Slashdot Mirror


SCO.com Defaced

A whole slew of readers wrote:"According to an Image on the SCO website they own all our code and we shall pay them all our money. (found at Heise online (german IT news). " Yes, I'm sure this will help the whole legal case; defacement has always been such a valued piece of input in court *cough*.

29 of 547 comments (clear)

  1. strings on the graphic by catalax · · Score: 4, Interesting


    $ strings webinar_land2-1.jpg | head -n 3
    JFIF
    Ducky
    Adobe

    1. Re:strings on the graphic by Naikrovek · · Score: 5, Interesting

      did anyone else notice what she was writing?

      "hacked by realloc(" and she's drawing the ")"

    2. Re:strings on the graphic by Anonymous Coward · · Score: 1, Interesting
      anoncow@slashdot:~$ stegdetect webinar_land2-1.jpg
      webinar_land2-1.jpg : negative
  2. Another article by osvejda · · Score: 5, Interesting

    Article on NewsForge and screenshot.

  3. Slow aswell... by Outsider_99 · · Score: 2, Interesting

    Why havnt sco changed the image back yet? Theyre very slow about it. Hopefully they wont be as slow when they start doing the linux support we pay them for

  4. look at the blackboard in the background by Leonig+Mig · · Score: 5, Interesting

    the woman has written "hacked by reallock" ?? the name is slightly obscured.

    1. Re:look at the blackboard in the background by Anonymous Coward · · Score: 5, Interesting

      Efnet: /whois realloc
      -!- realloc [nobody@nightwish.wideopenbsd.org]
      -!- ircname : h4h4@sco
      -!- channels : @#sco
      -!- server : irc.nac.net [I have a poisonous friend]
      -!- End of WHOIS

    2. Re:look at the blackboard in the background by Anonymous Coward · · Score: 1, Interesting

      * Now talking in #sco
      * Topic is 'Fuck slashdot. SCO rules. Fuck OSS. E-patents rule. Thanks.'
      * Set by realloc on Mon Nov 29 09:58:54

    3. Re:look at the blackboard in the background by TheSurfer · · Score: 5, Interesting
      $ resolveip nightwish.wideopenbsd.org
      IP address of nightwish.wideopenbsd.org is 194.145.249.5
      $ whois 194.145.249.5 | egrep '(org|address)'
      org: ORG-pI10-RIPE
      organisation: ORG-pI10-RIPE
      org-name: prq Inet
      org-type: NON-REGISTRY
      address: Box 1206
      address: SE 11479 Stockholm
      address: Sweden
      address: prq Inet
      FTI: these are the same guys that manage thepiratebay.org, the biggest Swedish/European BitTorrent tracker.
  5. Insecure linux & Apache ? by Anonymous Coward · · Score: 1, Interesting


    how can this be ?, an uptodate apache running on linux and yet the site is STILL defaced ? iam sure the ecommerce sites (and the repuation of OSS) that depend on nix and its "security" are most pleased with examples like this, is it any wonder buisness view linux with sceptism

  6. Re:It may be defacement... by Malc · · Score: 5, Interesting

    Indeed. Perhaps it was orchestrated by SCO themselves. Something from their marketing department as an awareness campaign to push up their share price so that the execs can keep making money selling them. Oh it's great being on /.: tin foil hats are so de rigeur!

  7. Better uses for Joe Barr's abilities by Anonymous Coward · · Score: 1, Interesting

    Instead of fingering the GNU/Linux community for alleged DDOS attacks on sco's site, and now this defacement, (I don't put any self-sabotage for seeding sympathy in potential jurors above the rat-bastards at SCO, or their employees possibly freelancing for sympathy) perhaps Joe Barr can tell us where Osama and Zarqawi are so we can wrap up the war?

    And while we're on the subject, the whereabouts of Jimmy Hoffa? Was there more than one gunman in the Kennedy assassination? Are there weak keys in AES?

    Anyone want to compile a list that Joe Barr can help us with?

  8. Re:Nothing for you to see here. Please move along by OldAndSlow · · Score: 2, Interesting
    ...so what better way to stir up some noise...

    It is a little curious that this happens the morning after Groklaw puts up the USL-UCB Regents agreement from '94. The one that SCO doesn't have a copy of. Hmmm

  9. Re:Nothing for you to see here. Please move along by bernywork · · Score: 2, Interesting

    I am waiting for them to turn around and say:

    "Just kidding!"

    My personal hope is that they turn around and follow that up with:

    "IBM didn't buy us, we used all our money on legal fees, we are now bankrupt, don't try to counter sue"

    --
    Curiosity was framed; ignorance killed the cat. -- Author unknown
  10. Re:Nothing for you to see here. Please move along by ArsenneLupin · · Score: 2, Interesting
    14:00 GMT and it is still defaced.

    Give them some time. In the US it's still early in the morning, after the long Thanksgiving weekend. People may be late for work this morning, or busy chatting with their coworkers on what they did on the weekend. When dremel was defaced on Halloween weekend, it took also til rather late until it was fixed.

    It's always funny however, how discretely these things are fixed, with nary a word of explanation of what happened ;-) Heck, in Dremel's case, ppl were making fun of them on their own customer's chat board. These comments are still there, without any explanation by Dremel about the ... hmmm, ... "smiling" pumpkin.

  11. Re:it's not surprising they didn't fix it yet... by ArsenneLupin · · Score: 2, Interesting
    It's not so obvious that the website is defaced =P

    While the above is a joke, there is actually some truth in it. The defacement nicely blends in with the overall color scheme, and may get overlooked by someone not specifically searching for it. Apparently, according to Heise, other parts of the defacement (the page about various companies having plagiarized the following line of SCO property: for (i = 0; i < 16; i++)) are already gone. It could indeed well be that nobody at SCO didn't notice the "enhanced" banner yet...

  12. Re:that is elegant and leet... by Anonymous Coward · · Score: 1, Interesting

    A lot of the new-ish graffiti showing up in San Francisco in the last 2 years is like this. They'll do really nice fonts that match the building trim. It's pretty neat.

  13. Not just SCO.com by maotx · · Score: 2, Interesting

    If its a hack, they must have hacked thescogroup.com. Image here
    Either SCO has been hacked on seperate web servers (thescogroup.com was put up as alternative in case of DDos), they have a script that mirrors each other, or its SCO's new motto.
    Take your pick.

    I kinda like it being SCO's new motto. Shows their company attitude and policy imo.

    --
    I'm a virgo and on Slashdot. Coincidence? Yes.
  14. Re:Nothing for you to see here. Please move along by forgotten_my_nick · · Score: 2, Interesting

    > 1. This doesn't hurt SCO,

    I disagree. It shows to me that either Sco no longer care about thier website or that the site is owned that they can't fix it.

    Which brings into question the security in SCO.

    Don't think it makes Linux users look like vandals. Just because a few might be acting the maggot doesn't mean every single user is the same. If that was the case every windows user would be a script kiddie spam master.

  15. 0655 PST - looks like they've restored it by macaulay805 · · Score: 1, Interesting

    It looks like they've restored the defaced JPEG as of 0655 PST. If you want to see what the defaced one looks like, its here on my website at
    www.JoesLife.info

  16. The Next Step... by rmpotter · · Score: 2, Interesting

    ...is for someone to post a site collecting all of the of screen captures of SCO's hacked site: "Where were you when SCO got hacked?" There must be hundreds of fools (like me) who snagged a copy. To complete the irony, once such a site was built, SCO would then hack that site, replacing thousands of hacked screen grabs with their "Webinar" banner. Oh what a mangled web we weave ;-)

    --
    Is this sig nificant?
  17. Wrong.. Yet funny. by acomj · · Score: 2, Interesting

    Yeah its wrong to do it. But its so subtle.

    And in a ironic twist, its hard to tell what was changed and what is marketing speak.

    for example this gem, is it real or a joke?
    Learn more about how you can become a part of SCO's Marketplace Initiative and generate new direct revenues by participating in development projects with SCO's Engineers

  18. Re:Nothing for you to see here. Please move along by rjshields · · Score: 2, Interesting

    it's either a windows user, or one of the guys from Disney

    Or maybe a Gimp user that knows how to use a hex editor.

    --
    In this world nothing is certain but death, taxes and flawed car analogies.
  19. He was trying to tell them the weakness. by Bocaj · · Score: 3, Interesting

    I believe there is an Apache exploit involving a realloc() function. addict3d article

  20. Re:Only business by Anonymous Coward · · Score: 1, Interesting

    Home != place of business.

    I have no idea what point you're trying to make.

    When someone breaks into your house and steals your valuables it is, from their perspective, "business" and yes, that's their place of business, other people's homes.

    The people upset with SCO, such as the one being answered further up the thread with the "only business" excuse believe SCO to be committing a fraud. Maybe they're wrong, go ahead and argue against them if you like, but saying "yeah, well, it's only business" is fucking stupid.

  21. Suspicious timing by Animats · · Score: 4, Interesting
    It's interesting that SCO managed to get press releases out on this in the middle of the night over the Thanksgiving weekend.

    SCO has a November 30 filing deadline in the IBM case, on the IBM counterclaims. That's tomorrow. SCO has to reply to IBM's "You violated the GPL and you can't use IBM's code in Linux any more" counterclaim. This is the day SCO has to provide legal arguments to back up their "the GPL is unconstitutional/illegal/irrelevant" claim. Which they're not going to be able to do successfully. That's not the news SCO wants heavily publicized.

    So the timing here is suspiciously convenient for SCO.

    Inside job?

  22. Re:Nothing for you to see here. Please move along by Anonymous Coward · · Score: 1, Interesting

    I have it on good (read, from inside Bosch Tool Co.'s web dev dept) authority that the hack of Dremel's site was related to some old, insecure code put up for rapidly adding pages to the site - complete with paths & passwords in the page comments.

    Fill out the web form - and voila! Page appears on the site.

    Dremel's site was recently migrated to the parent company's server farm, but apparently without any real security review.

    It's your classic cautionary tale. HTML comments & "secret" backdoor admin tools will burn your butt every time.

    (Postin anonymously - you *know* they're reading this site now!)

  23. Well ... by valisk · · Score: 3, Interesting
    according to netcraft they are running on Linux

    Though I do expect that how much Darl paid for his license, is covered by a draconian non disclosure agreement, preventing you from ever revealing this information or any other arbitrary information that Sco may wish you to withold for the entire rest of your life. :D

    --

    Economic Left/Right: -0.62
    Social Libertarian/Authoritarian: -3.69
  24. Re:Screenshot Mirror by someone1234 · · Score: 2, Interesting

    http://realloc.spb.ru

    --
    Patents Drive Free Software as Hurricanes Drive Construction Industry