Iranian Cyber Army strikes again... in China!

Comments on TheNextWeb suggest that the site (Baidu) wasn't down for long. It was also the same kind of attack on Twitter: DNS cache poisoning. The data servers themselves weren't exploited or backdoored -- instead, the DNS entries that point your computer to Baidu (or Twitter) were altered and pointed to the Iranian Cyber Army's splash screen.
As to why the Iranian Cyber Army attacked the Chinese search engine, who knows! They might not even be Iranian! It might merely be a group of hackers masquerading their actions behind the Twitter and 'green protesters' link. I doubt we'll ever know the answer, and having worked out how to easily poison DNS records, I doubt they'll stop any time soon.
Unless, of course, everyone started using Google's secure Public DNS...












Comments
2
Subscribe to commentsxcvxcvcxcxvcxvJan 12th 2010 9:15AM
Maybe Google is behind this, to make their DNS more popular.
I guess they would really love that, if we used their DNS. No more having to resort to cookies and the like to be able to track users through the WHOLE of the web...
Sebastian AnthonyJan 12th 2010 9:17AM
They have said that the Public DNS's logs are only used for further improvements to the DNS...!
Where is your TRUST? :P