analyst
Location: Saudi Arabia
Installing & Commissioning Technicians/Engineers
Location: Riyadh, Saudi Arabia
More Technology Jobs >

For editorial enquiries contact
Mark Sutton
mark.sutton
@itp.com
To advertise, contact
Ahmad Bashour
+971 4 210 8549
or ahmad.bashour
@itp.com


Arabian Computer News Channel Middle East Channel Middle East - Arabic Charged CommsMEA Network Middle East Windows Middle East Windows Middle East - Arabic ALL ITP TITLES