Share

Related Links

Related Stories

  • Royal Navy website sunk by SQL injection hacker
    One of the websites operated by the Royal Navy was shut down yesterday, after a hacker called TinKode gained unauthorised access to the server using an SQL injection attack.
  • Iranian Cyber Army offers its botnet for rental
    The Seculert Research Lab is reporting that a hacktivist group called the Iranian Cyber Army is renting out access to its botnet. Although not the first time a botnet has been put up for rent – the first known botnet/crimeware renter was BadB in the early noughties – this is one of the most high-profile 'offers' seen to date.
  • Iranian cyber army offers its botnet for rental
    The Seculert Research Lab is reporting that a hacktivist group called the Iranian Cyber Army is renting out access to its botnet. Although not the first time a botnet has been put up for rent – the first known botnet/crimeware renter was BadB in the early noughties – this is one of the most high profile 'offers' seen to date.
  • The art of social engineering
    Social engineering is not new and it’s here to stay. Kevin Townsend looks at how social networking is a social engineer’s best friend and asks what we can do to protect ourselves from this very real – and very personal – threat
  • The Spy Who Hacked Me
    James Bond was more of a jock than a nerd, and he probably wouldn’t have known how to use a computer, says Danny Bradbury. How things have changed…

Top 5 Stories

News

‘Iranian Cyber Army’ hacks Twitter

18 December 2009

A hacker group called ‘Iranian Cyber Army’ hacked Twitter for an hour early on 18 December, redirecting users to a website containing a green flag and Arabic writing.

Graham Cluley at Sophos, said in his blog: “Fortunately there is no indication at this point that the page was carrying malicious code, and this attack appears to have had political motivations rather than designed to steal confidential information from users.”

Cluley pointed out that although the hacker group calls itself the Iranian Cyber Army, this does not necessarily mean they are from Iran. However, he pointed out that Twitter was widely used by anti-government protesters in Iran earlier this year, and that Twitter delayed planned maintenance to allow Iranians to continue to share information over the service.

Part of the hacker message from the Iranian Cyber Army read: “The USA thinks they control and manage internet access, but they don’t. We control and manage the internet with our power, so do not try to the [sic] incite Iranian people.”

Cluley expressed relief, however, that ‘all’ that happened was that Twitter users were taken to a site displaying a political message: “Just imagine what could have occurred if they had pointed people to a phishing site posing as Twitter (designed to steal login names and passwords) rather than a political message?”

In a brief blog entry, Twitter’s Biz Stone said that the Twitter DNS records were compromised by an unauthorised party.

Cluley explained that this does not necessarily mean that the Twitter servers were breached by the ‘Iranian Cyber Army’, but that someone managed to somehow change the DNS look-up for twitter.com.

Although this of course raises the question of how the hackers managed to change the Twitter DNS records…

This article is featured in:
Internet and Network Security • Public Sector

 

Comment on this article

You must be registered and logged in to leave a comment about this article.