Showing posts with label pinoy hackers. Show all posts
Showing posts with label pinoy hackers. Show all posts

Thursday, May 10, 2012

Philippines asks agencies to check Internet security amid hack attacks

MANILA, Philippines – The Philippine Information and Communications Technology Office (ICTO) has called on other state agencies to review their Internet security measures amid recent hacking incidents of government websites by supporters of China’s claim to the disputed Scarborough Shoal.
 
In a statement, the ICTO said government Internet managers and systems administrators should review the security of their respective websites, “to ensure that homepage defacements like those that happened several weeks… do not happen in the future.”
The most notable victims of hacking have been the Department of Budget and Management, the University of the Philippines and, most recently, the Philippine Atmospheric, Geophysical and Astronomical Services Administration (Pagasa).

The defacement of Pagasa’s website took place on Wednesday. The site’s homepage was vandalized by hackers “of still undetermined origin,” the ICTO said. The www.pagasa.dost.gov.ph site, which citizens and media organizations alike rely on for weather forecasts, was back online three hours after the attack was discovered.

“The recent defacement of the PAGASA website only illustrates the patent vulnerabilities inherent on some web platforms. We would like to request system administrators of government websites to review their source code for these security flaws,” ICTO executive director Louis Casambre said in a statement.

A common flaw in these sites, he said, was the use of third-party applications or “plug-ins,” or ready-made programs that make it easier for IT managers to add features to a certain site without having to write code.

Casambre said the ICTO has taken “definitive” steps to help other agencies improve their IT security measures to ward off future hacking attempts.

“It is unfortunate however that the Pagasa website was hacked so soon. In light of this new development, we are looking at accelerating our on-going effort,” he said.

In the meantime, Casambre said individual agencies should take steps on their own to help the understaffed and underfunded ICTO.

Like that of Pagasa’s, many government websites are still hosted on in-house servers that may not be equipped with the latest security features, making them easier to hack in to, according to Casambre.

He said hosting of government sites can be out-sourced to third-party IT providers.  

Outsourcing this service would also be less costly for agencies. He said the Department of Science and Technology’s (DOST) own servers, more secure than other government facilities, could also be used by other agencies.

“As potential high-profile targets for hackers both local and foreign, government system administrators must take the extra effort to ensure that our servers are safe from cyber vandalism,” Science and Technology Secretary Mario G. Montejo said in a statement.

---------------------------------------------------------------------------------------------------------

Wednesday, April 25, 2012

Chinese hackers target more Philippine websites

MANILA, Philippines (UPDATED) - Chinese hackers plan to attack more Philippine government websites, according to their discussions on the Internet.

An online forum of Chinese hackers belonging to the "Silic Group" tagged the Philippine Institute of Development Studies (PIDS) and Bulacan provincial government websites that are next in their firing line.

One forum user even posted usernames and passwords of Bulacan provincial government website administrators. 

The Bulacan website remained intact as of 8 p.m. Wednesday. Its log-in page for administrators has a time-lock security feature that prevents people logging in outside regular office hours.

On Wednesday night, a purported hacker from China claiming to be a member of the "Honker Union" also published on Facebook the alleged usernames and passwords of administrators of websites belonging to Radio Mindanao Network (http://www.rmn.ph), the University of the Philippines College of Arts and Letters (http://kal.upd.edu.ph), and the People Management Association of the Philippines (http://www.pmap.org.ph).

The website of the Philippine National Police (http://www.pnp.gov.ph) also seemed to be in error  as it showed only a raw index page. However it was not confirmed if the police website has been hacked. 

An administrator of the Chinese hackers' forum at bbs.blackbap.org also boasted about "first-hand" details about the attack that crippled the Department of Budget and Management (DBM) website on Wednesday afternoon.

The message indicated that those who defaced the DBM website are the same ones who attacked the Vietnamese government's website, gov.vn.

The hackers allegedly discussed their attack on the DBM website in a chat hub for several minutes.

Details about the DBM server webshell address, administrator and publisher accounts were posted online.

While the Philippine government has yet to publish full details about the DBM attack, the Chinese hackers apparently turned the DBM website into a chat room.

"How Come a Small Bitch Border Country are (sic) Overconfident? And Challenged (sic) to Our Chinese Super Hacker (sic)?" the hackers posted on the DBM website in mangled English. 

The hackers also post racist comments  in  the forum, referring to Filipinos as "maids who are going up against the Chinese government." 

One thread on the hackers' forum, meanwhile, expressed glee at the recent attack on the University of the Philippines website. 

It is not clear if members of the forum are the perpetrators of the UP website defacement.
Some of the threads on the "Silic Group" hackers' forum directly referred to the dispute between China and the Philippines over Scarborough shoal. They indicated that their attacks are linked to the issue.

One forum member referred to the Scarborough standoff as "Huangyan Island incident."
He said Chinese hackers should "punish the Philippines" and target Philippine websites, "especially its portal." 

MalacaƱang on Monday said websites of the Official Gazette, the PCDSPO, and the Presidential Museum and Library website were targets of a denial-of-service attack.
"Information gathered through our data analysis indicated that the attack originated from IP addresses assigned to Chinese networks," Presidential Spokesperson Edwin Lacierda said in a statement.

----------------------------------------------------------------------------------------
Jojo Malig | ABS-CBNnews.com | April 25, 2012 | Article Link

Pinoy hackers scale up attacks on China websites

MANILA, Philippines (UPDATED) - Filipino and Chinese hackers are engaged in a raging battle on the Internet amid the 2 countries' dispute over Scarborough Shoal and the Spratlys.

On Tuesday, members of "PrivateX" and "Anonymous #OccupyPhilippines" took down more Chinese websites in response to an attack allegedly made by Chinese Internet users on Philippine websites.

The Palace on Monday said the Presidential Communications Development and Strategic Planning Office (PCDSPO) monitored a distributed denial-of-service attack (DDOS) on www.gov.ph, www.pcdspo.gov.ph, and www.malacanang.gov.ph that caused the government's servers to momentarily lag. 

"Information gathered through our data analysis indicated that the attack originated from IP addresses assigned to Chinese networks," Presidential spokesperson Edwin Lacierda said in statement yesterday. 

Suspected Chinese hackers also defaced the University of the Philippines website over the weekend while another attack early Tuesday allegedly targetted the Philippines' Department of Foreign Affairs website.

In reaction, Filipino hackers launched a series of attacks on Chinese websites starting Monday.

In an operation dubbed "#OpChinaDown," Filipinos attacked the following websites:
"They want Distributed Denial Of Service let's give them DDOS," said the Facebook page administrator of "Anonymous #OccupyPhilippines."

They also warned that they have not yet started a full-blast hacking spree.
"Di pa nagi-init upuan namin sa tapat ng computer. Sabi kasi dahan-dahan daw para ramdam ang sakit," said the Facebook page administrator of the "PrivateX" hacking group.

The same group was behind the attack on Vice-President Jejomar Binay's website on New Year's day.

"The recent defacements occurred on certain Chinese websites were just a simple response to what happened to the UP site.  You may continue bullying our country's waters but we will not tolerate you from intimidating our own cyber shores," said a message left by Filipino hackers on some of the websites they defaced.

"Those defacements are just a mere response to what you have initially started. We are not trying to start anything. We are just trying to tell you that we do not want to be bullied in our own cyberspace too," the message added.

"#OpChinaDown is not a threat. It will be a response. A response to future attacks within our cyberspace. We will leave our country's disputes to our government's hands. Yet this does not mean we will not support them," said the hackers, who are allegedly associated with the Anonymous global hackers group.

"One Truth Prevails, Scarborough Shoal is ours," they said. "We are Anonymous. We are legion. We don't forgive. We don't forget. United as one, Divided by zero. Expect us."
DFA spokesman Raul Hernandez earlier condemned the cyber attacks and called on hackers from both sides to stop the online war.

"We denounce such cyber attacks regardless from which side they are coming from," Hernandez said.

"We think they are counter productive and only add to the tension. We call on both Filipino and Chinese netizens to be more responsible and encourage dialogue rather than discord," he said.

-------------------------------------------------------------------------------

Jojo Malig | ABS-CBNnews.com | April 25, 2012 | Article Link

Featured Posts

AFP Modernization 2017: Highlights and Review

The modernization of the Armed Forces of the Philippines was on a roll this year, as we've seen a few big ticket items having completely...

Popular Posts