Japundit hacked
03/28/2006 @ 1:36 pm
As everyone who tried to drop by here between the hours of around 4:00 a.m. and 10:00 a.m. Japan Standard Time knows, Japundit was hacked.
The great folks at our site host (Blogs About Hosting) responded immediately and fixed the site within minutes after I contacted them. The long down period was due to the fact that the hack occurred during the time when I was asleep.
We have taken steps to plug the holes in our security and ensure that this does not happen again in the future.
>>>>>>>>>>>>>>>>>>>>>>>>> Update – March 29
The following is a screen shot of the text that the hackers put up on the Japundit screen.
This shot was kindly provided by Carmen, who blogs about Japan over at Japan-O-Matic!
its the price of fame.
March 28th, 2006 at 1:38 pmThat was pretty lame. What do these people get out of doing that?
March 28th, 2006 at 1:45 pmI blame the LDP.
March 28th, 2006 at 1:46 pmGlad to see you back so fast!
March 28th, 2006 at 1:51 pmglad it’s fixed. I like the site here…:grin:
March 28th, 2006 at 2:15 pmGlad you’re back. Hackers really are pointless people, aren’t they. And this one didn’t even take the opportunity to say anything, just left a black screen. Kids today. No imagination.
March 28th, 2006 at 2:28 pm
mine wasn’t just a blank black screen. lots of info there, if you know how to read all the 23452332k,mkk!!!! Anyway, I saved mine for later reference. Sure would like to catch the buggers! M
March 28th, 2006 at 2:50 pm“What do these people get out of doing that?”
Basically they think that by pointing out flaws they are helping the admins improve their secturity as opposed to software companies appoach of hiding the flaws. Its the ones that come, snatch info and leave without you knowing that are the real pests.
March 28th, 2006 at 3:04 pmIt wasn’t a blank screen. I just wanna know what JP did to piss off Muslim hackers. Or are they pissed at Japan now too? Man, you’d think once you’ve made enemies out of most of the world you’d wanna rethink your antagonizing approach, but I guess not..
I’m glad my fave site is still around tho!
March 28th, 2006 at 3:07 pmI have to admit that it was almost a “kind” hack. The message they left indicated that they were just trying to show how vulnerable the site was and that we would take steps to tighten things up.
This we are doing, and I am happy that nothing was permanently damaged.
March 28th, 2006 at 3:13 pmSo what was the security flaw? It looks like they seem to be mainly targetting WordPress blogs.
March 28th, 2006 at 3:40 pmYes, Riki, you are correct.
Earlier versions of WordPress have “security issues” that can be exploited by hackers. Apparently, upgrading to the latest version of WordPress is a way to protect against such hacks. . . That is to say until someone finds another way to hack it.
March 28th, 2006 at 3:49 pmIt wasn’t a blank screen. I just wanna know what JP did to piss off Muslim hackers. Or are they pissed at Japan now too? Man, you’d think once you’ve made enemies out of most of the world you’d wanna rethink your antagonizing approach, but I guess not..
I don’t think they themselves were the muslim hackers; they just included them in a list of ‘props’ they were giving out. I wish I had a screenshot to make it more clear…
March 28th, 2006 at 4:00 pmIf someone did save a screenshot, please send it to jp@japundit.com, and I will put the text up into the above article.
March 28th, 2006 at 4:08 pmthey were just hackers who want some notoriety amongst their peers for the little stunt.
If you find the source, jp, I can russle up a few unemployed ninja and take of them
March 28th, 2006 at 4:18 pmUs Vandals will join in too!
March 28th, 2006 at 4:45 pmNice to see you back up. As LBJ famously said, “It takes a master carpenter to build a barn, but any jackass can kick one down.”
We now know there are lower life forms than mosquitoes.
March 28th, 2006 at 8:34 pmI knew you were a ninja, David.
March 28th, 2006 at 9:59 pmGlad everything got fixed! I’d say “You know you’re famous when…”, but I had a piddly little nothing site hacked once based solely on the outdated software I was using. I didn’t even notice the hack because I never use the site; my host emailed me about it.
March 28th, 2006 at 10:26 pmIt was a ninja. They’re always doing shit like that. Good to see you back, JP.
March 28th, 2006 at 10:36 pmI just sent you a picture of the screen that was up JP.
March 28th, 2006 at 11:06 pmIt is nice to know that at least nothing on the site was lost or damaged.
Yea the muslim bit threw me for a loop as well. Was wondering why they had declared Jihad on this place. Wish I had screencapped. If you have the htm file backed up from when they did it you could always post a pic of that.
March 29th, 2006 at 3:00 amHowdy, all I saw was a black screen, with the “comment” in the “title bar”
March 29th, 2006 at 8:20 am::[Hacked by BrEakerS]::
rather than the title of the post.
ComingAnarchy was also the victim of an attack; fortunately our webmaster in chief (Younghusband) blocked the ISP before we went critical. Lots of blogs were victim, and glad you’ve weathered the storm.
March 29th, 2006 at 10:05 amCarmen from Japan-O-Matic! has kindly provided a sceen shot of the hacker’s text (the one from Tom never arrived here), which I have posted above.
March 29th, 2006 at 10:52 amWell i would suggest note writing to them. Writing to hackers and complaining about them is not a clever idea. Do you really want them to have your e-mail address?
March 29th, 2006 at 10:54 pmI was hacked twice last tweek by the same guys. Fortunately, they only replaced the index page and didn’t mess with anything else. I upgraded WordPress and it hasn’t happened again… hopefully that’ll be the end of it (at least until the next security hole is discovered, anyhow).
I found it amusing that the hacker’s message only appeared as a blank screen on Firefox. I had to switch to IE to see what they had left behind.:lol:
March 30th, 2006 at 9:39 pmA quick note of thanks to everyone who took the time to pass on their kind words concerning this incident.
All of you folks are the greatest.
March 31st, 2006 at 5:20 pmIt would be nice to call them what there really are, script kiddies. It sucks the your site was defaced. But hackers they aren’t. As one of your posters stated “I found it amusing that the hacker’s message only appeared as a blank screen on Firefox”
To ensure your web is not defaced. Check out the website of wordpress at least once every 2 week or so.
April 2nd, 2006 at 11:24 am