FBI to investigate Al-Jazeera Web hijack

NEWS Visitors to both the Arabic and English versions of the Al-Jazeera Web site on Thursday were greeted with an American flag and a pro-US message, the work of an apparent online vandal. The FBI has opened an investigation into the attack on Al-Jazeera's Web site, a representative with the bureau has said. The Middle Eastern news service was the victim of a domain hijacking. The actual defacement appeared on a free Web site service provided by NetWorld Connections. Technically known as a "redirect," the hack caused Web browsers that attempted to go to www.aljazeera.net -- as well as the English-language site -- to be surreptitiously redirected to the content hosted on NetWorld's servers. The NetWorld service detected a spike in traffic early on Thursday morning, and an email from a security specialist confirmed that visitors to Al-Jazeera were being redirected to NetWorld's service, said Ken Bowman, chief executive of the Salt Lake City company. "We pulled down the content immediately," Bowman said. He added that VeriSign, which administers the domain registry, eliminated the redirect later in the morning. "They never even touched (Al-Jazeera's) site," he said. The problem has been corrected by eliminating the redirect and reinstating the correct addresses for Al-Jazeera's sites. However, the changes take time, up to three days, to filter throughout the Internet. Moreover, even without the redirect issue, Al-Jazeera's sites may remain unreachable as they continue to come under attack by online vandals flooding the news outlet's network with data. A representative of VeriSign couldn't immediately answer questions regarding how the domain had been hijacked. VeriSign maintains the Internet registry for the .com, .net, .cc and .tv top-level domains and administers the authoritative database for all domain names registered in those top-level domains. The records from the whois database -- the distributed directory that holds information about each domain -- indicated early on Thursday that online vandals had managed to forge new domain records. Such records typically describe the services that are offered by a particular domain, such as Web, mail and file hosting. Instead, VeriSign's records pertaining to Al-Jazeera had apparently been replaced by data that pointed to name servers hosted by MyDomain.com. Those name servers in turn referred Web requests to the defacement site located at NetWorld. "MyDomain has learned from NavLink, the company that hosts the aljazeera.net Web site from its data centres in France, that Al-Jazeera's domain name account at Network Solutions (a subsidiary of VeriSign) was compromised," MyDomain.com said in a statement on Thursday. "NavLink has confirmed...that it has regained access to the account at Network Solutions and changed the name servers back to the correct settings." Email messages to NavLink requesting comment weren't immediately answered. MyDomain believed that changes would take as long as 72 hours to filter out to all parts of the Internet. The defacement is the latest in a flurry of activity surrounding the Middle Eastern news service. Al-Jazeera has had to contend with both technical problems and attacks this entire week. The Arab satellite TV network launched its English-language Web site on Monday, attracting significant media coverage. The site hosts the station's controversial video coverage, which has included images of US soldiers killed and taken prisoner. The controversy and resulting media coverage has also made the site a target of a number of online miscreants. "Let Freedom Ring!" stated Thursday's defacement, featuring a large American flag and signed by a vandal with the handle "Patriot" and claiming to be part of a group called the Freedom Cyber Force Militia. "GOD BLESS OUR TROOPS!!!" NetWorld's Bowman said the site had been created using a free hosting service that the company offers. He also explained that, because the service is free, the company doesn't keep very rigorous watch on the activities. "All the supplied information was fictitious," he said, quashing any possibility of aiding in a law enforcement investigation. "It's is a free site, so we don't track any data. We don't track the Internet addresses or anything else. It would take a staff of about 500 to do so." Bowman said they are analysing what happened and may change the way the free portion of the site is administered to prevent future incidents. One security expert familiar with the defacement scene said that he had never heard of a group called Freedom Cyber Force Militia. "We didn't hear about many other defacers who hacked right (before) the war," the administrator of Zone-H.org, a popular security and defacement news site, said in an email interview. "I guess a lot of IT (security) professionals took the chance of this war to remove some rust from their fingers," said the administrator, who goes by the handle SyS64738.
For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Security News Section. Let the editors know what you think in the Mailroom.

Post your comment

In order to post a comment you need to be registered and logged in

Log in or create your ZDNet UK account below

Will not be displayed with your comment

By signing up for this service, you indicate that you agree to our Terms and Conditions and have read and understood our Privacy Policy. Questions about membership? Find the answers in the Membership FAQ

ZDNet UK Live

dava4444

took there repos down for Ubuntu (I think there back now but they took a few months). I don't think there is a perfect answer,

56 minutes ago by dava4444 on How to build a GUI for a toaster
dava4444

but the community coding and ideas would be gratis, maybe that's why OEM's can be 'slackers' when it comes to Linux. they just sit back and let...

57 minutes ago by dava4444 on How to build a GUI for a toaster
dava4444

continued the bad point about that is hardware, a rival OEM can take your development and use it themselves and to retaliate you would have to go...

1 hour ago by dava4444 on How to build a GUI for a toaster
dava4444

continued Okay how about something like Google's approach 'semi-open source'? . the OEM pours cash in to development and code, whilst opening it...

1 hour ago by dava4444 on How to build a GUI for a toaster
dava4444

Hi Adrian em, interesting, yeah okay I can get this vibe, if I wanted VRec on my Tele I would need an embedded and tiny OS and you're totally...

1 hour ago by dava4444 on How to build a GUI for a toaster
dava4444

Hi Adrian been trying to post for three days .this spam bot is a nightmare. Dava

1 hour ago by dava4444 on How to build a GUI for a toaster
dava4444

Hi James I totally agree. The new site makes me want to come and post, but the spam bot refers me at every turn. I even at one point, thought I...

2 hours ago by dava4444 on Spam? Filter Changed?
sameerhere

the future of mobile will be location and context aware. This means, you will have apps that will suggest you depending where you are right...

3 hours ago by sameerhere on Symbian^3 will do resistive multitouch, says Nokia
kenye2009

hello i would like to have some form of a answer to this question as it concerns the goverment i want to know why if your on state benefits as a...

4 hours ago by kenye2009 on ITN to launch ITV online news service
georgiox

love the LHC info. Keep up the good work. May God bless all in volved.

10 hours ago by georgiox on LHC to run for longest continuous period
sgardia

You are quite right. HDS has not been marketing their products well. USPV is miles ahead in terms of ease of use and technology on enterprise...

14 hours ago by sgardia on Will the SUN set on Hitachi Data Systems OEM relationship?
apexwm

Fedora is the same way as well. The yum update system uses "presto" which shrinks the amount of data needed for download. It's a great system....

1 day ago by apexwm on Can you believe it - 2765 kB will be freed?
cybfor

Updated ID cards considered for 2012: [zdnet.co.uk] The government is considering introducing a new generation of ID... http://dlvr.it/KpBZ

cybfor

Google, Viacom trade blows in YouTube copyright spat: [zdnet.co.uk] Google and the US media giant Viacom have issued... http://dlvr.it/Knht

CIMITL

Be sure to include an audio option - eg. a beep tone - to intensify and reiterate the action. This will greatly benefit some consumers and give...

1 day ago by CIMITL
DataSecurityUK

Data disposal is really important to get right. There are standards set by UK and US federal governments to ensure that data is kept secure. If...

1 day ago by DataSecurityUK
chaycon1

Online Fiber Optic Certification Join a talented group of professionals, who are dedicated to Fiber Optic Networking technology. The online course...

1 day ago by chaycon1 on BT launches 40Mbps fibre-based broadband
chaycon1

Online Fiber Optic Certification Join a talented group of professionals, who are dedicated to Fiber Optic Networking technology. The online course...

1 day ago by chaycon1 on Google to build gigabit broadband to the home
J.A. Watson

Hi Dava, I'm glad to hear from you, and glad that you see things from the other side. I think that is the most important point of the whole...

1 day ago by J.A. Watson on Ubuntu 10.04 (Lucid Lynx) and the Latest Tempest
dava4444

please please please please please please kill that spam bot.

1 day ago by dava4444 on ZDNet UK: faster, smarter, still IT all the way

Featured white papers

Achieving PCI Compliance for:Privileged Password Management & Remote Vendor Access

For multi-store outlets, including retail, banking, grocery, gas, hospitality, convenience stores and others, reducing (or avoiding) the cost of in-store system support and maintenance while maintaining compliance with PCI and other requirements has become a strategic challenge.

Download now

Web 2.0 Security Threats: How to Protect Your Enterprise Network

Speaker: Dr. Chenxi Wang, Principal Analyst, Security and Risk Management, Forrester Research, Inc. As Enterprises are increasingly connected to the Internet and as hard organizational boundaries are fast disappearing, security professionals are facing fresh challenges in Enterprise computing.

Download now

MindManager - Tutorial for New Users - Short

This tutorial is for new MindManager users and teaches you how to get started, by creating maps, reading maps and organizing your information.

Download now