TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Skype blog hacked

86 pointsby tazerover 11 years ago

13 comments

xSwagover 11 years ago
This blog is not hosted by the Skype but on WordPress VIP. This means that, most likely, the blog was not broken into using a software exploit of any sort since the security on VIP blogs is professional. Knowing that this is the Syrian Army, this attack was most likely done using phished credentials.<p>If they had any sort of system access they would have defaced the entire subdomain or the main site. So most likely, this is nothing to worry about. Your account data most likely still in safe hands.
评论 #6996642 未加载
评论 #6996719 未加载
评论 #6997701 未加载
yeukhonover 11 years ago
Here is the screenshot of the blog hacked. <a href="http://imgur.com/RGeTFWV" rel="nofollow">http:&#x2F;&#x2F;imgur.com&#x2F;RGeTFWV</a><p>So it looks like Skype doesn&#x27;t host on its own server. It looks like this is wordpress.com but with custom domain?<p>curl <a href="http://blogs.skype.com" rel="nofollow">http:&#x2F;&#x2F;blogs.skype.com</a> -v<p>&lt; X-hacker: If you&#x27;re reading this, you should visit automattic.com&#x2F;jobs and apply to join the fun, mention this header.<p><i></i>EDIT<i></i> Okay it is<p>New to wpscan. When it says plugins found are these the vulnerable plugins wordpress.com running?<p><a href="https://gist.github.com/yeukhon/8211580" rel="nofollow">https:&#x2F;&#x2F;gist.github.com&#x2F;yeukhon&#x2F;8211580</a><p>And I found the username 7 pretty interesting.... wonder if I am actually doing the ethical thing here :(
评论 #6996808 未加载
xsNzgw8over 11 years ago
Snapshot archive (if they fix the page): <a href="http://mraka.eu/snapshot/v/blogs.skype.com" rel="nofollow">http:&#x2F;&#x2F;mraka.eu&#x2F;snapshot&#x2F;v&#x2F;blogs.skype.com</a><p>Direct link to the snapshot of the hacked site: <a href="http://mraka.eu/snapshot/img/2014/01/01/e0d8888c73483275afea3ba8e007adaf.png" rel="nofollow">http:&#x2F;&#x2F;mraka.eu&#x2F;snapshot&#x2F;img&#x2F;2014&#x2F;01&#x2F;01&#x2F;e0d8888c73483275afea...</a><p>Snapshot archive of twitter account: <a href="http://mraka.eu/snapshot/v/twitter.com" rel="nofollow">http:&#x2F;&#x2F;mraka.eu&#x2F;snapshot&#x2F;v&#x2F;twitter.com</a><p>Direct link to the first tweet snapshot: <a href="http://mraka.eu/snapshot/img/2014/01/01/1d6269aa8371ce67658770d5d703e2d9.png" rel="nofollow">http:&#x2F;&#x2F;mraka.eu&#x2F;snapshot&#x2F;img&#x2F;2014&#x2F;01&#x2F;01&#x2F;1d6269aa8371ce676587...</a><p>Direct link to the first retweet snapshot: <a href="http://mraka.eu/snapshot/img/2014/01/01/a0f4c0947281bb0fb19dce9a1a74b750.png" rel="nofollow">http:&#x2F;&#x2F;mraka.eu&#x2F;snapshot&#x2F;img&#x2F;2014&#x2F;01&#x2F;01&#x2F;a0f4c0947281bb0fb19d...</a>
wahnfriedenover 11 years ago
The Twitter account has also been compromised at the same time: <a href="https://news.ycombinator.com/item?id=6996899" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=6996899</a>
评论 #6997147 未加载
评论 #6996937 未加载
rev087over 11 years ago
There is also a second post from the same - apparently compromised - author: <a href="http://blogs.skype.com/2014/01/01/dont-use-microsoft-emails-hotmailoutlook-they-are-monitoring-your-accounts-and-selling-the-data-to-the-governments/" rel="nofollow">http:&#x2F;&#x2F;blogs.skype.com&#x2F;2014&#x2F;01&#x2F;01&#x2F;dont-use-microsoft-emails-...</a>
ollysbover 11 years ago
&gt;&gt; Hacked by Syrian Electronic Army.. Stop spying!<p>Seems a strange message to send to a country that spies on it&#x27;s own citizens (and where apparently the citizens are unable to prevent their own government from doing it to them).
评论 #6997332 未加载
t0over 11 years ago
More than likely a guessed admin password.
lelandbateyover 11 years ago
Here&#x27;s a screenshot of the blog, in case it get&#x27;s fixed:<p><a href="http://puu.sh/65TRe.png" rel="nofollow">http:&#x2F;&#x2F;puu.sh&#x2F;65TRe.png</a>
coffeechequeover 11 years ago
Its Twitter account was also hacked and a message posted, but it appears to have been deleted.<p>Screenshot here: <a href="https://twitter.com/MikeElgan/status/418482819611230208" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;MikeElgan&#x2F;status&#x2F;418482819611230208</a>
评论 #6996813 未加载
ihatehandlesover 11 years ago
Gotta wonder what&#x27;s running through non-techie Skypers when they see the tweets (<a href="https://twitter.com/Skype/status/418495453471068161" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;Skype&#x2F;status&#x2F;418495453471068161</a>) and all :D
romanovcodeover 11 years ago
I&#x27;m not sure why the accent on &quot;Stop using MS, it&#x27;s spying on you!&quot; is on MS. AFAIK <i></i>every<i></i> company is using your data and giving&#x2F;selling it to the government.<p>How is MS more evil than anyone else?
评论 #6996785 未加载
评论 #6996735 未加载
评论 #6996796 未加载
tsurantinoover 11 years ago
They also hacked their Facebook page.
mrkrisover 11 years ago
I don&#x27;t consider getting access to a website via the most insecure blogging platform on the internet &quot;hacking&quot;.
评论 #6996911 未加载
评论 #6996723 未加载
评论 #6996932 未加载