[ISN] [defaced-commentary] Trinux site defaced

From: InfoSec News (isnat_private)
Date: Fri Nov 16 2001 - 00:54:20 PST

  • Next message: InfoSec News: "[ISN] City firms risk drive-by hacks"

    ---------- Forwarded message ----------
    Date: Thu, 15 Nov 2001 06:43:27 -0700 (MST)
    From: security curmudgeon <jerichoat_private>
    To: defaced-commentaryat_private
    Subject: [defaced-commentary] Trinux site defaced
    
    
    On November 11, 2001, a defacer known as "w00tx0rs" defaced the home
    page for 'Trinux'. Since the defacement, the site has not responded to
    any attempts to load the web page.
    
    Site maintainer Matthew Franz posted regarding this:
    http://www.geocrawler.com/lists/3/SourceForge/4975/0/7054216/
    
    If for some reason you've run across http://www.trinux.org, you will not
    find the friendly penguin there. 
    
    This is either one of two things:
    1) DNS screwup
    2) Compromise of ISP/Web Hosting folks
    
    I either case your best bet is you use the Sourceforge site until
    further notice (http://trinux.sf.net) and I would *not* use
    http://www.trinux.org/pkg/ (although it doesn't appear to work) for
    package loading.
    
    Thanks
    = mdf
    
    
    What is Trinux?
    
    Trinux is a ramdisk-based Linux distribution that boots from a single
    floppy disk, loads it packages from an HTTP/FTP server, a FAT/EXT2/NTFS
    filesystem, or additional floppies and contains precompiled versions
    versions of popular Open Source network security tools for port scanning,
    packet sniffing, vulnerability scanning, sniffer detection, packet
    construction, active/passive OS fingerprinting, network monitoring,
    session hijacking, intrusion detection, and more. Trinux also provides
    support for Perl, PHP, and Python scripting languages. 
    
    
    
    Mirror: http://defaced.alldas.de/mirror/2001/11/11/www.trinux.org/
    
    
    -
    The information and commentary is Copyright 2001, by the individual author.
    Permission is granted to quote, reprint or redistribute provided the text is not
    altered, and the author and attrition.org is credited. The opinions expressed
    in this mail are not necessarily the opinion of all Attrition staff members.
    
    Commentary Archive: http://www.attrition.org/security/commentary/
    The Attrition Mirror: http://www.attrition.org/mirror/attrition/
    Country/TLD Statistics: http://www.attrition.org/mirror/attrition/country.html
    Attrition Defacement Statistics: http://www.attrition.org/mirror/attrition/stats.html
    Operating System Graphs: http://www.attrition.org/mirror/attrition/os-graphs.html
    
    Other Web Defacement Mailing Lists: http://www.attrition.org/security/lists.html
    Contacting Attrition Staff: staffat_private
    
    To subscribe to Defaced Commentary, send mail to majordomoat_private
    with "subscribe defaced-commentary" in the BODY of the mail (without
    quotes). To unsubscribe, include "unsubscribe defaced-commentary" in
    the BODY of the mail.
    
    
    
    -
    ISN is currently hosted by Attrition.org
    
    To unsubscribe email majordomoat_private with 'unsubscribe isn' in the BODY
    of the mail.
    



    This archive was generated by hypermail 2b30 : Fri Nov 16 2001 - 03:39:35 PST