Forum - View topicNEWS: ADV Films Website Hacked
Goto page Previous 1, 2, 3, 4, 5 Note: this is the discussion thread for this article |
Author | Message | |||
---|---|---|---|---|
DemonEyesLeo
Posts: 844 Location: Japan |
|
|||
Glad to see them back up. I was going to order something off their site until this hack happened. Now that's it's over I can order.
|
||||
Kriptor
Posts: 1 Location: ca |
|
|||
Obviously ADV will help fund a new anime project called AYYILDIZ TEAM that involves turkish terrorists hacking random sites in the name of the Ottoman empire. The theme song will just be that logo flashing randomly playing with that music, then through out the show that same song will randomly play during every hacking scene. ............. hey it could be cool! Didn't you ever see that movie hackers!
AYYILDIZ TEAM is the best of cyber attack group in the world not to be confused with AYIYLDZI TEAM is the best of cyber sex group in the world, who will show up in episode 12 when the two groups get into a fight over there similar names. Serious tho who sings that song and what is it called! Last edited by Kriptor on Tue May 09, 2006 7:38 pm; edited 1 time in total |
||||
-Hentai-
Posts: 5 Location: Maine |
|
|||
I'm guessing "Mehter" by Pentagram (haven't heard of it before, though). I made a thread on the Anime Network forums about the hacking. The links to the song and forum it was hosted on no longer work, though. EDIT: Oh yeah, you have to register to view that part of the forum... If you want to see the thread, just go 'n register. |
||||
Zalis116
Moderator
Posts: 6900 Location: Kazune City |
|
|||
Actually, if this group's claims are to be believed, maybe ADV should contact them and take advantage of AYYILDIZ's mysterious powers in order to erase all sites hosting torrents of ADV materials from the Internet
|
||||
fighterholic
Posts: 9193 |
|
|||
I juzs got a look at the original hack, and that's a bad-ass design right there. Maybe for a tattoo or something. And the guy said he liked the "Turkish terrorist music"
|
||||
Yoda117
Posts: 406 |
|
|||
As previously reported, the ADV Films webiste at www.advfilms.com was hacked on Saturday morning by a group of Turkish hackers called Ayyildiz. Webpages on the site were defaced with the Ayyildiz logo message. Ayyildiz commonly hacks websites and defaces them with a propaganda message claiming that the Armenian genocide was an act of self-defense. The message also attacks the Kurdish PKK and their backers, and states that any country that is treacherous towards Turkey will have its websites "erased from the Internet."
A mirror of the original hack can be seen here. ADV removed the hacked server on Saturday morning, no more than a few hours after the original hack itself. Their website resumed regular operation on Sunday evening. According to Mark Williams, CTO at ADV, they took advantage of the downtime to implement several already prepared expansions, including the addition of new servers. The reparations took longer than Williams would have liked as it was the weekend and several staff we're out of town for the weekend. "Plus," adds Williams, "We liked the Turkish terrorist music." Williams states that the vulnerability that lead to this attack has been corrected and that the only server affected was a front end content-caching server, no customer data was affected in any way. Translation: It was a script kiddie attack and we were too cheap with our security to worry about it until it cost us public embarassment and sales. |
||||
Kouji
Posts: 978 |
|
|||
|
||||
DragonsRevenge
Posts: 1150 |
|
|||
For those that care-
Pentagram is a metal band from Turkey (duh). They now go by the name Merzarkabul. For more info: http://bnrmetal.com/groups/pen2.htm |
||||
Yoda117
Posts: 406 |
|
|||
Depends on how you look at it. I look at it as people not being able to order anything from the website for close to two days. I also look at the number of people who will not order through there anytime soon due to fears of possible compromise. ADV can say that no customer data was comprimised, and that is probably true. It doesn't change the fact that more than a few people will think twice before putting their CC on the system. part of the game when you run a webstore. You choose to view it as, no customer data was affected so there's no problem. I view it as more than a day (actually closer to two) days of lost web sales, and loss of future sales due to customer concerns over security. |
||||
ZeroRyoko1974
Posts: 258 |
|
|||
I would have to agree with ADV for once, that was a pretty cool tune.
|
||||
MorwenLaicoriel
Posts: 1617 Location: Colorado |
|
|||
It's nice to see ADV can have a sense of humor about it... Still, though, it was pretty bad that someone was able to hack their site. |
||||
doc-watson42
Encyclopedia Editor
Posts: 1709 |
|
|||
Actually, it was updated very recently (as pointed out in the Anime on DVD Forums)—see here. Unfortunately, it requires you to have the latest version of Macromedia Flash. :-P~~~ As for credit card data on ADV's site, they don't seem to keep it longer than necessary to process charges—at least, the shopping cart requires you to input your data every time you check out; there is no option to save it for future purchases. Lastly, part of the shopping cart seems to still be down, since I can not get it to check out. |
||||
Keonyn
Subscriber
Posts: 5567 Location: Coon Rapids, MN |
|
|||
Well, can't be too hard on them, unfortunately complete security on the net is somewhat of a myth. Their customer database with credit cards is likely behind encryption but a website wouldn't be and if a group really wants to get in then they probably will. |
||||
Anime_Freak
Posts: 420 Location: Oklahoma |
|
|||
True. Like the old saying goes "If you want something bad enough, you'll find a way to get it" or something close to that anyway. But what I'm saying is that if they REALLY wanted to do serious damage, they would've done more than just deface their front/main page. |
||||
Yoda117
Posts: 406 |
|
|||
And also your credit card isn't charged automatically when you make an order, or anytime within what one would consider reasonable for an instant transfer of funds. Meaning that the data is stored for some time, even if it is a short one. I don't have access to their W2B architecture, so unless someone does for sure, we're left somewhat at a loss. I am sure that someone could get it without authorization directly, but the thought of violating several state and federal laws to do so makes the effort a little less glamorous for me. Besides, I'd lose my CISSP, SSCP, and various GIAC certifications in the process, and I use those for my FT day-job thank you very much. Possible jail time doesn't thrill me either. People are right in saying that if you want something badly enough, you'll find a way to bypass any form of security. Given enough time and resources, no security, physical or electronic is impervious. Additionally, the CIA triangle shows us that in having an easily accessable web store, we lose confidentiality and integrity. However, from many years in the field, I can tell you one immutable fact: whenever one part of a website goes down due to a simple hack, you can rest assured that something even more critical isn't properly protected either. |
||||
All times are GMT - 5 Hours |
||
|
Powered by phpBB © 2001, 2005 phpBB Group