Showing posts with label Security news. Show all posts
Showing posts with label Security news. Show all posts

Saturday, 18 February 2017

Hacked again? Yahoo notifies users of another data breach

  
 Yahoo is apparently currently going through a rough phase trying to overcome multiple data breaches. The internet giant which has been investigating a data breach that affected over 1 billion user accounts just announced warning users of another possible breach.

Also Read: Hackers infects Hotel Lock system with malware, Locks up hundreds of guests

 The tech company revealed that between potential malicious activities had taken place on their website between 2015 and 2016 and believed to be caused by the use of forged cookies. During the said period, Yahoo believes that some accounts were compromised.

Here is the warning notification that Yahoo sent to the affected users:
"Based on the on-going investigation, we believe a forged cookie may have been used in 2015 or 2016 to access your account."

  last year, Yahoo revealed of the involvement of state-sponsored attack in stealing data of over 500 million users that occurred between 2013 and 2014 after which it later announced of another data breach which then involved over 1 Billion users account. The company in its December security update 2016, addressed the cookie forged related issue.

Also Read: Nigerian Hacker hacks Los Angeles County email, exposes personal data of 750,000 people

 A spokesman from Yahoo said that after the investigation, they identified accounts for which the forged cookies were used and according to them, "Yahoo is still in the process of notifying all potentially affected accounts holders. Yahoo has invalidated the forged cookies so they cannot be used again," the spokesman said.

 The recurring cyberattacks on Yahoo has sabotaged the deal between Yahoo and Verizon Communications in which Yahoo was suppose to sell off its mobile apps and email service.

Friday, 17 February 2017

Russian Black hat hacks over 60 U.S. universities, Govt. agencies


 A Russian-speaking black hat hacker who goes by the alias of Rasputin has breached systems of over 60 universities and U.S. government agencies, threat intelligence firm Recorded Future says.

 According to Recorded Future, the hacker typically exploits SQl injection vulnerabilities to gain access to classified information which he then sells on cybercrime market place. The firm who has been monitoring the hacker for some time now, said that Rasputin was the man who breached the systems of the U.S. Election Assistance Commission (EAC) and was making attempt to sell over 100 access credentials to a potential buyer representing a Middle East government.

Also Read: Anonymous Hackers declares open war on Donald Trump, Dumps White House direct phone line on the web

 Recorded Firm went on to identity some of the hackers victim, many of which includes ten universities in the UK, over a 2 dozen universities in the U.S. and other U.S. government agencies. The list of targeted agencies in the U.S. includes both local, state and federal organisations. List of the Universities and organizations who suffered the breach can be found here.

  Hackers have been exploiting SQL vulnerabilities for a very long time and the availability of free tools such as SQLSentinel, SQL Scanner, SQL Exploiter Pro, SQLI Hunter, SQL Inject Me, Havij, Ashiyane and SQLmap have only given rise to much attack.

Also Read: Hacker who hacked the "Hacking Team" arrested by the police

 According to Levi Gundert, VP of intelligence and strategy at recorded Future. "Financial profits motivates actors like Rasputin, who have technical skills to create their own tools to outperform the competition in both identifying and exploiting vulnerable databases," he said referring to the tool the hacker created.

  Gundert went on to say that the problem and solution are well understood but replacing vulnerable systems are always expensive to run and often take some which gives most hackers the avenue to exploit.

Tuesday, 14 February 2017

Google and other search engines to block Torrent queries in search results

  
  Internet users would soon find it difficult to get search results on torrents related category  such as Piratesbay, Kickass Torrents and other torrents related sites.

 According to a blog post published by TorrentFreak, the UK's Intellectual Property Office is working with entertainment firms and search engines to reach an agreement that would see them tackle piracy. This means that search engines would block any url or search query that  points to pirated contents online.  

“The search engines involved in this work have been very co-operative, making changes to their algorithms and processes, but also working bilaterally with creative industry representatives to explore the options for new interventions, and how existing processes might be streamlined,” said the parliamentary Baroness Buscombe.
  
 Baroness Buscombe went on to say that all parties involved are keen to sign up for the voluntary agreement 

"All parties have agreed that the code should take effect, and the targets in it be reached, by 1 June this year," the Baroness added.

 By June 1, this year, search engines would start to block queries looking for pirated contents online, all thanks to the UK government which has played a major role between search engines and entertainment firms to join the fight against online piracy.

Monday, 13 February 2017

Hacker Breaches and defaces 10 Turkish Government websites


  A h*cker who goes by the alias of ifactoryx has hacked and defaced 10 Turkish Government websites for the third time in a row.


  
 According to Zone-H-Archives, ifactoryx had defaced the websites and servers twice before in the past around the same time in 2015 and 2016. The hacker whose motive is yet to be known whether its political or malicious purposes, usually uploads a deface page in a html format with a message "Hacked by ifactoryx." Below is a list of websites the hacker defaced.

www.bayramic-ezinesulama.gov.tr/i.html

  So far, the Turkish government and web admins are yet to comment on the breach. How ever, there are suggestions that the hacker who has done over 41,511 defacement's does it for fun.
Also Read: Anonymous Hackers declares open war on Donald Trump, Dumps White House direct phone line on the web

 Similar to this hack, Ashiyane Digital Security Team recently defaced 8 Ukrainian Government websites for the same reason; fun!

Friday, 10 February 2017

WhatsApp begins to roll out Two-step security feature

  
 WhatsApp yesterday Thursday announced that it has started rolling out its two step verification feature to its users. 

Also Read: Apple Store gets robbed in 12 Seconds!

 The Facebook company revealed the features of the two-step verification which is intended to make the messaging app more secured. This feature requires a six-digit passcode each time a WhatsApp user tries to verify their number phone number. 

 The two step verification can be enabled by going to WhatsApp settings on the phone. This feature gives you an option to provide WhatsApp with your email address if you are enabling the two step verification for the first time of which with the email address activated, you will be able to use your email address to disable your two step verification without a passcode. 

  WhatsApp says that those who enabled the two-step verification will be constantly asked to verify their account. The company further explained the reason for the occassional pop-up is to help users remember their passcode and at the same time, ensure that the person using the account is the actual owner.

Also Read: How to enable guest mode on any android phone

 WhatsApp begun to test this two step  verification feature back in November 2016 last year which was still in beta state then, and it took three months for it to be made official.

 For now the, that the two step verification features might take a few days before getting to other people.

Tuesday, 7 February 2017

Cyber Criminals hacks several Polish Banks Via malware planted on Governemnt Site

  
Several banks in Poland have been affected in a hack that could be seen as the largest in the country's history and financial sector.

 Over the past week, security teams at several banks have discovered malicious executables on the work stations of several banks. Whats surprising is that the malware seem to originate from their own financial regulator server, the Polish Financial Supervision Authority (KNF) which is meant to ensure the safety and security of financial systems in Poland.


Also Read: Hacker who hacked the "Hacking Team" arrested by the police

  According to BadCyber, an unknown hacker had compromised the KNF's website and modified one of the site's JavaScript files, making those visitors to the regulators site to automatically load the JavaScript file. Once download and executed, the malware connects to some foreign servers to perform various malicious tasks such as reconnaissance, post exploitation and data ex-filtration. 




 Banks affected by this hack discovered that the encrypted executable files running on their servers made their servers to send usual traffic to strange IP addresses in foreign countries. Some of the banks even had their servers totally hijacked by the criminals.


Also Read: How to send a mail anonymously without revealing your email address and identity

The KNF and the Polish government says that no record of  money loss during the hack. They confirmed that there were ongoing investigations into the attack.

Sunday, 5 February 2017

Anonymous Hackers declares open war on Donald Trump, Dumps White House direct phone line on the web


 Hack group Anonymous has decleared war on the U.S President-elect Donald Trump, threatening to expose his dubious ties with the Russian mobsters, Child traffickers and money launderers.
Also Read: Hackers infects Hotel Lock system with malware, Locks up hundreds of guests


 According to a statement the group posted on Pastebin, the group urged called on every individual to join the campaign and put an end to the "tyranny of trump."

 “We appeal to the international community of all origins and ideologies, of all social strata and religions, to resist the madness that emanates from the United States,” the group said, beginning its campaign under the hashtag #BDStheUS. The hack group promised to make the President regret the next 4 years.

Also Read: Shad0w Security hacker, @Sc0rp10nGh0s7 hacks the server of the National Aids Research Institute NARI (India), dumps archive online


However, the group of h*ckers did not cite any evidence to back its claim nor did they reveal how they plan to expose Trump, though they began by publishing direct phone numbers of staffs at the white house.
Last year 2016, the group waged a cyber war against Donald Trump by shutting down his personal website and threatened to reveal information that trump had in his closets.

 Donald Trump is yet to respond to any of the allegations made by Anonymous. .

Wednesday, 1 February 2017

Hacker who hacked the "Hacking Team" arrested by the police


  Remember the h*cker Phineas Fisher? back in 2015, the h*cker made headlines when he hacked the Hacking Team - an Italian based company that focuses on selling spyware software to law enforcement agencies worldwide - and exposed over 500 gigabytes of internal data online but news report coming in says that the Spanish authorities have him in custody.

Also Read: Hackers infects Hotel Lock system with malware, Locks up hundreds of guests

 Phineas Fisher has been accused of not just hacking the hacking team alone but also hacking another  secrete company, Gamma international a UK based based company that also specializes in spywares. Gamma sells their own spyware called FinFisher to law enforcement agencies too.


According to local reports, the Police in Spain have arrested three people, one of which is suspected to be Fisher has been detained in Salamanca. He also posted the video on how he performed the hack.

Hackers Breach Radio Station, plays F**K Donald Trump mp3 clip




 

Tuesday, 31 January 2017

Hackers infects Hotel Lock system with malware, Locks up hundreds of guests


 One of Europe's top hotels has admitted that they had to pay cybercriminals in thousands when the hackers compromised their electronic key systems, locking hundreds of guests in and outside of their hotel rooms.

Also Read: Hackers Breach Radio Station, plays F**K Donald Trump mp3 clip

The Romantik Seehotel jaegerwirt, an Austrian luxurious 4-star hotel with a beautiful lakeside setting on the alpine Turracher Hoeche Pass, said that they decided to make this public so as to warn others and at the same time encourage the fight against cybercrime.

 According to the Hotel managing Director Christoph Brandsaetter, the hotel has a modern IT system which include key card for access. The management said that they have been attacked twice by the same cybercriminals who eventually on the third time managed to hijack their entire lock system, shutdown all the hotel computers including the reserve and cash desk systems of the hotel.

 The hotel eventually paid 1,500 EUR (1,272 GBP) in bitcoin to the hackers who promised to restore their systems once the amount was paid to them.

"The house was totally booked with 180 guests, we had no other choice. Nether Police nor insurance could help you in this case, the managing director said.
"The restoration of our system after the first attack in summer has cost us several Euros. We did not get any money from the insurance so far because none of those to blame could be found," he said.

Also Read: China declares unauthorized VPN services illegal, Tighten Great Firewall

The hotel management said that the hackers unlocked their systems and everything returned back to normal as it were before. Still, the hackers left a backdoor open in their systems and then tried to strike for the fourth time but this time, their computer and security systems had an upgrade with the latest security standard while some networks were shutdown.

So far, the managements of Seehotel Jaegerwirt plans to revert to an old fashion way to bypass this kind of hack in case it occurs again.

"We are planning at our next room refurbishment for old-fashioned door locks with real keys. Just like 111 years ago at the time of our great-grandfathers," Brandstaetter said.

Saturday, 28 January 2017

You can now unlock your Facebook account with a USB drive


 Facebook has always been keen in ensuring that its users gets the best security features with much availability of choice to suite any of its users.

Also Read: Hackers Breach Radio Station, plays F**K Donald Trump mp3 clip

  Following the steps of Google, Dropbox, GitHub and Salesforce, this week Facebook introduced a physical security key feature which enables any Facebook user to log into his or her account using a USB stick.

 This security feature offers a superior level of security protection and at the same time reduces the rate of phishing or man-in-the-middle attacks due to the physical key rather than SMS verification.


 So far, Facebook says that Security Keys logins only work with certain web browsers and mobile devices. To add a security key from your computer, you will need the latest version of Chrome or opera. As of now, key logins aren't available for the mobile version of Facebook app though Facebook says that users with NFC-capable android device with the latest version of chrome and google authenticator installed, can use an NFC-capable key to log in from their mobile website.

Also Read: Dutch Police arrests hacker for hacking over 20,000 online users and using their credentials

 Facebook says that they are working with firefox so as to make the browser support U2F, which is the standard that makes the key security feature work.

You can click here to get the simple steps in enabling a security key

Tags:
Facebook new security feature, Security second level authenticator 

Tuesday, 24 January 2017

Shad0w Security hacker, @Sc0rp10nGh0s7 hacks the server of the National Aids Research Institute NARI (India), dumps archive online


 A hacker who goes by the alias @Sc0rp10nGh0s7 last week broke into the server of the National Aids Research Institute NARI (India) and accessed more than 1 GB archive of over a dozen HIV test results.
Also Read: Apple Store gets robbed in 12 Seconds!

  According to SecurityAffairs, the hacker who is part of the Shad0w Security crew told them that the aim of the hack was to prove that security staffs at the National Aids Research Institute NARI (India) were lackadaisical in protecting such sensitive information. The hacker went on to say that  they released just a portion of the compromised data as proof since their purpose is not to hurt the people but the government..

  The hacker went on to say that he also breached an internal server of the organisation and noticed that the admin likes to put username and password in a text file, though he also said that the institute had a good security system.
Also Read: Nigerian Hacker hacks Los Angeles County email, exposes personal data of 750,000 people

 The Shad0w Security crew have been known for breaching of databases belonging to governments of any nation with the aim of exposing their activities. In August 2016,  the group hacked the Paraguay's Secretary of National Emergency (SNE) website and leaked a dump from a PostgreSQL database.

 In November 2016, another hacker in the Shad0w Security crew who goes by the alias of Shad0wS3C hacked the Institute of the Regional Function of the State Mexico (FREM) and dumped the data online.

Monday, 23 January 2017

China declares unauthorized VPN services illegal, Tighten Great Firewall


 China has begun a preparation for a 14-month-long campaign to sweep out service that help in bypassing the government's internet censorship.
Also Read: Hackers Breach Radio Station, plays F**K Donald Trump mp3 clip

According to the Chinese Ministry of Industry and Information Technology, the new directive that forbids the operation of Virtual Private Network (VPNs) or leased lines that allows business and private individuals from accessing blocked websites overseas with out the permission of the government.

  The new regulations is to be enforced between now and March 2018 and the Chinese authorities will began inspection of cloud hosting and content delivery services, which the ministry described to be in a "disorderly development" state.

 Under the new directive, data centres, content distribution networks and all Internet Service Providers (ISP) must be licensed with the government and at the same time, they must also perform self-inspections from time to time to check for any unlawful activity on their servers.
Also Read: Over 1.1 Million accounts of SuperCell users on Clash of Clans, Clash Royale Hacked

 The Chinese government has always wanted to have a firm control over its domestic internet and prevent its citizen from accessing contents out side the walls of China. With over 731 million internet users in China, the government would do any thing possible to monitor what information those users are accessing.

 Foreign and some domestic companies in China use to employ the service of VPNs to access blocked websites site like Google, Facebook and other sites so as to be able to perform some of their business transactions. The Chinese government, in response to this blocked access to VPNs .

Sunday, 22 January 2017

Hackers Breach Radio Station, plays F**K Donald Trump mp3 clip


  A Louisville Radio station on Friday afternoon posted on Facebook that hackers had hijacked their air waves and played an anti-trump song which over-rode their regular broadcast.
Also Read: DarkWeb WebSite raising funds to Assassinate Donald Trump and Mike Pence

 According to the post on their Facebook page, Cresent Hill Radio WCHQ 100.9 FM post read: "Ok, not funny. Someone has hacked into our transmitter tower, ans the FM was playing a mp3 clip repeatedly of  %$^# Donald Trump".


 WCHQ program director, Gary Sampson, said that the song which was sung by YG and Nipsey Hussle titled FDT (F*** Donald Trump) interrupted the WXCHQ's FM feed and played continually for 15 minutes until station manager, Kathy Weisbach broke the loop. 


 Sampson revealed that the hackers compromised their airwaves by using software that is capable of interrupting live transmission signal. This software is mean't only to be used in emergency broadcasts including government warnings. 


 Sampson believes that the hack which occurred on Friday wasn't a coincidence because that was the same day that Donald Trump was to be sworn in as president of the United States. 


 The WCHQ program director went on to apologies for the hack adding that the song which was played was against the policy and vision of WCHQ which believed in standing neutral and remain an unbiased radio station for the community. The program director said that the radio station focus was mainly on highlighting and promoting local talents from Southern Indiana and Kentucky.

Also Read: Iran Cyber Police arrests Hackers that breached Computer systems of Jewel Stores and carted away $10,000 

 "It's a matter of providing a community outlet for musicians and artists. It's very disheartening that someone would take the opportunity to a political statement. I want to apologise to people who might have heard it and might have been offended. we kind of feel like we are being used," the radio director said.


News from Courier-Journal says that WCHQ will be lodging a complaint with the Federal Communications commission because of the profanity that surrounds this rap song.

Wednesday, 18 January 2017

Over 1.1 Million accounts of SuperCell users on Clash of Clans, Clash Royale Hacked

 Accounts numbering over 1.1 Million on Supercell, developers of Clash Of Clans, Clash Royale, Boom Beach and Hay Day have been hacked,  Supercell said.
Also Read: This New WhatsApp virus would hack your Phone, Bank details and Credentials

  
 According to an official statement released by the developer of these popular games on the site forum, Supercell said that the breach occurred in September last year and only affected their community forum service and that the game accounts weren't compromised. 

 Supercell further stressed that they do take data breaches quite seriously and would follow strict policies to ensure that users data are kept safe. They further advised users to change the password of all their accounts.

 Hacked data included email IDs, usernames, hashed passwords and ip addresses.

Cause of the Hack?
Report says that Supercell uses an outdated vBulletin forum software which tend to easily being hacked because of its use of hashing passwords in a way that makes it easy for hackers to decipher them.
Also Read: UK largest hosting firm 123-Reg hit with massive DDoS attack

 Top forums such as Grand Theft Auto (GTA), EpicGames, PakWheels, Clash of Kings and other forums previously suffered such fate for also using an outdated version of vBulletin software.

Tuesday, 17 January 2017

Hamas Militants uses Fake Facebook profile to target and infect Israeli Soldiers with Malware

 Israeli soldiers have been tricked into downloading malware on their phones by members of the Hamas Palestinian militant who disguised as women, the Israeli Defense Force (IDF) said.
Palestinian
Also Read: Backdoor sends user data and activity log of over 700 Million Android Phones to China

 According to the Israeli Defense Force, members of the Israeli soldiers were receiving a large number of Facebook friend requests by Hamas Palestinian militant disguising as beautiful women. When the soldier accepts the friend request, the Hamas agent would then start up a conversation with the soldier and soon then begin to exchange photos.

 As the relationship progresses, the Hamas agent would then ask for a video chat with the soldier but when ever the soldier places a video call to the girl, she would keep on complaining that the application isn't working for her until she would then suggest to the soldier to download a app called "wowo".

 The moment the soldier installs the app on his device, his phone would be immediately contaminated with spyware which would then allow the Hamas agent to extract information to use and track their movements.

 One thing was common in all the attacks; The moment the soldier installs the wowo app and his device gets compromised, the Hamas agent would immediately delete all form of commuincation with the soldier.
Also Read: This Android Super Bike has a 4gb ram - Quadcore processor

 In the past, Hamas have used similar method to trick soldiers, but this time they invited the soldiers on a date where the soldier is then ambushed, kidnapped and sometimes killed.

Dutch Police arrests hacker for hacking over 20,000 online users and using their credentials


  Dutch police have arrested a Dutch developer who has been illegally accessing accounts of over 20,000 users via backdoors he built on their websites.
Also Read: Why you need a VPN protection for your online activities

 The hacker who is yet to be named, was arrested by the police on July 11, 2016 at a hotel in Zwolle, the Netherlands, and police also raided two homes belonging to the hacker.

  According to the Dutch police, they first received tips regarding the hackers actions back in November 2014, when a user complained that someone else made purchases on his behalf.

 Police reports says that the suspect who is 35-Years-old have been hired by various companies to build e-commerce sites. After doing his job, the developer then leaves a backdoor in those websites which he installs various scripts that allows him to collect different information on the sites users.
Also Read: Ranwomware: LA College forced to pay Cyber-Criminals $28,000 to unlock its compromised servers

Authorities says that the hacker used those people credential to access their social media accounts and mails, made purchase online and also signed up on gambling sites using his victims funds. 

 The suspect is under investigation over 140 cases and he remains in jail after his arrest last year October. Victims of the hack includes both single individual and businesses.

Tuesday, 10 January 2017

Ranwomware: LA College forced to pay Cyber-Criminals $28,000 to unlock its compromised servers


 A School in Los Angeles has been forced to pay $28,000 ransonware after h*chers compromised its network. 
Also Read: Why you need a VPN protection for your online activities

 According to the school independent newspaper site, the Valley star.  Los Angeles Community College District were forced to pay close to $30,000 when h*ckers broke into the school servers seizing all messaging, email and files. The hackers then gave the school 7 days to make payment so as to get the unlock key or risk losing all the data on the server.

 Here's an excerpt from the valley star;

 Hackers recently broke into Valley College's Servers seizing file, email and messaging systems and are requesting them for almost $30,000.

 The cyber attackers left the college a note on one of its server' X-drives, requesting the money to be paid by BitCoin.

 "You have 7 days to send us the BitCoin after 7 days we will remove your private keys and it's impossible to recover your files," said the ransom note that appeared on the college's servers six days ago.

 The h*ckers even made notes to detail the process of payment on how to buy BitCoins and make the payments, which the school eventually did and the got the key to unlock their data.
Also Read: UK Police to snoop on Citizens while browsing: Here is how to protect yourself

 So far the college has confirmed that investigation is ongoing and no data breach has been identified.

Monday, 9 January 2017

UK largest hosting firm 123-Reg hit with massive DDoS attack


 123-Reg domain registrar has become the latest victim of a DDoS attack shutting off its users access to their email accounts as well as websites.
Also Read: The Mirai threat: How Hackers could shut off 23 Countries access to the internet

 The domain registrar which is the largest in the UK, went on to Twitter to announce the attack. 

 Last year, 123-Reg suffered two major DDoS attacks. The first DDoS attack on the domain registrar took place in April while the second took place in August and this time it was hit with a massive 30Gps DDoS junk which sunk the site.
Also Read: Liberia's entire internet attacked with Mirai Botnet14, UK threatened

DDoS attacks increased massively last year when some hackers released the dreaded Mirai source code online. Not long long after the release, several websites went under attack and at a stage top sites in the world were shut off from the internet. OVH hosting, krebs and a host of other suffered from this attack. Click here to read more.

Wednesday, 4 January 2017

This New WhatsApp virus would hack your Phone, Bank details and Credentials


 Hackers have created a new virus which auto-hacks users banking passwords and credentials and its being distributed around messaging platforms, but primarily targeted at WhatsApp users.  

 The virus is said to be distributed through two files under the names: NDA (National Defense College) and NIA (National Investigation Agency) . They are said to come with different kind of messages which is meant to lure WhatsApp users to download the files.

 Once the use clicks on any of the files, the virus automatically extract personal details of the user such as Credentials, banking passwords, pins and logins, and other information that would aid the hacker in whatever purpose they are in pursuit of

 The hacker(s) try to lure victims by naming the files name like “NDA-ranked-8th-toughest-College-in-the-World-to-get-in.xls” and “NIA-Selection-order-.xls”.

 WhatsApp users worldwide are exposed to the attack but Economic Times India believes the attack is primarily targeted at the Indian Populace, most especially Indian security personnel.

  According to the Economic Times India, the NIA and NDA are very popular organisations in India as well as abroad and so the high level of curiosity would make people fall victim.
Also Read: Privacy Issues: Whatsapp dares India, Disobeys Court orders, continues to share user data

  The India military has for some time suffered online attacks. Sometime ago Google removed an Android app "SmeshApp" from the Playstore after receiving complaints from the Indian governments that Hackers from Pakistani were using the app to spy on the Indian military. Last year, TrendMicro an IT security firm exposed Pakistan linked hackers targeting military officials through a spear-phishing mechanism.   

Notorious Hacker Defaces Google Brazil Domain


 A Notorious hacker who defaced the NSA sub-domains in 2015 and left Pro-Palestinian messages, on Tuesday hacked and defaced the official Google Brazil domain.
Also Read: Nigerian Hacker hacks Los Angeles County email, exposes personal data of 750,000 people

 The hacker who goes by the alias of "Kuroi'SH" defaced the Google domain and left a message greeting his friends for the successful attack on such a high profile domain. The news of the defaced page made waves all over Brazil as the defaced image remained on the domain for more than 30 minutes, of which every user accessing the Google domain Brazil couldn't pass without noticing it.

 The message on the defaced Google page read: "It is a great moment to die. Hacked by Kuroi'SH! Two Google at once, i don't even care;f**k the jealous hates such as Nofawkx. Two Google at once world record idgaf :D. Greets to my friends Prosox and Shinobi h4xor."

This video was uploaded by a Google user in Brazil 


 In an exclusive chat with Kuroi'SH, the hacker explained that "By two Google domains i mean that Google Paraguay domain since i was able to deface it as well but didn't have the time to make its mirror."
Also Read: Teen who DDoS and Jammed 911 emergency call service line arrested

 He further went on to explain that he defaced Google Brazil to prove to the world that anything could be hacked and never should anybody underestimate the security risks. The hacker rebuffed some media reports that he also defaced Google maps and Google Translate.
 In response to the attack, Google Brazil acknowledged the defacement but claimed that Google was not hacked. They claimed that DNS servers may have suffered the attack and were redirecting to other sites.

Note: At the time of this post, the targeted Google domain was restored and everything returned back to normal.

Follow us

@Way2themes

Follow Me