Welcome Guest ( Log In | Register )

Outline · [ Standard ] · Linear+

> /k/, open google.com.my now

views
     
ketnave
post Oct 11 2013, 02:04 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


user posted image

This post has been edited by ketnave: Oct 11 2013, 02:05 AM
ketnave
post Oct 11 2013, 02:06 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(Xploit Machine @ Oct 11 2013, 01:58 AM)
not actually hacked .. just a defaced by insiders to gain more popularity IMHO  biggrin.gif .. if u can hack Google, u can do the same on FBI's  wink.gif
*
nameservers kena jacked or dns poisoned ...
ketnave
post Oct 11 2013, 02:12 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(Xploit Machine @ Oct 11 2013, 02:06 AM)
abang lambat .. selamat pagi  yawn.gif
*
laugh.gif selamat pagi ... (petang)

QUOTE(buysellaccount @ Oct 11 2013, 02:06 AM)
our country handle .my, poison our dns, the new ip will be updated to all other dns. i'm using 8.8.8.8 also.
*
hmm.gif really ar ?! I don't see it from the US side ...
ketnave
post Oct 11 2013, 02:13 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(Lord Tiki Mick @ Oct 11 2013, 02:10 AM)
so it is Malaysian fault right? Vulnerable DNS!
*
most likely the data centers / NOC are responsible for letting such intrusion to occur ...
ketnave
post Oct 11 2013, 02:17 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(Lord Tiki Mick @ Oct 11 2013, 02:14 AM)
Different DNS. They poisoned local DNS, say TM's, so all use TM's DNS will be affected. Right? sweat.gif
*
eh, no idea on how it will propagate or it's effect ...

I only know that this seems to be the hacking trend now ... laugh.gif

it's like messing up windows hosts file to redirect the request to another IP instead of the legit one, the actual site isn't actually hacked or anything, but the user will not see the actual site, but instead, a defaced one.
ketnave
post Oct 11 2013, 02:21 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(xDragonZ @ Oct 11 2013, 02:15 AM)
They actually modified the mynic records
*
nod.gifnod.gifnod.gif

Someone from

Network Admin Team
Integricity Corporation Sdn. Bhd.
L1-46, First Floor, SStwo Mall
40, Jalan SS2/72
47300 Petaling Jaya
Selangor
Malaysia

is probably getting a call now laugh.gif

» Click to show Spoiler - click again to hide... «

ketnave
post Oct 11 2013, 02:24 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(Lord Tiki Mick @ Oct 11 2013, 02:21 AM)
How?
*
Maybe http://mynic.my/en/index.php got compromised ... if that's the case ... then ... potential for all .my DNS records to be updated would be DAMN HIGH ... shocking.gif
ketnave
post Oct 11 2013, 02:29 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(Lord Tiki Mick @ Oct 11 2013, 02:26 AM)
Habislah! cry.gif
*
why habis pulak ?!

If all they did was just defacing the website, then not much harm lar ... other than bruised ego laugh.gif

If they are setting up to phish ... diff story all together ... shocking.gif
ketnave
post Oct 11 2013, 02:50 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(Fighteden @ Oct 11 2013, 02:47 AM)
Why can't their nick name be less looking like a 12 years old kid inside his room.

Use something other than the typical wanna-be type name like h4x0rz or anything by replacing the vowels to numeric hmm.gif
*
like ?
ketnave
post Oct 11 2013, 08:44 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(SKY233 @ Oct 11 2013, 08:33 AM)
anyone know what is the song? appreciate brows.gif
*


credit goes to the Queen brows.gif
ketnave
post Oct 11 2013, 08:48 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(kons @ Oct 11 2013, 08:42 AM)
Google website is not being hacked.
It is just someone poisoning your DNS queries.

www.google.com.my should be resolved to Google own IP, 74.125.135.x
Same as the standard www.google.com

However possibly some one has intercepted all your outgoing DNS queries or it is simply the DNS server got hacked.

Now you might want to rethink if it is really save to do Internet Banking over the Internet after all.
*
the nameservers entries in MYNIC was changed earlier on.

It should be back to normal, since the changes were reverted
ketnave
post Oct 11 2013, 08:49 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(SKY233 @ Oct 11 2013, 08:48 AM)
thanks brah  brows.gif  wub.gif  wub.gif  wub.gif
*
credits goes to the Queen brows.gif

I will convey your thank to her laugh.gif
ketnave
post Oct 11 2013, 08:52 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(kons @ Oct 11 2013, 08:49 AM)
Most dns servers are caching entries..
So it might take some before all IP resolution will be working fine again
*
well it does take times for the entries to propagate ... but apparently this is only affecting ppl within MY (I hope) ...

either way, I am just wondering, would doing ipconfig /flushdns

solves the issue, since the entries are now reverted, anyone in MY can confirm this ? ? ?




ketnave
post Oct 11 2013, 09:04 AM

Enthusiast
*****
Senior Member
868 posts

Joined: Sep 2009
From: douchistan, pekopon


QUOTE(Snoe II @ Oct 11 2013, 08:58 AM)
Still same.
LOL

user posted image
*
damn ...

from http://whois.ws/whois/google.com.my

the NS entries are already back to normal wor ...

k [Primary Name Server] NS1GOOG0.SER
ns1.google.com 216.239.32.10

l [Secondary Name Server] NS2GOOG0.SER
ns2.google.com 216.239.34.10


hmm.gif

Bump Topic Add ReplyOptions New Topic
 

Change to:
| Lo-Fi Version
0.0145sec    1.49    6 queries    GZIP Disabled
Time is now: 16th December 2025 - 02:14 PM