The official website of Security Center Ltd (security.ky), a security company from the Cayman Islands, has recently been defaced by hackers part of the MalSec collective.
The hackers didn’t cause any damage to the site, instead they asked its administrators nicely to fix the vulnerabilities.
According to ArsTechnica
, the hackers only replaced the site’s main page with their own to demonstrate the existence of the flaws.
“Whilst no harm was done to the original site, we urge you to secure your site before claiming to be 'the best of the best' in any kind of security. We were not first—traces of previous security breaches were found,” the hackers wrote on the defaced page.
A few hours later the site was returned to normal, but it’s uncertain if the vulnerabilities were addressed. Update
. Security Center representatives contacted us. First of all they want to highlight the fact that they are not an Internet security firm, instead they are a company that provides security officers and alarm systems.
Here is part of their statement: We should further clarify that no client or employee information is stored on our website and at no time was secure, confidential or personal information obtained.
Although it is hard to imagine why a hacker would go to this much trouble to infiltrate the front page of our website without noticing we specialize in physical security we can say that we were flattered to be chosen having now seen some of their previous successful targets.
The complete statement is available here Note. My Twitter account has been erroneously suspended. While this is sorted out, you can contact me via my author profile.