www.msn.com.tw 是不是被駭掉了阿?

放輕鬆,這個版純聊天不談技術,歡迎大家進來坐坐。

www.msn.com.tw 是不是被駭掉了阿?

文章chih.0812 » 週五 9月 07, 2007 10:14 am

以下,進去 www.msn.com.tw 時出現的網頁,是不是被駭掉了阿
尤其是紅色字體,還建議 try linux 呢

Someone at Microsoft messed up.

It looks like they made a typo when entering the dns information for their domain msn.com.tw. Instead of typing dns.cp.msft.net, they entered dns.cpmsft.net. I discovered this while doing some anti-spam research related to dns. I registered the name cpmsft.net, which was previously unused. Now I control one fifth of the visitors and emails to sites at msn.com.tw.

I won't do anything bad with the information I gather, but I am redirecting people here so that the problem will be noticed and fixed. I registered the domain as a proof of concept and out of curiosity.

Don't count on Microsoft for security! Try linux, it's secure, easy and free!

Click here for tw.msn.com

$ dig msn.com.tw @d.twnic.net.tw.

;; QUESTION SECTION:
;msn.com.tw. IN A

;; AUTHORITY SECTION:
msn.com.tw. 86400 IN NS dns1.cp.msft.net.
msn.com.tw. 86400 IN NS dns1.dc.msft.net.
msn.com.tw. 86400 IN NS dns1.tk.msft.net.
msn.com.tw. 86400 IN NS dns3.uk.msft.net.
msn.com.tw. 86400 IN NS dns.cpmsft.net.

Date: Wed, 05 Sep 2007 15:46:44 -0700
From: Julian
To: Microsoft
Subject: DAY 0: msn.com.tw dns hijacked

This page has all the details - fix your dns NOW, your users are at risk..

http://www.julianhaight.com/msnhack.shtml

Please let me know if you need any more details or help resolving the issue.

-=Julian=-


From: Microsoft Security Response Center
To: Julian
Date: Wed, 5 Sep 2007 16:29:03 -0700
Subject: RE: DAY 0: msn.com.tw dns hijacked

Hello Julian,

Thank you for the message. I have sent this information to the appropriate group for action.

Regards,
Nate


5 Sep 2007 23:05:06 -0700: problem resolved, but you may still see this page due to dns caching:
chih.0812
可愛的小學生
可愛的小學生
 
文章: 33
註冊時間: 週三 8月 08, 2007 11:37 pm

文章Cheung » 週五 9月 07, 2007 10:53 am

新聞出來了 昨天被偷換掉了
可愛的寶寶,我的小心肝,樹上的葉子被風捲起,輕輕地落在寶寶的床上,

天上的神呀,請保佑這個孩子,請保佑大家,讓她永遠活在您慈愛的照拂下..........
Cheung
懵懂的國中生
懵懂的國中生
 
文章: 232
註冊時間: 週二 6月 03, 2003 9:34 pm

文章chih.0812 » 週五 9月 07, 2007 2:53 pm

msn.com.tw. 86400 IN NS dns.cpmsft.net.

好像只是因為 DNS 導向問題,他們內部自己打錯了
dns.cp.msft.net 才對,所以才會被導向別的地方,
就像改過來了, dns cache 還在的話,還是會導去那邊…


不過,可以看出這個人是支持 ubuntu 的,因為 try linux 是導向 ubuntu 的網站 :-P
chih.0812
可愛的小學生
可愛的小學生
 
文章: 33
註冊時間: 週三 8月 08, 2007 11:37 pm


回到 talk

誰在線上

正在瀏覽這個版面的使用者:沒有註冊會員 和 1 位訪客

cron