Attempt to hack WordPress with a pull request
github.com
github.com
They caught this one because it was an obvious attempt, but their track history sucks.
Mocking evil hackers is a very stupid idea.
Oh and I believe they tried this because someone was successful in the past if I remember correctly.
So, every script kiddie is an "evil hacker" now?
> Oh and I believe they tried this because someone was successful in the past if I remember correctly.
Source?
http://it.slashdot.org/story/11/06/22/1241241/wordpressorg-h...
Even the Linux infrastructure was hacked not too long ago. More such example here: https://news.ycombinator.com/item?id=4464303
Worth a read not because it's a genius-level hack, but worth to see the breadth-first attempt that the attack takes to utilize a number of strategies. Realizing the number of attack vectors that you have to defend against is key to writing secure code.
In that sense, I wonder if there are other good examples of attack code hosted on github somewhere. Seems like there's as much to learn from "black hat" code attacks as there is from doing code reviews on your own codebase.
http://www.irc-junkie.org/2010-06-12/some-unrealircd-3-2-8-1...
http://www.unrealircd.com/txt/unrealsecadvisory.20100612.txt
[1] http://lkml.indiana.edu/hypermail/linux/kernel/0311.0/0621.h...
2fa93590c7881fab043be7b8b51358894dbc1466
Maybe the author is Irish =)
It's probably that words with a more French origin, where the "h" is subdued, require "an" where the harder "h" from more Germanic words does not.