02 Mar 2001
Burger King's UK website was flamed grilled by hackers twice today when its front page was replaced with a parody version of McDonald's site.
Although the site has now been taken offline, mirrors of the defacements kept at attrition.org hold valuable evidence which can be used to track the intruders.
The burgerking.co.uk site runs on Windows NT 4 and Microsoft's Internet Information Server (IIS), suggesting that this hack could be the latest in a fast growing list of NT servers being compromised, often through known vulnerabilities.
But the hacking group claiming responsibility for the defacement, Dreamscape2K, may have left evidence which could be used to track them down. The first defacement was actually hosted on the website dreamscape2k.net and just linked to burgerking.co.uk.
The site appears to be the hackers' homepage, containing links and downloads to Trojan horses and hacking resources, and offering contact details for the individuals claiming responsibility for the hack, Redsand and Dreamsdealer.
The site is hosted by and registered with a UK company, EasySpace.com, and the domain holder is a Jack Ruiz, based in Texas. If this man is connected with the hacking group, then they have left a very easy trail to follow.
Black ID, the Glasgow-based design agency responsible for the creation of the Burger King site, assured vnunet.com that it would be following this avenue of investigation.
Ross Cairns, strategy director for Black ID, confirmed that the company was responsible for maintaining the site "to a certain degree", although the actual hosting is outsourced to another company. He declined to name the company "until it had the opportunity to correct the damage done to the site and put a legitimate and secure version up".
He added that he would be grilling the company over its installation of the latest patches to guard against known exploits.
Mark Reed, a network security analyst at MIS, suggested that the burgerking.co.uk DNS server may have been hacked, and that the URL redirected to the defacement page housed on the dreamscape2k.net server.
Vulnerabilities in Bind, the operating system used by DNS servers, have made major headlines over the past few weeks, including a much publicised hit on the Nintendo site.
Reed said that because the Burger King site was running on NT and IIS, there was a strong possibility that the hack could have been carried out using a known exploit, almost as easily as saying "you want fries with that?".
Latest stories from Security
Related articles
Related jobs
Poll
What is the most important IT priority for your company this year?
Sneak peek at the forthcoming glass-based machine
Connect with V3.co.uk
This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes
Why good data management at all levels is essential in the modern business (video, 6mins)
Support Engineer - Cisco - LINUX - ISP - NOC - £30-40k...
Netapp Storage Engineer - NCDA - NCIE - Unix/ Linux Skills...
Cisco ISP Pre-sales consultant - CCNA - CCNP - CCIE...
Netapp Storage Engineer - NCDA - NCIE - Unix/ Linux Skills...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?
Burger king is shit
I buy a chicken burger at burger king at £5.99 and it was the worse burger i ever had it's not worth my money and there was little lettuce. the fries was great but the burger was too salty please cut down on the salt burger king are you trying to kill people.Belive me i will never again in my life eat at burger king
Posted by: D.noel 16 May 2007