Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search
 

FarCenter

(19,429 posts)
Fri Jan 13, 2017, 08:28 AM Jan 2017

Trump's cyber-guru Giuliani runs ancient 'easily hackable website'

US president-elect Donald Trump's freshly minted cyber-tsar Rudy Giuliani runs a website with a content management system years out of date and potentially utterly hackable.

Former New York City mayor and Donald loyalist Giuliani was today unveiled by Trump's transition team as the future president's cybersecurity adviser – meaning Giuliani will play a crucial role in the defense of America's computer infrastructure.

Giulianisecurity.com, the website for the ex-mayor's eponymous infosec consultancy firm, is powered by a roughly five-year-old build of Joomla! that is packed with vulnerabilities. Some of those bugs can be potentially exploited by miscreants using basic SQL injection techniques to compromise the server.

This seemingly insecure system also has a surprising number of network ports open – from MySQL and anonymous LDAP to a very out-of-date OpenSSH 4.7 that was released in 2007.

Security gurus are right now tearing strips off Trump's cyber-wizard pick. Top hacker Dan Tentler was first to point out the severely out-of-date Joomla! install.

...

"You can probably break into Giuliani's server," said Robert Graham of Errata Security. "I know this because other FreeBSD servers in the same data center have already been broken into, tagged by hackers, or are now serving viruses.

"But that doesn't matter. There's nothing on Giuliani's server worth hacking."

http://www.theregister.co.uk/2017/01/13/giuliani_joomla_outdated_site/

2 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Trump's cyber-guru Giuliani runs ancient 'easily hackable website' (Original Post) FarCenter Jan 2017 OP
Not that I expect Trump to do anything that makes sense, Island Blue Jan 2017 #1
It's already down! tparrett62 Jan 2017 #2

Island Blue

(5,817 posts)
1. Not that I expect Trump to do anything that makes sense,
Fri Jan 13, 2017, 08:38 AM
Jan 2017

but why the Hell would anyone hire someone who's Giuliani's age to be you cyber guru? Barron, would honestly probably be a better choice.

tparrett62

(268 posts)
2. It's already down!
Fri Jan 13, 2017, 10:44 AM
Jan 2017

Just tried the links in the article-

"Hmm, we can't reach this page.
Try this
Make sure you’ve got the right web address: http://giulanisecurity.com
Refresh the page
Search for what you want"

Yeah, I'm feeling more secure already!

Latest Discussions»General Discussion»Trump's cyber-guru Giulia...