Jump to content

Schooldesk has been hacked, 800 US school websites redirected to IS promotion video

Master Disaster

The Atlanta based company SchoolDesk was today hacked and a small injection made onto its server, this injection made 800 school websites across 5 states plus other government websites and some private company sites redirect all traffic to a YouTube video promoting Islamic State.

Quote

Some 800 schools across the US have been targeted by hackers and their websites redirected to an Islamic State-sponsored YouTube video.

 

The attack, which lasted a few hours, affected schools in Arizona, Connecticut, Virginia and New Jersey.

 

The hack, which also affected private companies and government websites, is being investigated by the FBI.

 

All the websites are run by SchoolDesk. The Atlanta-based company is advising administrators to change passwords.

The hack was discovered when an admin discovered a rogue file on the server route and has now been resolved but SchoolDesk are advising anyone with an Admin Password to change it immediately.

Quote

It said in a statement that "it immediately responded" when its technicians had found a small file injected into the root of one of its websites that redirected "to a YouTube video containing an audible Arabic message and a picture of Saddam Hussein".

 

"Although the exact method and point of intrusion is not yet fully known (possibly an SQL injection or through a user account with a weak password), we have added multiple layers of redundant protection to prevent this from happening again," it said.

 

On its website, Bloomfield School District, in New Jersey, said that its internal computer and data systems within the district "were completely unaffected".

 

Mark James, a specialist at security company ESET, said: "In this case, gaining access to change or plant a rogue file that redirects users to areas of your design is about as simple as it gets - small footprint, no potential warning signs and out before anyone notices - but the results are as bad as they get."

http://www.bbc.co.uk/news/technology-41918496

 

Well holy shit, talk about easy job to make the maximum impact.

 

I wonder how they got access to the master server root though?

Main Rig:-

Ryzen 7 3800X | Asus ROG Strix X570-F Gaming | 16GB Team Group Dark Pro 3600Mhz | Corsair MP600 1TB PCIe Gen 4 | Sapphire 5700 XT Pulse | Corsair H115i Platinum | WD Black 1TB | WD Green 4TB | EVGA SuperNOVA G3 650W | Asus TUF GT501 | Samsung C27HG70 1440p 144hz HDR FreeSync 2 | Ubuntu 20.04.2 LTS |

 

Server:-

Intel NUC running Server 2019 + Synology DSM218+ with 2 x 4TB Toshiba NAS Ready HDDs (RAID0)

Link to comment
Share on other sites

Link to post
Share on other sites

Imagine the stock drop (Don't know if they are a public company or not) for a hack like that. Now to wait for the parents response.

Edited by Guest
mistake -> hack for better clarification
Link to comment
Share on other sites

Link to post
Share on other sites

12 minutes ago, tjcater said:

Imagine the stock drop (Don't know if they are a public company or not) for a hack like that. Now to wait for the parents response.

Imagine how many kids might be radicalised.

 

Link to comment
Share on other sites

Link to post
Share on other sites

well thankfully my school doesn't use them. 

Good luck, Have fun, Build PC, and have a last gen console for use once a year. I should answer most of the time between 9 to 3 PST

NightHawk 3.0: R7 5700x @, B550A vision D, H105, 2x32gb Oloy 3600, Sapphire RX 6700XT  Nitro+, Corsair RM750X, 500 gb 850 evo, 2tb rocket and 5tb Toshiba x300, 2x 6TB WD Black W10 all in a 750D airflow.
GF PC: (nighthawk 2.0): R7 2700x, B450m vision D, 4x8gb Geli 2933, Strix GTX970, CX650M RGB, Obsidian 350D

Skunkworks: R5 3500U, 16gb, 500gb Adata XPG 6000 lite, Vega 8. HP probook G455R G6 Ubuntu 20. LTS

Condor (MC server): 6600K, z170m plus, 16gb corsair vengeance LPX, samsung 750 evo, EVGA BR 450.

Spirt  (NAS) ASUS Z9PR-D12, 2x E5 2620V2, 8x4gb, 24 3tb HDD. F80 800gb cache, trueNAS, 2x12disk raid Z3 stripped

PSU Tier List      Motherboard Tier List     SSD Tier List     How to get PC parts cheap    HP probook 445R G6 review

 

"Stupidity is like trying to find a limit of a constant. You are never truly smart in something, just less stupid."

Camera Gear: X-S10, 16-80 F4, 60D, 24-105 F4, 50mm F1.4, Helios44-m, 2 Cos-11D lavs

Link to comment
Share on other sites

Link to post
Share on other sites

7 minutes ago, Ron31 said:

Imagine how many kids might be radicalised.

 

That could only happen if the school allowed YouTube , if the kid decided to open one of these sites in the few hours the hack was in place.

 

With the average world knowledge of an American kid , they will not even recognise the person America waged war against , be able to understand the language  and let alone pay attention to it for more than 10 seconds.

Link to comment
Share on other sites

Link to post
Share on other sites

...an injection attack? Really?

Don't ask to ask, just ask... please 🤨

sudo chmod -R 000 /*

Link to comment
Share on other sites

Link to post
Share on other sites

Just now, Sauron said:

...an injection attack? Really?

Sometimes KISS is the most effective technique.

Main Rig:-

Ryzen 7 3800X | Asus ROG Strix X570-F Gaming | 16GB Team Group Dark Pro 3600Mhz | Corsair MP600 1TB PCIe Gen 4 | Sapphire 5700 XT Pulse | Corsair H115i Platinum | WD Black 1TB | WD Green 4TB | EVGA SuperNOVA G3 650W | Asus TUF GT501 | Samsung C27HG70 1440p 144hz HDR FreeSync 2 | Ubuntu 20.04.2 LTS |

 

Server:-

Intel NUC running Server 2019 + Synology DSM218+ with 2 x 4TB Toshiba NAS Ready HDDs (RAID0)

Link to comment
Share on other sites

Link to post
Share on other sites

1 hour ago, tjcater said:

Imagine the stock drop (Don't know if they are a public company or not) for a hack like that. Now to wait for the parents response.

You'd be surprised. Look all that's happened with Equifax after their breach. Lol. 

Link to comment
Share on other sites

Link to post
Share on other sites

19 hours ago, corsairian said:

You'd be surprised. Look all that's happened with Equifax after their breach. Lol. 

Dang they are like super powered cockroaches, only down ~27% since September. Would have thought it would be worse.

Link to comment
Share on other sites

Link to post
Share on other sites

How should this be possible? You'd think the servers are a bit more secure.... 

Custom pinewood case, Corsair CX 600WRampage 3 Extreme, i7 980x (@4.2ghz) with ML240 Cooler MSI GTX 970, 24gb DDR3, 240gb OCZ Tr150 SSD + 2Tb Seagate Baracuda. 

 

Advocate for used/older hardware. Also one of the resident petrol heads. 

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×