defacement in the web today

current trends and examples of website defacement *warning: links to mirrors of hacked sites may contain malicious code*

Monday, July 24, 2006

some real defacement

Over the weekend there were some actual big name defacements. Both of them are the result of an SQL injection vulnerability. I'm in no way surprised about this as these issues have been popping up all over the web recently. The more problems actually arise as a result of SQL injection I hope will lead to everyone looking at them as the much more serious problem that they actually are.

The first page hacked was Microsoft MSN of Singapore (mirror) site specifically the shopping subdomain. While it happened on Saturday the hacked page still seems to be up now which is two days later. Second was a subdomain of the NASA site (mirror). Third was not from an SQL injection but rather a vulnerability with the CMS software but it was the women page of the Microsoft MSN of Israel (mirror) site.

Two defacements for Microsoft over the same weekend. I'm sure that makes them feel just great about themselves. Maybe they'll get around to securing all their different sites around the world at some point in the near future.


Post a Comment

<< Home