NSA.gov Site Defacement

nsahack_thumbIt appears, according to the site defacement archive hosted at Zone-H, that on or around October 5th an NSA web site application was the victim of an SQL injection exploit resulting in a web site defacement. A web application in the careers section of nsa.gov loading a list of recruitment events at colleges was compromised.

10/05/2009 Appearance

Site appearance according to posting on Zone-H.

Site appearance according to posting on Zone-H.

Correct Appearance

NSA Career Fair schedule, correct appearance.

NSA Career Fair schedule, correct appearance.

SQL_Master

The attacker, using the handle SQL_Master, is attributed on Zone-H to site defacements of Google Tokelau (a territory in New Zealand) and a Microsoft web property in Korea. He has been associated with the Jurm team, a Moroccan hacker group known primarily for web site defacements of the Israeli version web sites of major companies, for example Kia, Sprite, and Fanta.

A Microsoft defacement attributed to SQL_Master from July of this year references “Agd_Scrop, free him”. Agd_Scorp was part of a Turkish hacker group called Peace Crew that defaced NATO and U.S. military web sites as a political reaction to Operation Cast Lead, or as its more commonly referred to the Gaza War, where Israel and Hamas forces clashed starting December of 2008. The two hacker groups are known to have partnered in defacements at the beginning of this year during the conflict in what was termed a virtual war where a few thousand Israeli web sites were defaced. Agd_Scrop appears to have been arrested by Kayseri (central Turkey) police over the summer, and faces up to 20 years in prison on various cybercrime related charges.

National Security Agency

The NSA or National Security Agency is the cryptologic intelligence agency of the United States. Created in 1952 under President Truman, its primary initial responsibility was the collection and analysis of foreign communications. In 2008 President George W. Bush signed a directive authorizing the NSA to monitor the computer networks of all federal agencies, giving the agency a primary role in federal efforts around cybersecurity.

Because of this role and other factors, including the agency’s historical role with cryptographic systems and controversial domestic wiretapping programs, NSA networks and computer systems are an attractive target for crackers. Further, because of the agency’s role in cybersecurity monitoring, defacements such as this one are embarrassingly problematic.

Zone-H.org

Zone-H.org, a site hosted in France which has been around since 2002, hosts an archive of defaced web sites. In January 2007 the site itself was a victim of a pseudo defacement, when a team from Saudi Arabia gained access to the registrar’s administrative panel and redirected the zone-h.org domain name to a different IP. The site’s mission is very similar to the defacement archive that used to be maintained at attrition.org. Both have been the subject of criticism over the years, the suggestion being that hosting the archive is itself an incentive for site defacements. The counter to this is that without the central archiving of the evidence of web site defacements, the problem would be less known and understood by the security community. Companies may also try to sweep such episodes under the rug. Besides, the site defacements would simply be posted in other places (forums and similar web sites).

Filed Under: Web Site Defacement

Tags: , , ,

Comments (13)

Trackback URL | Comments RSS Feed

  1. [...] career website. You would surely expected more from these guys. The wonders of outsourcing perhaps? Click here for the original article. Posted by nutzoid Filed in Hacking Leave a Comment [...]

  2. [...] I came across two stories about PayChoice (a payroll processing company) and the United States National Security Agency (NSA) getting hacked and really didn’t think twice about them.  Every organization is susceptible to online risk [...]

  3. i think gov sites are strict and their domains are well protected. The hacker/attacker must have been so genius to ever want to attack a gov site.

  4. THANKS for Good article ^^

  5. [...] know-how, any system can be hacked. PSN, Xbox Live, your bank's, the FBI's, the Pentagon's, the NSA's–any of them. Click the links. They've all been hacked. The bank? Oh, only World Bank. And Sony is [...]

  6. [...] know-how, any system can be hacked. PSN, Xbox Live, your bank's, the FBI's, the Pentagon's, the NSA's–any of them. Click the links. They've all been hacked. The bank? Oh, only World Bank. And Sony is [...]

  7. InwaniUndesia says:

    kredyt bez bik tanio kredyt bez bik po¿yczka chwilówki tanie

  8. Very nice post. I just stumbled upon your blog and wished to say that I have really enjoyed surfing around your blog posts. After all I’ll be subscribing to your rss feed and I hope you write again very soon!

  9. Coupon code says:

    I’m more than happy to uncover this web site. I want to to thank you for your time just for this fantastic read!! I definitely enjoyed every part of it and i also have you saved to fav to check out new information in your blog.

  10. sandra says:

    When some one searches for his essential thing, thus he/she needs to be available that in detail, so that thing is maintained over here.

  11. richard says:

    If you wish for to take a good deal from this paragraph then you have to apply these techniques to your won website.

  12. stephen says:

    Hey, I think your blog might be having browser compatibility issues. When I look at your blog in Safari, it looks fine but when opening in Internet Explorer, it has some overlapping. I just wanted to give you a quick heads up! Other then that, terrific blog!

Leave a Reply




If you want a picture to show with your comment, go get a Gravatar.