The Hackers News

Bookmark and Share

The Hackers News


FOX News Twitter Account Hacked by 5CR1PT K1DD3S

Posted: 04 Jul 2011 12:14 AM PDT

FOX News Twitter Account Hacked by 5CR1PT K1DD3S

Fox News Politics Twitter account @foxnewspolitics hacked last night. The account's icon had been changed from the Fox News Politics logo and featured the following new description: "H4CK3D BY TH3 5CR1PT K1DD3S."


Hacker's Personal account was @TheScriptKiddie on twitter, but After hack, Twitter has suspended his account. Then hacker made another announcement via Fox News Politics Twitter account that "twitter has suspended TheScriptKiddie please follow @ScriptKiddi3 for future releases. we have confirmed Fox News is aware of the attack."


THN talk with "The Script Kiddies" Group. They Reply :
"We are a new group called The Script Kiddies. As i have stated in past interviews we do have connections to anonymous, however this does not represent them in anyway. personally I have been part of many hacks leading back to HBgary and #operationPyaback with anonymous. we will not go into details about how we have acquired Fox news twitter account. We do have several email accounts belonging to fox news. As far as our security i obviously can't go into details, but i have faith that the members of the script kiddies will remain hidden. We have no announced plans for future attacks, we have brainstormed several ideas. we will be contributing to #antisec in the future but we have found nothing of value within fox to add to the leaks.The updates about Obama are the result of boards script kiddies members after we found no information to leak to anonymous".


The Scriptkiddies group began a campaign of misinformation which first attempted to trick followers into believing the account was back in Fox News' control, before reporting that President Obama had been shot and had then died:


Microsoft.com.br (Brasil) hacked by TG hacker

Posted: 03 Jul 2011 10:05 PM PDT

Microsoft.com.br (Brasil) hacked by TG hacker
Microsoft Brasil http://microsoft.com.br/ Got defaced by Hacker named "TG".


Hacker redirect server address microsoft.com.br to the page of Microsoft Brazil. Instead of being sent to the developer page of Windows, the Internet user that accesses the address is faced with a message published by hackers as "Ms Brazil 0wn3d by TG"The forwarding service is hosted on an external server.

Oracle website vulnerable to SQL injection

Posted: 03 Jul 2011 09:49 PM PDT

Oracle website vulnerable to SQL injection vulnerability

Oracle database website itself vulnerable to SQL injection attack. The website having a loophole by which any attacker can easily hack into it. The vulnerability is found and submitted by Hacker "m@m@".


Oracle provides the world's most complete, open, and integrated business software and hardware systems to more than 370,000 customers including 100 of the Fortune 100 that represent a variety of sizes and industries in more than 145 countries around the globe. The combination of Oracle and Sun means that customers can benefit from fully integrated systems the entire stack, from applications to disk that are faster, more reliable, and lower cost.
But the website now itself compromised with SQL injection attack. I am providing the link and a screen sort show that you can easily sort out the vulnerability. 


Here is the link: 
http://labs.oracle.com/dmp/patents.php?uid=mherlihy'%20and%201=0%20union%20select%201,2,table_name,4%20from%20information_schema.tables--%20-&show=all


Also Iframe Injection & Blind SQL Injection vulnerability on Apple.com exposed by Idahc(lebanese hacker) : Read here

Iframe Injection & Blind SQL Injection vulnerability on Apple.com exposed by Idahc(lebanese hacker)

Posted: 03 Jul 2011 09:01 PM PDT

Iframe Injection & Blind SQL Injection vulnerability on Apple.com exposed by Idahc(lebanese hacker)


After Sony hacks, Idahc(lebanese hacker) is back to strike Apple.com . He found two vulnerability on https://consultants.apple.com/ as listed below.


Iframe Injection : Click here
Blind SQL INjection: Click Here


Examples of the injections:
Example One
Example two


Two days before Another sub-domain of Apple's database was hacked with SQL injection by Anonymous : Read Here


Hacker Expose the Database ,extracted using Blind Sql injection on a pastebin link
According to Hacker "I am Idahc(lebanese hacker) I found a Blind SQLI and Iframe Injection on AppleI am not one of Anonymous or Lulzsecand I am against The ANTISEC OPERATIONBUt this is a poc with not confidential informationI didn't dump users,emails,passwords........".