
新華網(wǎng)8月30 日電據(jù)科技博客網(wǎng)站Gizmodo報(bào)道,紐約時(shí)報(bào)網(wǎng)站和社交網(wǎng)站Twitter相繼被自稱是敘利亞電子軍的黑客攻占域名,隨后他們的域名注冊(cè)商澳大利亞的墨爾本IT也難于幸免。不過,Gizmodo網(wǎng)站刊文認(rèn)為這三次黑客攻擊手段并不高明,只是利用釣魚郵件獲取密碼才得手的,只能算是小打小鬧。
正如我們?cè)缧⿻r(shí)候所推測,昨天攻占Twitter和紐約時(shí)報(bào)網(wǎng)站域名的黑客并沒有用“強(qiáng)攻”也沒有用啥高明的手段!堵迳即墪r(shí)報(bào)》報(bào)道稱,自稱為敘利亞電子軍的黑客利用釣魚郵件獲得墨爾本IT好幾個(gè)員工的用戶名和密碼,這家公司正是為NYTimes.com和Twitter.com提供域名注冊(cè)服務(wù)的公司。這件事警告我們接收郵件時(shí)要謹(jǐn)慎。
墨爾本IT是一家澳大利亞的域名注冊(cè)商,也被黑了,顯然是同一黑客所為,即敘利亞電子軍。昨天Twitter與紐約時(shí)報(bào)網(wǎng)站相繼被攻擊,這家提供域名注冊(cè)的公司被黑是在意料之中的事。
周三小編嘗試登錄墨爾本IT的主頁(www.melbourneit.com.au)),結(jié)果出來是一個(gè)空白的網(wǎng)頁(如上圖所示),頁面上端寫著一行字:“被敘利亞電子軍攻擊,您的服務(wù)器安全系數(shù)非常低。”鑒于昨天的黑客事件,主頁被黑也是顯而易見的。墨爾本IT是紐約時(shí)報(bào)網(wǎng)站和Twitter網(wǎng)站的域名注冊(cè)商,敘利亞電子軍利用所截獲的證書修改了兩個(gè)網(wǎng)站的域名設(shè)置。所以,不管到底是誰發(fā)動(dòng)了這次黑客行動(dòng),不管是不是自稱為敘利亞電子軍的黑客,他們只是利用了稍稍利用了下權(quán)限就拉黑了墨爾本IT的網(wǎng)站。

這三起黑客事件算在一起,其實(shí)沒有造成多大的傷害。紐約時(shí)報(bào)網(wǎng)站和Twitter幾個(gè)小時(shí)內(nèi)就從黑客襲擊中復(fù)原,相信澳大利亞的域名注冊(cè)商也很快的恢復(fù)原狀了。不過,估計(jì)好戲還在后頭,敘利亞電子軍還會(huì)發(fā)動(dòng)更多類似這樣的“小打小鬧”,你就拿好爆米花,準(zhǔn)備看好戲吧。
譯者:張藝
百度新聞與新華網(wǎng)國際頻道合作稿件,轉(zhuǎn)載請(qǐng)注明出處。
Yup, the NYTimes and Twitter Outages Started With Simple Phishing
As we strongly suspected earlier, the hackers that briefly took over the Twitter and New York Times domains yesterday didn"t use brute force or fancy hacks to get in. The LATimes reports that the Syrian Electronic Army used phishing emails to get username and password credentials for several employees Melbourne IT, the registrar for both NYTimes.com and Twitter.com. Be careful what emails you click!
Melbourne IT, an Australian domain name registration, just got hijacked, apparently by the very busy Syrian Electronic Army. This shouldn"t be a surprise since it"s the same company that was implicated in Tuesday"s New York Times and Twitter hacks.
Attempting visit Melbourne IT"s homepage (www.melbourneit.com.au) on Wednesday morning showed a blank white page with one line of text at the top: "Hacked by SEA, Your servers security is very weak." This should"ve been obvious given the hacks from the day before. Apparently, Melbourne IT is the registrar for NYTimes.com and Twitter.com, and its credentials were used to change the domain settings for the two domains. So whoever was doing the hacking—and the Syrian Electronic Army is taking credit—just exploited their access a little more to pull down Melbourne IT"s site. 相關(guān)閱讀