Jonathan Richards
Enter our Snapshots of Summer photography competition
The UN was today reviewing the security procedures on its website after a group of hackers posted anti-Israeli messages on the personal page of the Secretary-General.
A page usually given over the speeches of Ban Ki Moon was yesterday displaying messages which read: "Hey Ysrail and Usa dont [sic] kill children and other people Peace for ever No war."
The messages, apparently written by a group of hackers who go by the name CyberProtest, were posted in the early hours of Sunday, but had been removed by 9:15am East Coast time, a UN spokesman said.
"We are very concerned that this happened and we are investigating,” the spokesman said. "We will make security changes to prevent this from happening again."
The messages were prefaced by the words "Hacked By Keremy 125 M0sted And Gsy That Is CyberProtest', a reference to a group of hackers - one of whom is Turkish - who have previously been associated with attacks on high-profile websites.
Today a website run by one of the group, M0sted, had links to a number of other CyberProtest attacks, including on the sites of the car-makers Toyota and Nissan, and Harvard University.
'M0sted' said that CyberProtest's objective was to spread the message "that the powerful have no right to oppress the powerless."
The website of another CyberProtest member, 'Eno7', who described him or herself as an 'IT security expert', said that the group has been founded in response to the Israeli military offensive against Lebanon last year.
"The chief architects of this protest are myself, Eno7 from Turkey, and the byond hackers team from Chile. We expanded our efforts as nine other countries joined us afterwards,” it said.
Cyber Protest did not intend to disrupt the operation of its victims' websites, "only to give a message against war," Eno7 said.
Security experts said today that the attack was most likely conducted using SQL injection, where a hacker exploits a vulnerability in a site that allows it to be altered at the same time that pages are being requested.
"It needn't be a part of the site that allows visitors to interact with it - like a comments page," Steve Moyle, founder and chief technology officer of Secerno, a security firm, said. "Even in a 'read only' section, a hacker can issue a command that forces the database to issue information, and they find that vulnerability, an attacker can gain full control of the site."
Among the other sites to have allegedly been hacked by Cyber Protest are those of Nestle, the University of California, and the Norfolk and Norwich University Hospital.
Today the Secretary-General's page had been restored to show extracts of speeches on climate change as well as on the adoption of a hybrid peace-keeping force in Darfur.
Win a luxury weekend to Newcastle and its neighbour Gateshead, find out more here
Risk, resilience and embracing new technology
Industry sectors news at a glance. Interactive heatmap, video and podcast
Discover the collective power of smart thinking. Submit a solution and be in with a chance to win a Flip MinoHD Camcorder
The inside track on current trends in the charity, not for profit and social enterprise sectors
Everything the Business Traveller needs to know to make a better trip
Make the most of the summer and enter our fabulous photographic competition, you could win a £5000 holiday
Corsica is an island of beauty and contrast, an ideal holiday destination
Enjoy further reading from Travel to Fashion, Business to Sport, discover more
Shortcuts to help you find sections and articles
The clever way to lease a new car is with Car leasing made simple™
2009
42,945
2008
71,450
Car Insurance
Not Specified
MI6
UK-based
£60,000
The Environment Agency
Bristol
Up to £90K
Boots
Midlands
OTE £85k
Credit Protection Association
Nationwide Opportunities
Completely London
Luxury Condo's in Manhattan with NYC views
The best new homes in Wimbledon?
Nationwide
Save up to £1,000 per couple with Elite Vacations at the five-star Constance Lemuria Resort
and do the British Isles this Summer.
Save up to 60% with Oxford Hotels and Inns
Try our inspiring luxury holidays to the Indian Subcontinent and South East Asia.
Great offers available
8 fabulous Canadian cities ...you won’t find cheaper
Contact our advertising team for advertising and sponsorship in Times Online, The Times and The Sunday Times, or place your advertisement.
Times Online Services: Dating | Jobs | Property Search | Used Cars | Holidays | Births, Marriages, Deaths | Subscriptions | E-paper
News International associated websites: Globrix Property Search | Property Finder | Milkround
Copyright 2009 Times Newspapers Ltd.
This service is provided on Times Newspapers' standard Terms and Conditions. Please read our Privacy Policy.To inquire about a licence to reproduce material from Times Online, The Times or The Sunday Times, click here.This website is published by a member of the News International Group. News International Limited, 1 Virginia St, London E98 1XY, is the holding company for the News International group and is registered in England No 81701. VAT number GB 243 8054 69.
That's good, the UN should know that what Israel did to Lebanon was TERROR. The UN should be more power and able to stop such attach on Women and Children.
Adam, New York, USA
But they picked on the wrong people! How about criticizing Hamas for their fascistic policies against their own people in Gaza??? How about Islamic Fascists all over the world who are murdering Christians and women??? How about the Egyptians who are treating Sudanese refugees awfully and in some cases killing them?? And also the way they treat the Copts?? And of course, Iran, where homosexuals are hanged as a matter of course! It is to Israel that Sudanese are seeking refuge and where homosexuals run to from the PA.
Chaya, Bat Yam, Eretz Yisrael
SQL injection attacks can be prevented by using stored procedures. Database performance is also increased with SPs.
James, London, England