All the latest UK technology news, reviews and analysis

Security information website hacked

by Andrew Craig

30 Oct 2000

Be the first to comment

  • Tweet this

A cracker has broken into a leading computer security information website that survives hundreds of attempted hacks every week.

AntiOnline, which has the strapline 'Hackers know the weaknesses in your system, shouldn't you?' and carries security news and information, was defaced on Saturday by a hacker known as n1nor. The hacker replaced the front page of the site with a message boasting about the security flaw he had found.

The site is a well-known target for hackers and publishes the internet address of all hackers who have attempted to crack its defences - hundreds a week - under the heading 'Leave us alone'.

n1nor mocked the owner of the site, John Vranesevich, through the defacement. "I could have sworn this site was deemed unhackable," he said. n1nor also posted a picture of Vranesevich under the heading 'Hackers know the weaknesses in my system, shouldn't I?', mocking the AntiOnline strapline.

Security experts said AntiOnline has good security measures in place, but a weakness had been found in some of its Perl scripting. Chris McNab, network security analyst at MIS Corporate Defence, said: "AntiOnline on paper has a very secure network. One of the scripts has been vulnerable to an exploit. [The hacker has] side-stepped firewall and intrusion detection systems."

n1nor said the exploit did not require much skill. "The lesson inherent in this defacement is that even sites with only a webserver accessible can be penetrated. Determined intruders will scour your website looking for information leaks, dim-witted misconfigurations and insecurities in server-side programs," he said.

Last month, hackers broke into Slashdot.org, another high-profile US technology website.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

30%

1%

10%

59%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Riso

Colour printing: why the bill keeps outstripping the budget

The wrong printers, for the wrong tasks on the wrong contracts

Qlikview

Magic quadrant for business intelligence platforms

Who leads the BI pack and who should we be watching out for?

Buyer/Procurement Specialist

Buyer/Procurement Specialist x 8 £30,000 - £40...

Systems Analyst/Architect

Systems Analyst/Architect £30,000 - £40,000 + excellent...

Software Developer

Software Developer Up to £27,000 + excellent...

Software Engineer/Developer (C#, C++)

Software Engineer/Developer (C++) £25,000 - £40...

To send to more than one email address, simply separate each address with a comma.