German Interior minister's website pwned in wiretap protest
Schäuble Schadenfreude
Posted in Security, 11th February 2009 15:49 GMT
Free whitepaper – Vulnerability management buyer's checklist
Lax password security allowed hackers to bust into the German interior minister’s website.
Hacktivists pwned the website of Wolfgang Schäuble on Tuesday in protest against new wiretapping and data retention laws They posted links inviting visitors to a protest website "Vorratsdatenspeicherung".
Administrators reacted quickly to the hack by taking the site, www.wolfgang-schaeuble.de, offline. It remains inaccessible on Wednesday afternoon.
Early reports in the German media suggested that security flaws involving the Typo3 content management system used by the site might be behind the hack.
Later reports suggest that hackers were able to gain control over the site after breaking into it using a dictionary attack that revealed the password for the Typo3 CMS was "gewinner" (or winner in English).
Wolfgang Schäuble is no stranger to the attentions of hackers. Last March the Chaos Computer Club published Schäuble's fingerprints in a protest against the reliance on biometrics in electronic passports. ®
Free whitepaper – Avoiding 7 common mistakes of IT security compliance

Analyst Keynote: The Register Agile Data Center Summit
Enabling The Agile Data Center
Analyst Keynote: The Register Agile Data Center Summit
Breaching Fort Apache.org - What went wrong?
Snow Leopard security - The good, the bad and the missing
US Dems fill inboxes with 419 scams
BlockMaster SafeStick hardware-encrypted USB drive