Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Information Security News: Security organisation's Web site hacked

Security organisation's Web site hacked

From: InfoSec News <isn_at_c4i.org>
Date: Wed, 26 Jan 2005 01:31:58 -0600 (CST)

http://news.zdnet.co.uk/0,39020330,39185308,00.htm

Dan Ilett
ZDNet UK
January 24, 2005

The Information Systems Security Association's UK Web site [1] was
defaced earlier this month after a server upgrade

The UK arm of the Information Systems Security Association (ISSA) has
admitted its Web site was hacked into and defaced earlier this month.
  
The organisation's Web site, which has the logo "the global voice of
the information security profession", was hacked after its server was
upgraded.

"In mid-December we switched to a different server and upgraded the
software," said Richard Starnes, president of the ISSA UK. "In the
patching process, some of the patches were missed. The Web site was
subsequently hacked. We took the Web site down, removed the
vulnerability, audited the Web site and reported it to the proper
authorities."

The ISSA UK Web site, which is sponsored by security companies Sophos,
(ISC)2 and Websense, was hacked on January 7th, Starnes confirmed.

According to a report on a hacking Web site [2], a hacker dubbed
iskorpitx penetrated and defaced the ISSA Web site on January 7th at
19:39. The mirror image of the defacement hack showed large pictures
of the Turkish flag and a message saying "HACKED By iSKORPiTX (Turkish
Hacker)". The browser is then diverted to another Web site, which
displays a large photo of dolphins.

The ISSA board in the US includes representatives from Dell, Forrester
Research and Symantec. The ISSA says it is the largest international
not-for-profit association specifically for information security
professionals.
 
[1] http://www.issa-uk.org/
[2] http://www.zone-h.org/

_________________________________________
Open Source Vulnerability Database (OSVDB) Everything is Vulnerable - http://www.osvdb.org/
Received on Jan 26 2005

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]