MEERUT,India The website belonging to the Meerut Development Authority (MDA) in Meerut has been defaced recently following an attack by some anonymous threat actors that resulted in the defacement of the government-run website with anti-India and pro-Pakistan messages. Those attempting to visit the MDA website recently were met with a black screen with political slogans, instead of visiting the normal interface of the website offering services like construction approval, announcements, etc. The attackers have also revealed their identity through the defacement of the site, with "Overthrush1337" being the name used by them. This is obviously a typical case of website defacement in which the attackers gain access to the web server and deface it to make changes to the content available on the website. Attack Timeline Initial Compromise and Defacement of Website Based on preliminary reports, it appears that the hackers could have taken advantage of an unpatched vul...
Recently, attackers took over high-profile Instagram accounts, including the official Obama’s White House account and a United States Space Force chief officer. The attacker didn't break any Instagram code or crack passwords. They convinced Meta's own AI support chatbot to hand over the accounts. Meta uses an AI-powered support chatbot to help users recover locked accounts, change recovery emails, and handle account issues. The chatbot is trained to verify identity through questions and decide whether a request looks legitimate. Attackers figured out how to manipulate that decision making process. Video Credit- x.com/chetaslua The attack consists of four main steps. Step 1: The attacker contacts Meta's AI support chatbot claiming to be the legitimate owner of a target account. They simply use Instagram's help interface and start an account recovery conversation. For high-profile targets, attackers use publicly available information such as display names, profile bios, ...