Thursday, August 31, 2017

WikiLeaks Website Apparently “Hacked” By OurMine Using DNS Poisoning

WikiLeaks Website Apparently “Hacked” By OurMine Using DNS Poisoning
August 31, 2017

https://fossbytes.com/wikileaks-hacked-by-ourmine-dns-poisoning/

No, this is not some bug bounty contest hosted by the Wikileaks – their website known for its high-profile leaks against big names like the CIA. The website was attacked (now restored) by the hacker group called OurMine who call themselves White Hats trying to point out bugs.

Users weren’t able to access the website on Thursday morning which displayed the following message.

“Hi, it’s OurMine (Security Group), don’t worry we are just testing your…. blablablab, oh wait, this is not a security test! Wikileaks, remember when you challenged us to hack you?”

“Anonymous, remember when you tried to dox us with fake information for attacking wikileaks ?”

“There we go! One group beat you all! #WikileaksHack lets get it trending on twitter!”


The cyber-attack that embarrassed Wikileaks was an act of DNS poisoning done by OurMine. Wikileaks’ actual servers weren’t compromised during the process. And the website was able to get back online after a while.

This type of attack involves configuring a DNS server to redirect to a new web page URL, hosted on some other server, for a given IP address during resolution. In this case, the new web page was hosted on OurMine’s servers where the users saw the message. You can read more about how DNS works in this detailed post.

It’s not the first time OurMine has gone after Wikileaks. They launched two DDoS attacks against the website between December 2015 and July 2016.

The latest attack also brings to attention the enraged attitude of the hacker group against Anonymous. The personal details of OurMine members were doxed by Anonymous after they failed to accept Anonymous’ request to stop DDoSing Wikileaks.

OurMine is a known hacker group which was in the news last year for compromising the Twitter accounts of CEO Jack Dorsey and Yahoo’s Merissa Meyer. And the Pinterest and Twitter accounts of Facebook’s boss Mark Zuckerberg.

Recently, the OurMine also dropped their wrath on the HBO’s social media accounts. The hack was a part of the bigger hacking campaign against HBO by various attackers.

If you want to find out about what DNS is, see below article

https://www.theguardian.com/technology/2010/dec/03/dns-ip-ddos-explained
Explainer: what is 'DNS', why does it matter and how does it work?




ALSO SEE

https://www.theverge.com/2017/8/31/16232164/wikileaks-hacked-ourmine-website
WikiLeaks website apparently hacked by OurMine
‘Remember when you challenged us to hack you?’
Aug 31, 2017, 4:13am EDT

WikiLeaks’ website appears to have been hacked by a group called OurMine, whose previous hacks have targeted tech CEOs, companies, and news sites.

As of early Thursday morning, the WikiLeaks.org homepage displayed a message that read: “Hi, it’s OurMine (Security Group), don’t worry we are just testing your…. blablablab, oh wait, this is not a security test! Wikileaks, remember when you challenged us to hack you?” READ MORE IN ARTICLE

================================


https://www.theguardian.com/technology/2017/aug/31/wikileaks-hacked-ourmine-group-julian-assange-dns-attack
WikiLeaks 'hacked' as OurMine group answers 'hack us' challenge
Julian Assange’s data-leaking site defaced via DNS attack, showing humiliating messages for organisation that prides itself on being tech savvy

Thursday 31 August 2017 05.32 EDT Last modified on Thursday 31 August 2017 11.18 EDT
WikiLeaks suffered an embarrassing cyber-attack when Saudi Arabian-based hacking group OurMine took over its web address.

The attack saw visitors to WikiLeaks.org redirected to a page created by OurMine which claimed that the attack was a response to a challenge from the organisation to hack them.

But while it may have been humiliating for WikiLeaks, which prides itself on technical competency, the actual “hack” appears to have been a low-tech affair: the digital equivalent of spray-painting graffiti on the front of a bank then claiming to have breached its security.

The group appears to have carried out an attack known as “DNS poisoning” for a short while on Thursday morning. Rather than attacking WikiLeaks’ servers directly, they have convinced one or more DNS servers, which are responsible for turning the human-readable “wikileaks.org” web address into a machine-readable string of numbers that tells a computer where to connect, to alter their records. For a brief period, those DNS servers told browsers that wikileaks.org was actually located on a server controlled by OurMine.

It is unlikely WikiLeaks own servers were breached. The DNS protocol is a notoriously weak link of the internet due to the ease with which it can be compromised by both malicious individuals and state actors. READ MORE IN ARTICLE

================================


https://www.techworm.net/2017/08/wikileaks-hacked-by-hacking-group-ourmine.html

WikiLeaks Hacked By Hacking Group OurMine

By Abhishek Kumar Jha on AUGUST 31, 2017 Hacking news, Technology

The Whistleblowing website WikiLeaks Just Got Defaced By Hacking Group OurMine

The non-profit whistleblower Wikileaks website was hacked earlier today by a notorious hacking group namely OurMine.

================================

https://fossbytes.com/wikileaks-hacked-by-ourmine-dns-poisoning/

No comments:

Post a Comment