04.01.2013 Views

сишься, что левые трояны, вирусы и всякая про ... - Xakep Online

сишься, что левые трояны, вирусы и всякая про ... - Xakep Online

сишься, что левые трояны, вирусы и всякая про ... - Xakep Online

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

tin. Öåëü âçëîìà: ïîëó÷èòü ðóòà, ñîçäàòü â êîðíå<br />

ôàéëî hack.txt è âïèñàòü òóäà ñâîå ìûëî.<br />

Ïîòîì ïðåäëàãàëîñü âçëîìàòü ÄÍÑ/ìàéë ñåðâåð.<br />

Ñèñòåìà Red Hat Linux. Ñåðâèñû - DNS,<br />

POP, IMAP. Óäàëåííûé äîñòóï ê ñèñòåìå<br />

èìåþò òîëüêî àäìèíèñòðàòîðû “ISP”. Öåëü:<br />

ïðîïèñàòü â çàïèñÿõ DNS äîìåí hacked.openhack.com<br />

:).<br />

Çàòåì ïðåäëàãàëîñü ðàçìÿòüñÿ äåôåéñîì.<br />

Âåá-õîñòèíã. Ñèñòåìà - Ñîëÿðêà 7 ïîä x86.<br />

Äëÿ âçëîìà íàäî ïîëó÷èòü ïðàâà þçåðà webmaster,<br />

êîòîðûé ìîæåò èçìåíÿòü ñîäåðæèìîå<br />

ñòðàíèö íà õîñòèíãå. Íà ñåðâàíòå ðàáîòàåò<br />

cgi. Öåëü - äåôåéñíóòü äâà ôèêòèâíûõ ñàéòà<br />

íà õîñòèíãå.<br />

Íó è íà çàêóñêó ó÷àñòíèêè äîëæíû áûëè îñòàâèòü<br />

ñâîé ñëåä â ÁÄ ëèïîâîãî ýëåêòðîííîãî<br />

ìàãàçèíà. Ñèñòåìà - AIX 4.3.3. (ýêçîòèêà).<br />

Îáû÷íûå ïîëüçîâàòåëè ISP íå èìåþò äîñòóïà<br />

ê ñèñòåìå. Àäìèíèñòðèðîâàíèå òîëüêî ÷åðåç<br />

âåá-èíòåðôåéñ. Öåëü - íàéòè ñåêðåòíóþ ôðàçó<br />

â òàáëèöå hackme-áàçû ìàãàçèíà.<br />

Ïîä âçëîì áûëè îòâåäåíû ñïåöèàëüíûå ìàøèíû.<br />

Èñïîëüçîâàòü DOS/DDOS-àòàêè çàïðåùàëîñü.<br />

Äëÿ îñîáûõ òàíêèñòîâ áûëî äàæå íàïèñàíî,<br />

÷òî “ôèçè÷åñêèé âçëîì íàøèõ ñåðâåðîâ<br />

ìîæåò ñòàòü ïðè÷èíîé äëÿ ïðèâëå÷åíèÿ ê óãîëîâíîé<br />

îòâåòñòâåííîñòè”. Òàê ÷òî ïðèéòè ê<br />

íèì ñ ìîëîòêîì è ïîõà÷èòü âñåõ ïî ïîëíîé<br />

ïðîãðàììå áûëî íåëüçÿ.<br />

Äâå íåäåëè òó÷à õàêåðîâ ïûòàëàñü ïîèìåòü<br />

Ïèòáóëÿ. Âñå çàêîí÷èëîñü òåì, ÷òî íèêòî äàæå<br />

øòóêó áàêîâ íå âûèãðàë. Ïèòáóëü ïîèìåë âñåõ.<br />

Èëè ïðîñòî æåëàíèå ñäåëàòü ðåêëàìó çàøëî<br />

òàê äàëåêî, ÷òî âñå ïîïûòêè óñïåøíîãî âçëîìà<br />

îðãàíèçàòîðû ïðîñòî ñêðûëè. Ïî êðàéíåé ìåðå,<br />

â ïðåññ-ðåëèçàõ, ñâÿçàííûõ ñ îêîí÷àíèåì<br />

OpenHack, âñòðå÷àëàñü èíòåðåñíàÿ ôðàçà:<br />

“Íåêîòîðûå ó÷àñòíèêè ñìîãëè ïîëó÷èòü ïîëíûé<br />

äîñòóï ê ñèñòåìå, íî íå ñìîãëè âûïîëíèòü<br />

òåñòîâûå çàäàíèÿ”. Ýòî êàê? Òèïà ïîèìåë ðóò,<br />

à òåêñòîâûé ôàéë â êîðíå íàïèñàòü íåëüçÿ?<br />

Çàãàäêà!<br />

Ñêàçêà òðåòüÿ - Î ïîäâèãàõ<br />

sm0ked crew<br />

 10-õ ÷èñëàõ ÿíâàðÿ êëàí sm0ked crew åùå<br />

ðàç ïîêàçàë îáùåñòâåííîñòè, êàêàÿ õîðîøàÿ<br />

øòóêà Misrosoft Internet Information Server. Â<br />

òå÷åíèå ñóòîê áûëè âçëîìàíû ñàéòû Ñompaq,<br />

Hewlett-Packard, Gateway, New York Times è,<br />

äâàæäû (!), Intel. Ýòî òîëüêî ñàìûå êðóïíûå<br />

âçëîìû. Ñóäÿ ïî ÷èñëó íàäïèñåé sm0ked crew<br />

â õàöêåðñêîé õðîíèêå íà attririton.org<br />

(www.attrition.org/mirror/attrition), ðåáÿòêè<br />

âîîáùå äîñòàòî÷íî àêòèâíû. Èäåîëîã ãðóïïû,<br />

÷óâàê ïîä íèêîì The-Rev óòâåðæäàåò, ÷òî åãî<br />

ëþáèìîå çàíÿòèå - âçëîì IIS. Ðåçóëüòàò - òàêîãî<br />

âîò òèïà ñîîáùåíèå íà íåñêîëüêèõ êðóïíåéøèõ<br />

ñàéòàõ:<br />

Owned by sm0ked crew. The-Rev gives another<br />

admin a nice headache. Greets to DownKaos -<br />

ApocalypseDow - datagram - gM - blachz -<br />

B_Realpimpshiz. Intel is blocking my HTML transfer<br />

so no pretty webpage, sorry. Questions, email<br />

me at sm0kedcrew@hushmail.com. Hi Blackdog<br />

×òî â êðàòêîì ïåðåâîäå ñ áóðæóéñêîãî îçíà-<br />

÷àåò, ÷òî “ýòîò ñàéò ïîèìåë ñìîêåä êðþ è òåïåðü<br />

ó ìåñòíîãî àäìèíà áóäåò òÿæåëûé ïðèñòóï<br />

ãåìîððîÿ” :).<br />

Ñ Èíòåëîì âîîáùå î÷åíü ïðèêîëüíî âûøëî.<br />

Õàöêåðû äåôåéñíóëè ñàéò. Ïîòîì êàêîé-òî óìíûé<br />

æóðíàëèñò îáîçâàë êîìàíäó “script kiddies”<br />

(ïðè÷åì ðîññèéñêèå íîâîñòíûå èçäàòåëüñòâà<br />

äðóæíî ïðîÿâèëè ñõîæèé èíòåëëåêò,<br />

íàçûâàÿ sm0ked crew “ñêðèïòîâûìè ìàëûøàìè”).<br />

Ðåáÿòà, ðàçóìååòñÿ, îáèäåëèñü.<br />

Ïîñëå ÷åãî âçëîìàëè Intel åùå ðàç, ÷åðåç<br />

òó æå äûðó â IIS, ïðîäåìîíñòðèðîâàâ<br />

âñåì òóïîñòü èíòåëîâñêèõ àäìèíîâ.<br />

Íàäïèñü íà ñàéòå ãëàñèëà:<br />

“Intel 0, sm0ked crew 2”. Òèïà 2:0 â<br />

ïîëüçó êóë-õàöêåðîâ! Â îáùåì,<br />

÷òî òóò ìîæíî ñêàçàòü... Àäìèíàì<br />

òàêèõ áîëüøèõ è áîãàòûõ<br />

êîìïàíèé ñòîèëî áû ñëåäèòü<br />

çà ñâîåé áåçîïàñíîñòüþ è<br />

ïîëüçîâàòüñÿ íå ïîïóëÿðíûì-äûðÿâûì<br />

ñîôòîì, à<br />

ñîáñòâåííûì ýêñêëþçèâîì,<br />

íåäîñòóïíîì êóëõàöêåðàì.<br />

À òî ïîïàäàòüñÿ<br />

äâà ðàçà íà îäíîé<br />

è òîé æå äûðêå -<br />

íåñåðü¸çíî êàê-òî,<br />

åé-áîãó.<br />

To be continued....

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!