|
Microsoft defaced once again! |
|
|
|
|
Tuesday, 25 May 2004 |
|
www.zone-h.org/en/news/read/id=4251/
|
|
A Portuguese group dubbed "Outlaw group" has defaced the Microsoft.com web site, the hacked page (www.microsoft.com/mspress/uk/) isn't available anymore since 9:00pm GMT monday 24.
The defacers modified the title and introduction of the Microsoft Press section to write "Owned OutLaw Group by Pharoeste e Wolfblack" in order to prove that they compromised it.
They found the administration page and performed a SQL injection attack, allowing them to manage the content of the section.
Here are the mirror and a screenshot of the defacement:
http://www.zone-h.org/defacements/mirror/id=1246363/
http://www.zone-h.org/files/77/microsoft.com.gif
However, the defacement seems contained in google's cache since a long time, but somehow Microsoft took off the page only when it got notified to our mirror robots. As if Microsoft was constantly monitoring our "on hold" list as many companies are doing.
We remind you about the possibility to subscribe our early warning list to be promptly notified about intrusions into your server (it's a FREE service!) http://www.zone-h.org/en/warnlist
http://www.google.com/search?q=cache:R7iYePwUPrsJ:www.microsoft.com/mspress/uk/
Here is the list of all the servers attacked by this group:
http://www.zone-h.org/defacements/filter/filter_defacer=OutLaw
Two months ago 2 Microsoft Korea web sites were defaced, but this time the main and *supposed* secure Microsoft.com web site is defaced by using a common and well known vulnerability!
The Microsoft Mexico (microsoft.com.mx) web site has also been defaced last week, the Turkish defacer named Iskorpitx put his usual page in the cgi-bin folder. He probably took advantage of a recent vulnerability in the Windows operating system (MS04-011), so now the question is: why don't they apply their own patches?
You can have a look at the mirror here:
http://www.zone-h.org/defacements/mirror/id=1212152/
And all the sites defaced by this attacker:
http://www.zone-h.org/defacements/filter/filter_defacer=iskorpitx
Below is the list of all the past Microsoft defacements:
03/28/2004 http://member.microsoft.co.kr
http://www.zone-h.org/en/defacements/mirror/id=1093705/
--------------------------------------
03/28/2004 http://register.microsoft.co.kr/index.htm
http://www.zone-h.org/defacements/mirror/id=1090606/
--------------------------------------
03/24/2002: http://cust-supp-chat.one.microsoft.com
http://www.zone-h.org/en/defacements/view/id=29504/
--------------------------------------
03/16/2002: http://officecouncil.rte.microsoft.com http://www.zone-h.org/en/defacements/view/id=28719/
--------------------------------------
03/10/2002: http://olab2.research.microsoft.com http://www.zone-h.org/en/defacements/view/id=28192/
--------------------------------------
07/27/2001: http://www.microsoft.com.sa http://www.zone-h.org/en/defacements/view/id=13942/
--------------------------------------
06/21/2001: http://arulk.rte.microsoft.com http://www.zone-h.org/en/defacements/view/id=18638/
--------------------------------------
06/21/2001: http://redsand.rte.microsoft.com http://www.zone-h.org/en/defacements/view/id=18640/
--------------------------------------
05/08/2001: http://streamer.microsoft.com http://www.zone-h.org/en/defacements/view/id=18686/
--------------------------------------
05/04/2001: http://www.microsoft.com.sa http://www.zone-h.org/en/defacements/view/id=18701/
--------------------------------------
05/04/2001: http://www.microsoft.com.mx http://www.zone-h.org/en/defacements/view/id=18700/
--------------------------------------
04/27/2001: http://www.microsoft.com.gr http://www.zone-h.org/en/defacements/view/id=27096/
--------------------------------------
04/20/2001: http://www.microsoft.com.gr http://www.zone-h.org/en/defacements/view/id=18722/
--------------------------------------
06/03/2000: http://www.microsoft.com.br http://www.zone-h.org/en/defacements/view/id=12061/
--------------------------------------
01/08/2000: http://www.microsoft.com.tw http://www.zone-h.org/en/defacements/view/id=11740/
|
 |  L.v.d.Berg Written by Guest on 2006-06-19 16:11:38 |
Powered by a Zone-H(ified) version of AkoComment 3.0! DISCLAIMER: Forum postings are the opinion of the posting author alone, and should not be taken as the opinion of Zone-h. The author is entirely and solely responsible for all content that he/she uploads, posts, or otherwise transmits via the website. Zone-h is not responsible for such content. However, Zone-h shall have the right, but not the obligation, to delete, move, or edit any content that violates this agreement or is otherwise objectionable as determined by Zone-h in its sole discretion and without notice. |