Islamist group hacked tourism website, says govt

A TUNISIAN Islamist “activist group” called the Fallaga Team was responsible for hacking two government websites on Wednesday, the Ministry of Tourism revealed yesterday.

Out of caution, all government websites have been checked for possible breaches and “reinforced against potential vulnerabilities by the implementation of software patching,” a statement from the ministry added.

As part of its long-term strategy, the government intends to convene a meeting of industry experts to review the government’s websites to find the best safeguards to protect future attacks.

The statement provides some insight into revelations first made by Prime Minister Perry Christie on the floor of the House of Assembly on Wednesday. Mr Christie initially told parliamentarians that the Ministry of Tourism’s

website had been hacked, an incident which Mr Christie had said poses enormous national security implications for the country.

Yesterday, the ministry revealed that two websites had been compromised: www.bahamas.com and www.bahamasfilm.com.

According to the statement, the hacks occurred on Wednesday morning.

“All defaced sections of the government-owned websites were quickly removed and a corrected version redeployed and with the restoration of all compromised pages, all affected websites are now back to normal modes of operation,” the ministry said.

“The evidence collected has been turned over to the relevant local authorities and the matter is currently under active investigation.

“As a short-term strategy and in an abundance of caution, all government websites have been checked for possible breaches, safeguarded and reinforced against potential vulnerabilities by the implementation of software patching.

“As a long term strategy and being cognizant of the fact that we live in an era where cyber-terrorism poses clear and present dangers to our national security, the government of the Bahamas will convene a meeting of industry experts to review the entire government owned Internet related infrastructure with a view to determining what, if any, additional measures can be taken to deliver the strongest possible cyber-security protocol.”

The ministry said the government intends to create a permanent public/private sector committee that will meet regularly, conduct regular audits of public Internet infrastructure and advise the government on matters of cyber-security so as to inform public policy going forward.

Minister of Tourism Obie Wilchcombe explained how the Internet attacks can be used to compromise online networks.

“We know that with today’s increasingly sophisticated malware, simply navigating to a compromised website or opening a document can unleash a whole slew of malware onto a user’s computer and can shut down entire networks, causing serious disruptions to government’s operations, to national trade and commerce and can sometimes cause serious harm to a country’s international reputation,” Mr Wilchcombe said.

“As a consequence, hackers have special or invasive means of identifying weak spots for nefarious purposes. This matter has been given serious attention and we will spare no effort in protecting and safeguarding these valuable assets and as demonstrated this morning, we are ready with an immediate fix as we did yesterday morning.”

In the House of Assembly Wednesday, Mr Christie said a similar hacking incident occurred in another Caribbean country.

Although he did not name the country, international reports have noted that the government website of St Vincent and the Grenadines was hacked earlier this month by a purported “Islamic State.”

According to I-Witness News (IWN), a message was posted on the St Vincent government’s website claiming that an “Islamist rebel group” had hacked the site. “Visitors to the website were greeted by a message saying ‘Hacked by Moroccanwolf – Islamic State’ and a photo of a man firing a machine gun from the back of a pick up truck,” IWN reported.

Comments

GrassRoot says...

I love this sentences: “The evidence collected has been turned over to the relevant local authorities and the matter is currently under active investigation" Time for an MP to request a commission to look into that.

Posted 15 May 2015, 12:03 p.m. Suggest removal

John says...

Can this government say if the Bahamas or any Bahamian is in threat of being physically attacked by this group or any other terrorist group?

Posted 15 May 2015, 12:54 p.m. Suggest removal

Major_Pain says...

Bahamas .com uses Drupal, which is OPEN SOURCE content management system.

https://www.google.com/search?q=Drupal+…

Eg. "Up to 12 million websites may have been compromised by attackers who took advantage of a bug in the widely used Drupal software."

https://ma.ttias.be/drupal-enginehack-d…

"Fallaga Team" are the "script kiddies" behind the defacing of the Bahamas Tourism websites. They are like a bunch of bored kids, not as "terrorist" as they want you to believe. They use vulnerabilities in existing server code, SQL injections etc. So basic protection should help keep them out - create adaptive code to trap them, use vulnerability testing software to test with, it also acts as a quick way to create blocks for known exploits. PHP are the most common sites attacked. They don't do anything special, they likely learned it from simple google searches, even Youtube videos.

http://cjlab.memri.org/lab-projects/mon…

http://mashable.com/2015/01/13/islamist…

http://www.vice.com/en_se/read/we-skype…

here is the Fallaga Team's twitter - https://twitter.com/fallaga_team

and Facebook; https://www.facebook.com/Elfellaga

Report them, it may help stop them temporarily.

They also have a youtube page.

Boycott Facebook, Twitter, and Youtube if you are serious.
Or at least contact them and let them know you think they are messed up for supporting those Islamic Terrorists.
They support the Islamic Terrorists by allowing their pages to remain on their servers.
And if they do not consider them Terrorists (or Terrorist Supporters) then at least they must acknowledge the hackers as criminals, at the very least.

To put another spin on this, by using Facebook you are actually supporting their hacking. For example, your data is sitting next to their data on the same server. Would you continue to sit next to someone that has just robbed a bank? You are judged by the company you keep, in this case Hackers. Do what is right, delete all your data on Facebook, Twitter and Youtube, and deactivate your accounts in protest.

Posted 15 May 2015, 4:03 p.m. Suggest removal

FNM_Retards says...

The FNM probably did it, bunch of dam traitors.

Posted 15 May 2015, 7:34 p.m. Suggest removal

Log in to comment