A couple of NASA-run websites hacked2009-12-07 10:52 by PhilipTags: hacking, NASA, website security Miscreants took advantage of weak security to hack into two NASA-run websites over the weekend. The websites of NASA's Instrument Systems and Technology unit and Software Engineering division were broken into and screenshots illustrating the hack posted online. Hackers appear to have taken advantage of SQL Injection flaws and poor access controls in mounting the attack, reports Gunter Ollmann, an ex-IBM security expert who is now VP of Research at security firm Damballa. Obfuscated screenshots from the hack were subsequently posted onto a full disclosure mailing list: Seems the administrator's credentials (25 of them) were lifted off both web servers. Read more -here-
Post your review/comments
rate:
avg:
![]() ![]() ![]() ![]() ![]() |