Immediately after rolling out of bed this morning, as I sometimes do, I checked up on the status of this blog. I was greeted with a bit of shock to begin my day today. When I clicked on the link to my blogspot, it briefly flashed on the screen and then random unexpected web sites started appearing. Being an advanced ape above all (time to shamelessly plug the Kinks' masterpiece "Apeman"); I naturally tried the same thing a couple of more times. You probably don't need to be told I got the same result each time. Still in advanced ape mode, my main thought at this point was "holy s**t, I've been hacked!"
Then I poured myself a cup of coffee and started exercising my god given gift of critical reasoning. First of all, the damage assessment. What else is broken? Click around for a few minutes. Nothing. OK, good. Virus scan. All clean. Good.
These measures were really just prudently paranoid precautions anyway, because before my coffee cup was even full I recognized and categorized the attack as a Domain Name Server (DNS) Redirection - a relatively beneign, if annoyingly childish, attack.
And I wasn't all that worried about losing work or data. I specifically chose Google's Blogspot service for this project not only because it fit my budget (free); but also because Google may very well own the largest hosting infrastructure on the planet (just guessing). This means I should have little to no worries about the security and availability of the network hosting my blog. Plus the Blogspot service includes simple-to-use backup tools that allow me to keep backup copies of everything on separate media.
Here it was time to drive boy #1 to school. The drive went well while I pondered next steps. Traffic was lighter than usual for some unknown reason.
The Blogspot service also includes help resources that I have found to be actually helpful. A couple of searches, some reading, a little critical reasoning; and it became apparent the security hole was in all likelihood created by the inclusion of a 3rd party widget. So, I went into my Blogspot dashboard, and began methodically removing one 3rd Party widget at a time, and testing the effect in Preview mode.
Long story short - the attack surface came through the Homer Simpson Quotes 3rd Party widget.
So, either the attacker hates Homer Simpson, or someone with administrative rights to Homer Simpson Quotes hates LibertyAtStake. And committed a First Amendment crime.
My new policy is to avoid including 3rd Party widgets on this blog. The experience of my faithful readers will be slightly diminished unfortunately. The anti-First Amendment forces in the Cyber Wars of 2010 will need to find another attack surface to silence this blog.
Click here to link to the Kinks' original Promo film for "Apeman."
Friday, March 5, 2010
After Action Report: Cyber Wars 2010
2010-03-05T09:22:00-05:00
LibertyAtStake
Constitution|Fun|
Subscribe to:
Post Comments (Atom)