news4geeks.net
18Apr/120

15-year-old hacks 259 websites in just 3 months

If you’re looking for a gauge as to how good or bad web security is at the moment, look no further than the case of a 15-year-old from Austria who, over the course of 3 months, managed to hack 259 company websites and databases.

The young man (boy?) was anti-social and turned to the Internet for “praise and affirmation.” He found a hacking community that rewarded successful attacks, downloaded the tools he needed, and set about bypassing the security of different websites.


Between January and March this year he successfully gained access to 259 sites including a few run by adult entertainment companies. Any that he defaced were left with a tag like the one in the screenshot above. His hacker name was ACK!3STX.

The Federal Criminal Police Office (BMI) in Austria identified the boy after many complaints when he failed to hide his IP address during a hack. It was logged and passed to the BMI who arrested him. It didn’t take long for a confession to be forthcoming.

The attacks weren’t aimed at any particular sites, instead it turns out he was just looking for security holes he could exploit in any and all websites he visited. His reason? He was bored as well as wanting praise from the hacker community.

Hacking 259 websites in 3 months is impressive not because a 15-year-old did it, but because it seems to have been done so easily. A boy with no experience and using free tools did this. Clearly website security still isn’t a major concern for the majority of companies being hacked and/or the frameworks being used to implement them.

(Source: geek.com)

 

NSA’s lax ban on USB drives may have contributed to PRISM leaks
News about the NSA and FBI's surveillance programs doesn't just have privacy advocates wringing their hands in consternation; IT security analysts have raised the critical question as to ...
READ MORE
Oracle to ship 40 security fixes for Java SE
Oracle is set to release a patch set for Java SE that targets 40 security vulnerabilities. Thirty-seven of the weaknesses can be exploited over a network without requiring an ...
READ MORE
Microsoft late Friday confirmed that a "zero-day," or unpatched, vulnerability exists in Internet Explorer 8 (IE8), the company's most popular browser. According to multiple security firms, the vulnerability ...
READ MORE
If you run a bank and use an IP video camera from D-Link, you may want to pay attention to this. A number of IP-based surveillance video cameras made by D-Link ...
READ MORE
McAfee said it has found a vulnerability in Adobe Systems' Reader program that reveals when and where a PDF document is opened. The issue is not a serious problem and does ...
READ MORE
NSA’s lax ban on USB drives may have
Oracle to ship 40 security fixes for Java
Microsoft admits zero-day bug in IE8, pledges patch
D-Link firmware flaws could allow IP video stream
McAfee spots Adobe Reader PDF-tracking flaw

Comments (0) Trackbacks (0)

No comments yet.


Leave a comment

Trackbacks are disabled.