IDC Web site defaced by 'eco-terrorists'

The Web site of IT research firm IDC Australia has been hacked by a group purporting to be Brazilian environmental terrorists.

A page created to present new research to media and analysts had been serving content created by a group calling itself the "RitualistaS Group".

"Breve [sic] New World!" the page said, above an image of a semi-molten earth nested between icons of global warming, including smoke stacks, nuclear plant cooling towers and burning forests.

Hackers going by the names of "s3r14l k1ll3r" [Serial Killer], "lc3 Br34k" [Ice Break] and "Mental_Way" have laid claim to the attack.

The hackers' message -- presumably to the press -- is in the form of a brief poem, which urges readers to recognise the earth is under extreme pressure, which they liken to a pressure cooker, that is of mankind's making.

"This is the reality, the reality you created AND DOES [sic] NOTHING TO CHANGE!" the poem concludes.

IDC shut down the page immediately after being contacted by ZDNet Australia.

Graeme Muller, managing director of IDC told ZDNet Australia: "[The page] was hacked but it's an old page."

"We're in the process of having our Web content more centralised but we still have a number of shell pages out there," he said. "It's an interesting thing to happen and one of those things you never think is going to hit you, but you get splashed by a puddle and realise how close it was."

IDC Australia's Web site servers are isolated from its customer database, said Muller. "The worst you can do is to make us look silly," he said, adding that the experience was a "very interesting learning curve."

"If you don't need [an unused Web page], don't leave it lying around because it could leave you exposed through a backdoor," he said as a warning to other businesses.

Security analyst Chris Gatford, from security firm Pure Hacking, told ZDNet Australia the hackers had found a flaw in IDC's Web site, allowing them to modify the site's ASP.NET code -- the language used to write code for Web applications using Microsoft's .NET platform -- to include a link to image and sound files which override the content that would normally appear.

"The image file is stored off a free image hosting service and [the page] links to a MP3 file, which is particularly annoying," said Gatford.

The source of the image is a free US-based image hosting service called "Imageshack" while the source of the MP3 file has been traced to the once-popular free Web-hosting service, Lycos.

IDC's own research has revealed that 70 percent of respondents are not confident in their organisation's security, while the main challenges in battling security threats are due to budget constraints, the increasing volume and sophistication of attacks, and a lack of skilled staff.

Screenshot of the hacked IDC page

Screenshot of the hacked IDC page.

Advertisement

Talkback 3 comments

    Finally they inform us King of Sydney -- 17/10/07

    Good story.

    This has to be the most useful information ever seen on an IDC website.

    Pitiful DarkMalice -- 18/10/07

    What I find very amusing is that these 'eco-terrorist' or job-less hippies as they are reffered to in my books, are using a technology that uses a power-source they claim is causing all the problems of the world, what do they think happens when they turn a PC on? magical pixies power it...
    I'm sorry but these 'eco-terrorists' are a bunch of little lamers.....

    DarkMalice

    Hyperbole or hypocrisy Sydney Simmo -- 18/10/07

    'eco-terrorists' is the usual hyperbole. They've just defaced a web page for dog's sake, not killed someone

Add your opinion

Latest Videos

Blogs

  • Darren Greenwood Telecom NZ savings damage prospects
    If Telecom NZ wants to have any of the NZ$1.5 billion the government intends to spend on its new broadband network, it had better think long and hard before offshoring 1500 jobs.
  • Array iiNet: The whys and what nows
    Last week the Federal Court ruled that internet service providers are not responsible for copyright violation by their customers. This is an important decision not just for iiNet, which spent around $4 million defending the case, but for all ISPs in Australia and, indeed, globally.
  • Array Govt, hurry up with releasing data
    A programmer scraped data from the My School website to make some really cool heat maps showing regions of smart schools — no thanks to the government, which didn't supply the data in any useful kind of format.
  • More blogs »

Tags

Back to top

Featured