Full Disclosure mailing list archives

Re: Georgia government sites hacked (and spreading malware)


From: Harry Behrens <harry () behrens com>
Date: Mon, 15 Feb 2010 16:59:11 +0100

dd () sucuri net schrieb:
A few sites from the Georgia .gov have been attacking our honeypots...

Some analysis:
http://blog.sucuri.net/2010/02/georgia-government-sites-hacked-and.html

Thanks,

--dd

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

  
I guess if it's friendly (Georgia) governments from whose computers we 
(US) see attacks, _they_ have been hacked.
When it's Chinese computers, it's they are hacking us...

Go figure....

    -h

p.s.: it is (or should be) common knowledge that Chinese zombies were 
aquired in huge numbers in the early 2000s and are now being used to 
launch attacks and host botnets for people most definitely not Chinese!
So it is actually probable that the Georgians have been hacked and are 
used as launchpad. I just wish the same logic would be applied to the 
so-called Chinese cyberattacks much ballyhoed lately...


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: