TV Home Forum

Wotsat.com hacked!!!!

(December 2003)

This site closed in March 2021 and is now a read-only archive
DA
Dave Founding member
Just been to the What Satellite web site @ www.wotsat.com and it appears to have been hacked!!!

http://www.dsmale.pwp.blueyonder.co.uk/wotsat.JPG

the red writting at the bottom is: Make a better world... Kill a north american today! Shocked


time of writting: 19.35

What Satellite website
DJ
DJGM
Hell, ya beat me too it . . . I was just going to post the same thing . . .

http://djgm.co.uk/stuff/wotsat-hacked.png
SP
Steve in Pudsey
Microsoft IIS strikes again Embarassed

http://uptime.netcraft.com/up/graph/?host=www.wotsat.com
DJ
DJGM
Steve in Pudsey posted:


Indeed it does . . .

http://djgm.co.uk/stuff/wotsat-netcraft.png

And to think that wotsat.com used to run on an UNIX based Apache webserver!
MT
MrTomServo
R331 1337 H4X0R$ use COMIC SANS MS!

Kids these days.

http://homepage.mac.com/robertpalmer/tvforum/sig.gif
BB
BBC TV Centre
Indeed, it seems that this bunch of Brazilian hackers has discovered an unpatched IIS machine.

The full text reads :-

Quote:
...=~=> Make a better world... Kill a north american today! <=~=...

%%%%%% We Are: %%%%%

Dominus Vis : eXcitado : Infektion : Leone Park : Spectro_BR : The Hell Raiser

%%%%% Greetz %%%%%

EsZp__, spiderkid, CcKw, #iboys, #ssh, Osama Bin Laden (for being a great anti-american one)
MN
MarkN Founding member
Probably script kiddies.

They've only replaced the front page...
http://www.wotsat.com/files.html
http://www.wotsat.com/digtv.html
http://www.wotsat.com/tvshows.html
etc.
CA
cat
Possibly not the best time to be posting messages like that on website, whilst associating yourselves in some way to Osama Bin Laden.

People like this do make me very jealous, though; it has taken me the best part of two years to work out how to use footnotes on Word, and even now I still have problems. Some people are just destined to be better at computers than others, and some are just destined to er... have lives, I suppose.
DJ
DJGM
Wotsat.com is now back to normal. Although if their webhost doesn't get the server patched, it'll
only happen again! Maybe WotSat should consider changing their webhost to one that uses a
much safer UNIX based server, when there current webhosting contract is due for renenewal.
PE
Pete Founding member
I always wonder why so many webhosts use Apache 1.3 when the version I have on my XP machine is 2.0.48, are the apache numbers different or have they not bothered to upgrade, I would have thought this of paramount importance.

Plus is a Windows machine with Apache and safer than one with IIS?
MN
MarkN Founding member
Hymagumba posted:
I always wonder why so many webhosts use Apache 1.3 when the version I have on my XP machine is 2.0.48, are the apache numbers different or have they not bothered to upgrade, I would have thought this of paramount importance.


From http://www.mail-archive.com/twilight-devel@lists.sourceforge.net/msg00898.html
(emphasis added)

Quote:
Actually, I'm more concerned with Apache 2... Apache 2 gives us a dependency on an unproven web server . Given the ridiculous amounts of importance we have to place on Apache , we need it solid . I'll probably give it about a month after it appears in sid.


A few points:

1. Apache 2 is a major rewrite of much of Apache 1. Many of those nice new shiny features have only been used in a development environment and not in the real world, where they may fail under heavy load/attack. This cannot be realistically simulated in the relatively closed environment of development systems.

2. There is also the problem that the developers have changed the way that the module system works in Apache 2, making many modules break. Popular modules, such as PHP, are still considered experimental when used with Apache 2.

3. "If it ain't broke, don't fix it" - Many webhosts will only upgrade Apache if they find that there is a serious problem.

Hymagumba posted:
Plus is a Windows machine with Apache and safer than one with IIS?


Personally, I would say that Apache 2 on Windows (not version 1, which was slow and clunky on Windows because it was built to run specifically on Unix-style systems) is better and safer than IIS on Windows, but not as safe as Apache on GNU/Linux or one of the *BSD systems.

This does not mean that you should use Apache 2 + Windows in a production environment though!

Newer posts