Slashdot Mirror


False Start For Cyber Security Challenge UK

An anonymous reader writes "Netcraft writes about an ironic 'false start' for the Cyber Security Challenge UK website. The new venture touts itself as 'a programme of national challenges, designed by experts, to identify and nurture the UK's future cyber security workforce.' Unfortunately, the website appears to be vulnerable to a basic cross-site scripting vulnerability which was easily found by some Twitter users."

18 comments

  1. First Post! by denmarkw00t · · Score: 0

    Or if someone else already got it, they were using simple hacks described on...twitter?

    1. Re:First Post! by Cryacin · · Score: 3, Funny

      Funny how an anti-hacking site is breached by a bunch of twits.

      --
      Science advances one funeral at a time- Max Planck
  2. nice honeypot by cunnilingus · · Score: 0

    will it attract enough flies?

    1. Re:nice honeypot by dwarfsoft · · Score: 1
      --
      Cheers, Chris
  3. Sigh by bbqsrc · · Score: 2, Insightful

    Of the four paragraphs in the article, there's one entirely about how the toolbar run by the website will protect you from XSS, and hardly goes into detail about anything amusing at all. It's not even that good of an XSS hole... simply boring.

    --
    Disagree != mod troll.
    1. Re:Sigh by Anonymous Coward · · Score: 1, Funny

      Netcraft is dying! Someone commenting about it as if they didn't know it confirms it!

  4. Donkeys seeking to recruit lions by Rogerborg · · Score: 5, Insightful

    Well, I guess if they had competent IT people, they wouldn't be looking to hire any. Seems pretty axiomatic.

    --
    If you were blocking sigs, you wouldn't have to read this.
    1. Re:Donkeys seeking to recruit lions by BeerCat · · Score: 1

      Perhaps the website is the first part of the recruitment process -
      "if you can hack this, then we could offer you a job as a white hat" Or something like

      --
      "She's furniture with a pulse"
  5. Re:UK by jcupitt65 · · Score: 4, Informative

    So they created a nice little "World University Ranking" that places almost half the value on the presence of foreign students and faculty while largely ignoring usual measures like student and faculty achievements.

    No they didn't, please check your facts.

    The ranking weights are:

    • Peer Review Score (40%)
    • Recruiter Review (10%)
    • International Faculty Score (5%)
    • International Students Score (5%)
    • Faculty/Student Score (20%)
    • Citations/Faculty Score (20%).

    http://en.wikipedia.org/wiki/Times_Higher_Education_World_University_Rankings

    You're right that the THES ranking has been criticised. You'll note that they will be using a new methodology for this autumn's table.

  6. There are none by h00manist · · Score: 3, Insightful

    There are no competent people, no secure or quality products, and no certain outcomes. Get over it and get to work trying to get whatever result you want, or to drinking beer. Either way, everything will end up somewhere. Try not to do it with guns, and nobody will die, that way you can try again.

    --
    Build your own energy sources from scratch. http://otherpower.com/
  7. Re:UK by Weezul · · Score: 0, Flamebait

    Oops, yes, I'd forgotten exactly what they did wrong, but nevertheless everyone outside the UK basically agrees these rankings are self aggrandizing bullshit.

    A more honest ranking was done by Shanghai Jiao Tong University. In fact, the Shanghai rankings are still extremely based towards English speaking universities, although less blatantly biased towards British institutions. In all seriousness, the University of Sheffield simply does not belong in the top 100 for any world university rankings. lol

    --
    The Christian religion has been and still is the principal enemy of moral progress in the world. -- Bertrand Russell
  8. Re:UK by Anonymous Coward · · Score: 0

    Just get over it, you froggy cunt.

  9. Re:UK by jcupitt65 · · Score: 1

    They don't have much credibility in the UK either, hehe. The university I work at is apparently in the world's top ten, which is rather o.O.

  10. You're being too "absolute" & this shows other by Anonymous Coward · · Score: 0

    "There are no competent people, no secure or quality products, and no certain outcomes. Get over it and get to work trying to get whatever result you want" - by h00manist (800926) on Saturday May 01, @08:03AM (#32055292)

    This seems to show otherwise, and it is about the closing portion of that quote of your words above: Getting to work and trying to get the result you want (an "impervious to attack" based OS):

    ----

    HOW TO SECURE Windows 2000/XP/Server 2003, & even VISTA/Windows 7 (+ make it "fun-to-do" via CIS Tool Guidance & beyond):

    http://www.tcmagazine.com/forums/index.php?s=568d95985ad83ef4add94de09f6026d3&showtopic=2662

    ----
    http://forums.theplanet.com/index.php?s=80bbbffc22d358de6b01b8450d596746&showtopic=89123&st=60&start=60

    "the use of the hosts file has worked for me in many ways. for one it stops ad banners, it helps speed up your computer as well. if you need more proof i am writing to you on a 400 hertz computer and i run with ease. i do not get 200++ viruses and spy ware a month as i use to. now i am lucky if i get 1 or 2 viruses a month. if you want my opinion if you stick to what APK says in his article about securing your computer then you will be safe and should not get any viruses or spy ware, but if you do get hit with viruses and spy ware then it will your own fault. keep up the good fight APK." - Kings Joker, user of my guide @ THE PLANET

    AND

    http://www.xtremepccentral.com/forums/showthread.php?s=672ebdf47af75a0c5b0d9e7278be305f&t=28430&page=2

    "I recently, months ago when you finally got this guide done, had authorization to try this on simple work station for kids. My client, who paid me an ungodly amount of money to do this, has been PROBLEM FREE FOR MONTHS! I haven't even had a follow up call which is unusual." - THRONKA, user of my guide @ XTremePcCentral

    AND

    "APK, thanks for such a great guide. This would, and should, be an inspiration to such security measures. Also, the pc that has "tweaks": IS STILL GOING! NO PROBLEMS!" - THRONKA, user of my guide @ XTremePcCentral

    AND

    http://www.xtremepccentral.com/forums/showthread.php?s=672ebdf47af75a0c5b0d9e7278be305f&t=28430&page=3

    "Its 2009 - still trouble free! I was told last week by a co worker who does active directory administration, and he said I was doing overkill. I told him yes, but I just eliminated the half life in windows that you usually get. He said good point. So from 2008 till 2009. No speed decreases, its been to a lan party, moved around in a move, and it still NEVER has had the OS reinstalled besides the fact I imaged the drive over in 2008. Great stuff! My client STILL Hasn't called me back in regards to that one machine to get it locked down for the kid. I am glad it worked and I am sure her wallet is appreciated too now that it works. Speaking of which, I need to call her to see if I can get some leads. APK - I will say it again, the guide is FANTASTIC! Its made my PC experience much easier. Sandboxing was great. Getting my host file updated, setting services to system service, rather than system local. (except AVG updater, needed system local)" - THRONKA, user of my guide @ XTremePcCentral

    ----

    (Those results are only a SMALL SAMPLING TOO, mind you - I can produce more such results, upon request, from other users & sites online)

    HOWEVER - There's ONLY 1 WEAKNESS TO IT:

    Human beings, & they not being 'disciplined' abo

  11. Comments by maswaaq13 · · Score: 1

    I like your information I have never read like this. You information not only interesting but mean full for me and other peoples who visit your site. But unfortunately I did not write any more due to my study about mcp because I want to update me in IT field and make me better and better. I did not spend all time at my study, also give time on music, sports and internet browsing for find out more and more great full and latest information. But i like to join you group and happy that i am a part of your group via make an account on your site and reply to your post. Have a nice day!

  12. Re:UK by Anonymous Coward · · Score: 0

    LOL, Though I am unsure of the statistics, I do know that a large percentage of students at Australian Universities are not from Australia. For instance in my degree, there's about a 50/50 split, though sometimes it seems far more skewed towards foreigners.

    In fact, when I was studying at another institution and working closely with the faculty, they were becoming extremely worried about the increasing exchange rate, because this would decrease the amount of foreigners who could afford it, and would drastically impair their revenue.

    It's not just a slight impairment either, since Australian students have government loans, and pay low fees, compared with foreign students, who also have to pay for accommodation, and food.

    Either way, you've obviously got no idea.

    Here's some numbers:
    http://www.idp.com/research/statistics/international_student_numbers.aspx

    Couldn't easily find the Australian numbers, nor a breakdown per what they are studying.