[Balug-admin] BALUG site cracked!(?): "H4ck3rsBr um passrinho que naum tinha cu foi caga e explodiu"

Michael Paoli mp@rawbw.com
Sat Sep 3 10:42:41 PDT 2005


This doesn't look good:
http://www.balug.org/
"H4ck3rsBr um passrinho que naum tinha cu foi caga e explodiu"

Who's got the access to get in and clean stuff up ASAP?

Also, time to change all the site passwords (at least all the content
change access passwords), and to also ensure they only go across secure
communications channels, etc.

Seems similar has also happened to other sites, and probably recently, e.g.:
http://www.arabdev.org/
"h4ck3rsbr UM PASSARINHO QUE NAUM TINHA CU FOI CAGA E EXPLODIU"

references/excerpts:
$ lynx -dump http://www.balug.org/

   H4ck3rsBr um passrinho que naum tinha cu foi caga e explodiu$ wget -N
http://www.balug.org/
--10:27:25--  http://www.balug.org/
           => `index.html'
Resolving www.balug.org... 205.196.211.98
Connecting to www.balug.org[205.196.211.98]:80... connected.
HTTP request sent, awaiting response... 200 OK
Length: unspecified [text/html]

    [ <=>                                 ] 61            --.--K/s             

Last-modified header missing -- time-stamps turned off.
10:27:26 (595.70 KB/s) - `index.html' saved [61]

$ cat index.html
H4ck3rsBr um passrinho que naum tinha cu foi caga e explodiu
$ telnet www.balug.org. 80
Trying 205.196.211.98...
Connected to www.balug.org (205.196.211.98).
Escape character is '^]'.
GET /
<html>
<head>
<META HTTP-EQUIV="Pragma" CONTENT="no_cache">
<title>Site Temporarily Unavailable</title>
</head>

<h1>Site Temporarily Unavailable</h1>

We apologize for the inconvenience. Please contact the webmaster/
tech support immediately to have them rectify this.<p>

<font size=2>error id: "bad_httpd_conf"</font>

</body>
</html>

Connection closed by foreign host.



More information about the BALUG-Admin mailing list