123ArticleOnline Logo
Welcome to 123ArticleOnline.com!
ALL >> General >> View Article

Nasa Faces Security Breach

Profile Picture
By Author: eccuni
Total Articles: 211
Comment this article
Facebook ShareTwitter ShareGoogle+ ShareTwitter Share

An attacker has exposed the security flaws on the website of National Aeronautics and Space Administration (NASA). The intruder, who identifies himself as TinKode, successfully gained access to the File Transfer Protocol (FTP) server associated with the space agency's Goddard Space Flight Center. The intruder has also placed screenshot of the affected server as evidence of the security breach on his website. The Romanian intruder has been in the news several times before for breaching the security of major websites such as the website of the Royal British Navy, and European Space Agency, The intruder was also behind the SQL injection attack on the website of MySQL, earlier this year. Fortunately, the motive behind the intrusion attempt by TinKode is to expose security flaws, rather than for any malicious purpose. However, making the security breach public, may make the sites susceptible to further attacks from cybercriminals. Cybercriminals constantly explore the cyber space to exploit security flaws on websites. Successful attack may allow attackers to gain access to confidential databases associated with the webpages. Leakage ...
... of privileged information from the sites of major scientific and research institutions may lead to strategic challenges and also threaten national security. Attackers also target websites to extract login credentials, personal and financial information, malicious scripts, and injecting malware.

Websites are susceptible to threats such as SQL injection and cross-site scripting attacks. SQL injection attacks aim at compromising the SQL-based database systems associated with the website. Attackers may alter the input by appending or terminating text strings, and inserting special characters. In case of cross-site scripting attack, cybercriminals insert malicious scripts on a legitimate website and infect the web browser of a user. Through cross-site scripting attackers may hijack user sessions, redirect users to a malicious website, and transfer cookies from a user's web application to that of a remote attacker.

Organizations must place high emphasis on website security. They must undertake regular evaluation of the sites through professionals qualified in IT degree programs, penetration testing and security audit. Regular review is crucial for identifying and weeding out security vulnerabilities. Appropriate input filtering and validation, output encoding, use of parameterized queries, allowing only those SQL statements that are required by the application and use of stored procedures may help in defending websites from SQL injection and cross-site scripting attacks.

Hiring experienced professionals qualified in online IT degree programs and secured programming may help in strengthening the defenses against sophisticated security threats. Information security professionals at research and critical installations must be encouraged to update their technical skills and know-how by undertaking online IT courses and participating in security conferences.

Total Views: 340Word Count: 438See All articles From Author

Add Comment

General Articles

1. Point Cloud To 3d Model: Reducing Errors In Complex Retrofit Projects
Author: Ashish

2. How Does Sukrutham Farmstay Offer Kerala Like You’ve Never Seen Before?
Author: Sukrutham Farmstay

3. Residential Locksmith Services That Protect What Matters Most
Author: Ben Gregory

4. Understanding Loose Skin After Weight Loss
Author: FFD

5. Understanding Taxation For Small Businesses In Australia
Author: adlerconway

6. Different Types Of Webbing Sling Stitching Patterns
Author: Indolift

7. Flats For Sale In Kokapet | Simchah Estates
Author: Simchah Acasa

8. Raj Public School – Among The Best Cbse Schools In Bhopal & Top Cbse Schools Near Me
Author: Raj Public School

9. Dynamics 365 Gmail Integration
Author: brainbell10

10. Dynamics 365 Mailchimp Integration
Author: brainbell10

11. Seo Company In Mumbai: A Complete Guide To Growing Your Business Online
Author: neetu

12. Super App Development Company Solutions For Complex App Ecosystems
Author: david

13. Types Of Osha Violations And Penalties
Author: Jenny Knight

14. Periodontal Therapy – A Non Surgical Treatment For Periodontal Or Gum Disease
Author: Patrica Crewe

15. Rugby World Cup 2027: Handré Pollard Remains Rugby’s Ultimate Big-game Player
Author: eticketing.co

Login To Account
Login Email:
Password:
Forgot Password?
New User?
Sign Up Newsletter
Email Address: