June 27, 2011 — The CEO of Web hosting provider Netregistry says he suspects the attack on its recently acquired Distribute.IT might be an inside job, according to a report by The Australian.
A pop-up window for fake anti-virus software, Windows Stability Center (WEB HOST INDUSTRY REVIEW) –- Security firm WebSense ( www.websense.com ) discovered an attack last week where malware writers used website flaws to inject malicious scripts into hundreds of thousands of websites. The attack came in the form of an injected domain called LizaMoon, which WebSense says is a part of a larger attack that redirects users to a website that dupes them into downloading rogue anti-virus software called Windows Stability Center. WebSense says that LizaMoon uses SQL injection to upload malicious script to compromised websites.
The sign-in page and SSL certificate for Hotmail, one of the services targeted in the attack (WEB HOST INDUSTRY REVIEW) — According to several reports published Monday, a lone Iranian hacker has claimed responsibility for the Last week’s SSL certificate hack that targeted several major online communications tools, including Hotmail, Skype, Gmail and others.
The sign-in page and SSL certificate for Hotmail, one of the services targeted in the attack (WEB HOST INDUSTRY REVIEW) — According to several reports published Monday, a lone Iranian hacker has claimed responsibility for the Last week’s SSL certificate hack that targeted several major online communications tools, including Hotmail, Skype, Gmail and others. The hacker reportedly backed up the claim in a post on the document-sharing site Pastebin that included names, accounts passwords and other details on how he broke into the systems of Comodo reseller InstantSSL.it, and was issued the rogue SSL certs. Following the attacks last week, there was some speculation that the attacks – which appeared to originate from a server based in Iran – were sponsored by Iran’s government, and politically motivated
A screen shot of Microsoft’s security advisory concerning fake SSL certificates (WEB HOST INDUSTRY REVIEW) –- IT security provider Comodo ( www.comodo.com ) revealed this week that a Registration Authority located in Southern Europe was hacked, leading to nine rogue SSL certificates on seven domains.
Web Hosting News – CHICAGO – Trustwave, a leading provider of information security and compliance solutions, has released its Web Hacking Incident Database (WHID) semiannual report, which finds an increase in distributed denial of service (DDoS) attacks and determined that there was a lack of properly implemented anti-automation defenses to ensure application availability during such attacks. DDoS as an attack vector and notable trend for the second half of 2010 was successful in disrupting commerce and bringing down websites of large businesses and associations.
WordPress Suffer Chinese DDoS Attacks Monday, March 07, 2011, 5:47:01 AM WordPress.com was the latest site to suffer at the hands of a vicious DDoS beating when an attack “multiple Gigabits per second” strong hit it last week. In a statement released to its users, WordPress said it was “currently being targeted by a extremely large Distributed Denial of Service attack which is affecting connectivity in some cases […] The size of the attack is multiple Gigabits per second and tens of millions of packets per second.” It took around 4 hours to sub-side the attack and sustain the site, which is now completely stable. Sara Rosso, a representative of WordPress owner Automatic has said that WordPress is now working with it upstream providers to prevent and better deal with this kind of attack in the future


