Welcome!

Virtualization Authors: Elizabeth White, Adrian Bridgwater, Maureen O'Gara, Jason Bloomberg, Pat Romanski

Related Topics: Virtualization

Virtualization: Article

Harvard Web Site Hack is a Cautionary Tale

The Harvard University hack apparently involves the complete site database

Cyber-Ark, the digital data protection specialist, says that yesterday's report of Harvard University's Web site being seriously hacked - with copies of the main server database appearing on the BitTorrent file-sharing network - is a cautionary tale for anyone involved with IT security issues.

"Database losses and hacks can, and do occur, often through human error, but the Harvard University hack apparently involves the complete site database - allegedly including hidden system files - being released on to the BitTorrent file-sharing network," said Calum Macleod, Cyber-Ark's European director.

"This is a potentially worse-case scenario for any IT director, as it means the complete site, right down to its root-and-branch structure, and, presumably, all system files, can be downloaded and cloned by just about anyone on the Internet," he added.

Macleod went on to say that the compressed 125 megabyte file is said to include contacts details, as well as other files associated with Joomla, the open-source content management system.

"Although it remains to be seen what Harvard's IT department has to say about the site hack, it looks like the hackers got everything from the University's servers, including information from the back office and system file data that is not normally accessible to the public,"he said.

"If the University had used a data encryption system on its most sensitive files, then this systematic site hack would probably not have occurred. The worst that could have happened is that the publicly-accessible Web site could have been downloaded and distributed, which is no big deal for anyone," he added.

More Stories By Virtualization News

SYS-CON's Virtualization News Desk trawls the news sources of the world for the latest details of virtualization technologies, products, and market trends, and provides breaking news updates from the Virtualization Conference & Expo.

Comments (0)

Share your thoughts on this story.

Add your comment
You must be signed in to add a comment. Sign-in | Register

In accordance with our Comment Policy, we encourage comments that are on topic, relevant and to-the-point. We will remove comments that include profanity, personal attacks, racial slurs, threats of violence, or other inappropriate material that violates our Terms and Conditions, and will block users who make repeated violations. We ask all readers to expect diversity of opinion and to treat one another with dignity and respect.