An MI5 website hack is unlikely to have caused a breach of national security, according to experts.
A report in the Daily Express claimed that a hacking gang known as 'Team Elite' managed to break into the site, and alter it so that "the identity of visitors could be stolen and viruses downloaded on to their machines".
The report also quoted Tory MP Patrick Mercer as saying: "Having potentially highly classified information available to hackers is deeply concerning. The identity of agents and informers in terror groups such as Al Qaeda are held by MI5."
However, Sophos senior technology consultant Graham Cluley explained that the hackers were only able to compromise the details of those visiting the site, rather than any confidential MI5 data locked away in back-office systems.
"Frankly, there's a lack of information in this report to let us know just how big a security problem this was. The good news is that the authorities claim to have fixed the flaw, so visitors to the site are no longer at risk," wrote Cluley in a blog post.
"However, this is a timely reminder for all of us who have web sites - big and small - to make sure they are properly secured from attack."
Cluley recommended users deploy content-scanning technology that can detect whether a legitimate site has been compromised, and that site owners invest in scanning services to alert them if malicious code has been planted on their web pages.
Hackers break into MI5 website
By
Phil Muncaster
on Jul 31, 2009 9:44AM

Got a news tip for our journalists? Share it with us anonymously here.
Partner Content

Channel can help lead customers to boosting workplace wellbeing with professional headsets

Kaseya Dattocon APAC 2024 is Back

Build cybersecurity capability with award winning Fortinet training from Ingram Micro

Tech For Good program gives purpose and strong business outcomes

How NinjaOne Is Supporting The Channel As It Builds An Innovative Global Partner Program
Sponsored Whitepapers
-1.jpg&w=100&c=1&s=0)
Stop Fraud Before It Starts: A Must-Read Guide for Safer Customer Communications

The Cybersecurity Playbook for Partners in Asia Pacific and Japan

Pulseway Essential Eight Framework

7 Best Practices For Implementing Human Risk Management

2025 State of Machine Identity Security Report