Wednesday, September 29, 2004 - Posts

Zarqawi's Web Site Hacked

Just discovered this news... the TeAmZ USA Hacking Group yesterday for the second time has hacked the terrorist's official site, giving an alert also to the hosting provider. Now the site is back up but the alert is launched: provider must close the site!!

The defacement image is this:

Really nice!

Keep your eyes open...

The last GDI+ bug discovered in these days and published freely on the net by someone that defines himself "hacker" can be the base of a new dangerous worm that could attack your system via email.

The GDI+ bug can be exploited not only bu surfing web pages, but expecially by receiving emails with images as attachments or (more dangerous) embedded on the email body in HTML format.

Disabling the HTML mail feature of your mail client is not the way to do (personally, I don't like HTML emails but I know than lots of people loves them). So, what you can do to avoid this problem?

Not too much at the moment I think, but a patch is extremely recommended.

From yesterday on Windows Update you can find a GDI+ discover tool. Install it and check if on your system there are possible points for attacks. If yes (Microsoft Office could be one of this) patch your system with the suggested feature.

The GDI+ scanning tool from MS is not a great product, but is a point to start and is extremely recommended. A better scanning tool is the GDI Scan that you can find HERE. I know that most of you prefer always an official Microsoft product, but this tool works better than the MS tool.

However, a check up of your system is a must to do soon!