It is currently Sun Jul 05, 2009 7:10 pm (All times are UTC )

 


Forum rules

Forum Rules
Absolute Beginner's Guide to Joomla! <-- please read before posting, this means YOU.
Security Checklist
Forum Post Assistant - If you are serious about wanting help, you will use this tool to help you post.



Post new topic Reply to topic  [ 17 posts ] 
Author Message
Posted: Tue Aug 08, 2006 10:38 pm 
Joomla! Fledgling
Joomla! Fledgling
Offline

Joined: Fri Jan 20, 2006 1:14 am
Posts: 2
Location: New York
Joe Lieberman's campaign site, e-mail hacked

The site http://www.joe2006.com is still down, almost 36 hours now and smack during the primary vote.
Looking at the source code in the google cache of the site, it was built upon Joomla!.

It would be interesting to learn what security hole was exploited - whether it was the host, an add-in, or the Joomla! core.


Top
  E-mail  
 
Posted: Tue Aug 08, 2006 10:55 pm 
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Tue Aug 01, 2006 3:48 am
Posts: 40
It may not have been any of them, but early signs point to it being a simple exploit.

See http://www.msnbc.msn.com/id/14245779/ for MSNBC's take (and to show that I'm not just speaking out of my rear, I'm quoted in the story, more of a nod, but I helped the reporter do the research to figure out what happened).


Top
   
 
Posted: Tue Aug 08, 2006 11:17 pm 
Joomla! Fledgling
Joomla! Fledgling
Offline

Joined: Fri Jan 20, 2006 1:14 am
Posts: 2
Location: New York
Thanks cambler. 

I see the MSNBC article was updated in the past 15 minutes. Many more details now, and a few changed facts too.

But no answers yet.  It'll still be interesting to see what happened. 


Top
  E-mail  
 
Posted: Wed Aug 09, 2006 12:18 am 
Well, you know what they say bad publicity is better than no publicity, right?

Quote:
But Christopher Ambler, Chief Software Strategist at Internet domain registrat eNom, Inc., said 70 Web sites on a single server is actually a modest amount.


Very impressive. You are right, you do not sound like someone who speaks out of any odd body parts. Take good care of us, Chris!
Amy


Top
   
 
Posted: Wed Aug 09, 2006 12:30 am 
User avatar
Joomla! Master
Joomla! Master
Offline

Joined: Fri Aug 12, 2005 12:38 am
Posts: 10748
Location: Sydney - Australia
http://edition.cnn.com/2006/POLITICS/08 ... index.html Implied it was a DOS of sorts. Any really large, traffic wise website will want far less that 69 other sites on the same server... probably these guys were not prepared for the traffic, on top of the DOS

_________________
Brad Baker - Follow me on Twitter @xyzulu @rochenhost
http://www.rochen.com - Joomla! Hosting, the correct way.
http://www.joomlatutorials.com <-- Joomla Help
..somewhere in this hospital the anguished oink of a pig man cries out for help..


Top
  E-mail  
 
Posted: Wed Aug 09, 2006 12:53 am 
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Tue Aug 01, 2006 3:48 am
Posts: 40
brad wrote:
http://edition.cnn.com/2006/POLITICS/08 ... index.html Implied it was a DOS of sorts. Any really large, traffic wise website will want far less that 69 other sites on the same server... probably these guys were not prepared for the traffic, on top of the DOS


Without speaking with authority, as I'm not prepared to do that, let me state that I do not believe that it was a DoS attack, and I have some good reasons to believe that. I suspect, indeed I'm reasonably sure, that there will be more information made public over the next few days.


Top
   
 
Posted: Wed Aug 09, 2006 7:56 am 
Joomla! Virtuoso
Joomla! Virtuoso
Offline

Joined: Fri Aug 12, 2005 7:19 am
Posts: 4471
Location: Leeds, UK
From the site

"UPDATE ON THE ATTACK ON THE LIEBERMAN CAMPAIGN WEBSITE

STATEMENT FROM SEAN SMITH: "For the past 24 hours the Friends for Joe Lieberman's website and email has been totally disrupted and disabled, we believe that this is the result of a coordinated attack by our political opponents. The campaign has notified the US Attorney and the Connecticut Chief State's Attorney and the campaign will be filing a formal complaint reflecting our concerns. The campaign has also notified the State Attorney General Dick Blumenthal for his review."

"We call on Ned Lamont to make an unqualified statement denouncing this kind of dirty campaign trick and to demand whoever is responsible to cease and desist immediately. Any attempt to suppress voter participation and undermine the voting process on Election Day is deplorable and has no place in our democracy."


Top
  E-mail  
 
Posted: Wed Aug 09, 2006 10:01 am 
User avatar
Joomla! Champion
Joomla! Champion
Offline

Joined: Thu Aug 18, 2005 8:43 pm
Posts: 5678
Location: New York
Apparently they were using ext_calendar.

_________________
Read your words before posting and think about how other people will read them.
Be polite. Be kind. Be constructive. Say thank you.
Freedom-Equality-Trust-Community-Collaboration-Usability
http://opensourcematters.org/index.php?Itemid=134


Top
   
 
Posted: Wed Aug 09, 2006 12:47 pm 
Well spotted with ExtCalendar

They also have another Joomla site still running at http://www.meetned.com


Top
   
 
Posted: Thu Aug 10, 2006 1:47 am 
User avatar
Joomla! Enthusiast
Joomla! Enthusiast
Offline

Joined: Wed Aug 17, 2005 10:26 pm
Posts: 217
Location: Brisbane, Australia
Just a wee bit crazy and paranoid for them to claim their political opponents are reponsible, even when they're also using joomla :P

I guess that's American politics ;)

_________________
  . _  _ . _ . _
  || || ||| ||| |
. ||-||- ||- || |
|_|| || |||_|||_|
  http://jaribio.com


Top
   
 
Posted: Thu Aug 10, 2006 2:33 am 
User avatar
Joomla! Enthusiast
Joomla! Enthusiast
Offline

Joined: Sat Sep 24, 2005 5:47 pm
Posts: 221
idigital wrote:
Just a wee bit crazy and paranoid for them to claim their political opponents are reponsible, even when they're also using joomla :P

I guess that's American politics ;)



Actually the Lieberman site is running both Joomla apps., the other site is a negative ad campaign against his opponent.


Top
  E-mail  
 
Posted: Thu Aug 10, 2006 2:56 am 
User avatar
Joomla! Enthusiast
Joomla! Enthusiast
Offline

Joined: Wed Aug 17, 2005 10:26 pm
Posts: 217
Location: Brisbane, Australia
Heh, well that's even more wacky!  ;D

_________________
  . _  _ . _ . _
  || || ||| ||| |
. ||-||- ||- || |
|_|| || |||_|||_|
  http://jaribio.com


Top
   
 
Posted: Thu Aug 10, 2006 3:01 am 
Joomla! Explorer
Joomla! Explorer
Offline

Joined: Fri Sep 02, 2005 10:34 pm
Posts: 311
Location: Olympia, WA
LOL you'd think they would atleast change the meta tags those noobs! or common install opensef so it wasn't so obvious hahaha oh so amusing. oh when will they ever learn seo/sef...

:laugh:

_________________
http://www.joomlaenvy.com - a personal project offering free joomla templates :)

http://www.malljoomla.com - a place where anyone can Sell their Joomla templates or components
-PM if you have questions


Top
  E-mail  
 
Posted: Thu Aug 10, 2006 3:05 am 
Joomla! Apprentice
Joomla! Apprentice
Offline

Joined: Tue Aug 01, 2006 3:48 am
Posts: 40
egiex wrote:
LOL you'd think they would atleast change the meta tags those noobs! or common install opensef so it wasn't so obvious hahaha oh so amusing. oh when will they ever learn seo/sef...

:laugh:


Why? What do they care? It's a web site to get out a political message to the masses who don't know what meta tags are. Most political campaigns have their tech done by volunteers who either don't know to make these changes or don't care - often both.


Top
   
 
Posted: Thu Aug 10, 2006 3:30 am 
In the state of Connecticut, an important, closely contested primary is underway. For those of you who do not live in the United States, a primary election is one in which the people of the both major parties elect the candidate they want to represent them in the General Election held in November.

This particular race is considered to be one of the most important primaries. It will speak not only to the State of Connecticut, but also to the United States as a whole, and many believe the result will speak more broadly to the world.

The Joe2006.com website serves Senator Lieberman's message he wants available to others. At this time, the people in that state should be able to access information made available to them to help each of them reach this very important decision.

Joomla! was entrusted as the content management system to manage and share Senator Lieberman's message with the people he serves. That is quite an honor for us and it is more than a little bit sobering and extremely horrifying that something we do not yet understand is preventing access to this important information.

I cannot even hope for what might be the problem. Nearly every possible conclusion leaves me deeply saddened.


Top
   
 
Posted: Thu Aug 10, 2006 4:45 am 
User avatar
Joomla! Guru
Joomla! Guru
Offline

Joined: Tue Jun 06, 2006 7:41 am
Posts: 805
Location: Third planet from Sol
Well, there's one very good thing came out of Lieberman's war-inflamed tailspin. I discovered a very nice JavaScript countdown function on his smear site, which turns out be free (as in freedom). You can find the original at http://www.hashemian.com/tools/javascript-countdown.htm.

I think may wrap it inside a Joomla! module so we can all practice counting down. Why let Lieberman have all the fun!

_________________
CommunityGrove: http://www.communitygrove.com
CommunityGrove Support http://support.educationgrove.com


Top
  E-mail  
 
Posted: Tue Aug 15, 2006 1:04 am 
User avatar
Joomla! Enthusiast
Joomla! Enthusiast
Offline

Joined: Fri Sep 02, 2005 4:29 pm
Posts: 109
Here's some more stuff:

http://abcnews.go.com/Technology/ZDM/story?id=2311556

The skinny

"

An attack on the campaign Web site of US Senator Joseph Lieberman in the final days of his primary campaign generated a lot of news. There are indications that the attack was based on a vulnerability in a Web site CMS (Content Management System) called Joomla.

Joomla is a PHP-based program forked off from a different system called Mambo. Serious vulnerabilities in PHP and PHP-based programs have been legion in the last year or two, including a few with severe outbreaks among public Web sites. Joomla just had a major security update for a highly critical bug.

This one might have flown under the radar had it not hit the Senator's site on the eve of his primary defeat. The Zone-H Web site speculates on the actual mechanism used to attack the site. And an ABC News piece quotes respected security expert Richard M. Smith as saying (and I have to agree) that the Lieberman campaign seems to have gone on the cheap for their hosting, to a friend of a campaign member.

"

_________________
dreary query begone


Top
  E-mail  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 17 posts ] 

Quick reply

 



Who is online

Users browsing this forum: wiggy62 and 11 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Jump to:  
Powered by phpBB © 2000, 2002, 2005, 2007 phpBB Group