Friday, February 22, 2008

Another gov site hacked

Hi folks,

Who can see what's wrong with this picture?



Looks pretty reasonable, doesn't it? Here's what you see if you have a suitable monitoring tool...



Enquiring Minds will wonder why a county government site is reaching out to pepato.org.

And here's what you see on a vulnerable pc, _if_ you're running another suitable monitoring tool...



And here's the offending code in the page source ...



Yes, it's hacked. Bit hard to tell without some tools, though, eh? We've told the county, so we expect it'll get cleaned up very quickly, but be careful in the mean time.

Cheers

Roger

Labels:

3 Comments:

At 9:42 AM, Blogger Wirerat said...

What monitoring tools are you using that are shown in the images?

 
At 9:45 AM, Blogger Wirerat said...

What two monitoring tools were you using?

 
At 4:22 PM, Blogger tcsl said...

hi adam,

they`re research tools we developed for our internal use. they`re pretty neat though.

roger

 

Post a Comment

<< Home