Categories: SecurityWorkspace

UN Was ‘Not Compromised’ In TeamPoison Hack

The United Nations Development Programme (UNDP) has confirmed that no sensitive information was compromised in a recent hack of its systems.

Hacker group, TeaMp0isoN, leaked almost 1,000 usernames, email addresses and passwords onto the Pastebin website.

Not just a trick

The list, which includes individuals from the United Nations Development Programme (UNDP), Organisation for Economic Co-operation and Development (OECD), UNICEF, World Health Organisation (WHO) and other groups, shows many users having either very basic passwords or none at all.

This, according to blog post by Graham Cluley, senior technology consultant at Sophos, would “Make many a system administrator groan and roll their eyes in exasperation.”

UNDP spokeswoman, Sausan Ghosheh, told the BBC that the hacked server, which goes back to 2007, contained old data and no active passwords.  “The UNDP found [the] compromised server and took it offline. Please note that UNDP.org was not compromised.”

Cryptocard MD, Jason Hart, disagrees, saying that this intrusion is far more significant. “The UN has said that the information exposed is old data, but if you look at the YouTube video released by the hackers on Monday it shows account details and usernames as well as personal email addresses. As we all know, passwords cross personal and professional lives, so these people could well be compromised at work and at home. I would bet my last pound that most of these people are still using the same password, therefore they are vulnerable to attack.”

“The UN is seen as a symbol for security and trust for many millions of people around the world,” adds Hart, and since these hackers want the world to notice them, “Hacking their systems is Teampoison’s way of making a big statement to the outside world.”

Expect us

“Time and time again this year we’ve seen hackers bypass the front door thanks to outdated security approaches such as static passwords. The implications for the UN, and the people’s details that are currently being advertised on YouTube, is significant,” warns Hart.

The hacker responsible for the attack, TriCk, taunted the UNDP, saying, “The question now is… how?… We will let the so called secutiy experts over at the UN figure that out. . . . Have a Nice Day….”

TeaMp0isoN recently announced that it would be joining forces with  Anonymous “to fight censorship in the name of OpCensorThis” and would participate in a new campaign dubbed “Operation Robin Hood”, aimed at global banks.

“It’s time we fight back,” said the group in its statement. “It’s time YOU take back your freedom. We are done asking politely. Banks, you have got the attention of the Hydra of the internet that has grown fangs of poison. The only question now, is do they expect us?”
Iris Cheerin

Recent Posts

UK CMA Seeks Feedback On Microsoft, Amazon AI Partnerships

British regulator invites feedback on major partnerships Microsoft and Amazon have struck with smaller AI…

1 hour ago

Google Fires More Staff Over Israel Protest

Another 20 staff have been fired by Google over Israel protest and their “completely unacceptable…

2 hours ago

Australian PM Hits Out At Elon Musk Over Knife Attack Video

Censorship row brewing down under, after the Australian Prime Minister calls Elon Musk an 'arrogant…

3 hours ago

US SEC Seeks $5.3 Billion Fine From Terra’s Do Kwon

Financial regulator asks New York judge to impose $5.3 billion in fines against Terraform Labs…

4 hours ago

Microsoft Launches Smallest AI Model, Phi-3-mini

Lightweight artificial intelligence model launched this week by Microsoft, offering more cost-effective option for Azure…

8 hours ago

US Senate Passes TikTok Ban Or Divestment Bill

ByteDance protest falls on deaf ears, as Senate passes TikTok ban or divest bill, with…

9 hours ago