IDC Web site defaced by 'eco-terrorists'

The Web site of IT research firm IDC Australia has been hacked by a group purporting to be Brazilian environmental terrorists.

A page created to present new research to media and analysts had been serving content created by a group calling itself the "RitualistaS Group".

"Breve [sic] New World!" the page said, above an image of a semi-molten earth nested between icons of global warming, including smoke stacks, nuclear plant cooling towers and burning forests.

Hackers going by the names of "s3r14l k1ll3r" [Serial Killer], "lc3 Br34k" [Ice Break] and "Mental_Way" have laid claim to the attack.

The hackers' message -- presumably to the press -- is in the form of a brief poem, which urges readers to recognise the earth is under extreme pressure, which they liken to a pressure cooker, that is of mankind's making.

"This is the reality, the reality you created AND DOES [sic] NOTHING TO CHANGE!" the poem concludes.

IDC shut down the page immediately after being contacted by ZDNet Australia.

Graeme Muller, managing director of IDC told ZDNet Australia: "[The page] was hacked but it's an old page."

"We're in the process of having our Web content more centralised but we still have a number of shell pages out there," he said. "It's an interesting thing to happen and one of those things you never think is going to hit you, but you get splashed by a puddle and realise how close it was."

IDC Australia's Web site servers are isolated from its customer database, said Muller. "The worst you can do is to make us look silly," he said, adding that the experience was a "very interesting learning curve."

"If you don't need [an unused Web page], don’t leave it lying around because it could leave you exposed through a backdoor," he said as a warning to other businesses.

Security analyst Chris Gatford, from security firm Pure Hacking, told ZDNet Australia the hackers had found a flaw in IDC's Web site, allowing them to modify the site's ASP.NET code -- the language used to write code for Web applications using Microsoft's .NET platform -- to include a link to image and sound files which override the content that would normally appear.

"The image file is stored off a free image hosting service and [the page] links to a MP3 file, which is particularly annoying," said Gatford.

The source of the image is a free US-based image hosting service called "Imageshack" while the source of the MP3 file has been traced to the once-popular free Web-hosting service, Lycos.

IDC's own research has revealed that 70 percent of respondents are not confident in their organisation's security, while the main challenges in battling security threats are due to budget constraints, the increasing volume and sophistication of attacks, and a lack of skilled staff.

Screenshot of the hacked IDC page

Screenshot of the hacked IDC page.

Advertisement

Talkback 3 comments

  1. Finally they inform us King of Sydney -- 17/10/07

    Good story.

    This has to be the most useful information ever seen on an IDC website.

  2. Pitiful DarkMalice -- 18/10/07

    What I find very amusing is that these 'eco-terrorist' or job-less hippies as they are reffered to in my books, are using a technology that uses a power-source they claim is causing all the problems of the world, what do they think happens when they turn a PC on? magical pixies power it...
    I'm sorry but these 'eco-terrorists' are a bunch of little lamers.....

    DarkMalice

  3. Hyperbole or hypocrisy Sydney Simmo -- 18/10/07

    'eco-terrorists' is the usual hyperbole. They've just defaced a web page for dog's sake, not killed someone

Add your opinion


ZDNet's CIO Vision Series

Customs | Murray Harrison, CIO

Australian Customs CIO Murray Harrison dislikes SLAs and runs away if a vendor talks to him about innovation. In this interview, he also explains why getting excited about gadgets can be dangerous and talks about how Customs' outsourcing strategy has evolved.

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Munir Kotadia iPhone suckers test our patience
    So how many of you have bought a 3G iPhone? Do you feel like a sucker? If you don't, maybe you will once your first bill arrives.
  • Array Westpac bank: AVG's toughest competitor
    The next time you're buying antivirus software, don't go direct to Symantec or McAfee. Don't download free antivirus. And definitely don't see Harvey Norman. Ask your bank — they're quite literally giving the stuff away.
  • Array Will you manage in the exabyte era?
    Mammoth growth in storage volumes is a fact of life, but even so it's helpful to pause occasionally and try and work out whether our information strategies have fallen hopelessly out of step with the pace of technological growth and changes in costs.
  • More blogs »

Tags

Back to top

Featured