Olympic champion Phelps' website defaced in Turkish hack

Turkish hackers appear to have briefly gotten their hands on the website of Olympic record breaker Michael Phelps. Michael Phelps can fend off all competition in the pool, but he can't swim away from vandals in cyberspace.

Written by Global Secure Systems
August 22, 2008
Original

The website for the Olympic champion, who just won eight gold medals in Beijing, apparently was temporarily defaced this week by Turkish hackers, according to a report Wednesday night on MSNBC.

A screenshot of the hack -- which did not appear to carry any payload, malicious or otherwise -- was posted Thursday on Digg. The defacement contained a link that led to a Turkish language website featuring some text, a picture of the Turkish flag and a portrait of the country's first president, Mustafa Kemal Ataturk. The text appears to be a patriotic quote from Ataturk.

The hack apparently occurred on the "Ask Michael" portion of the website, where users presumably can enter personal content. That section of the site was not reachable on Thursday and appears to have been taken offline.

Vaclav Vincalek, president of Vancouver-based Pacific Coast Information Systems, an IT consulting firm, said the hackers likely were "script kiddies looking to make a political statement.

"He's famous," Vincalek told SCMagazineUS.com on Thursday. "It's kind of a trophy for hackers."

They likely were able to deface the site through an insecure web server, which enabled them access to the underlying directory, or through some attack means such as cross-site scripting, he said.

To prevent similar breakdowns, websites must run thorough scans of their code and ensure their hosting providers have applied the latest security patches, Vincalek said.

A Phelps website spokeswoman did not respond to a request for comment.





More Links:
image
Contact us for help and product info
image
View our F.A.Q.section
image
Site Map
image
image
jpg" width="125" height="1" vspace="6" alt="image">
Site Map
image
image
image
-link.jpg" width="125" height="1" vspace="6" alt="image">
Contact us for help and product info
image
View our F.A.Q.section
image
Site Map
image
image
formation to attackers, for example.

"It doesn't matter if you get a fake MD5 certificate, because you never check your certs anyway," he said. "There are dozens of ways to fake that, and this is yet another."





More Links:
image
Contact us for help and product info
image
View our F.A.Q.section
image
Site Map
image

 

 

Upgrade to the 3Gweb®
Self-Defending
Web server

before
you get a hit  
by an attacker!

 


image
/font>被黑客攻击和