New Delhi: A pro-Palestinian hacktivist group, "SN_BlackMeta," has claimed responsibility for a significant cyberattack on the Internet Archive, resulting in the exposure of personal data for 31 million users. The breach compromised email addresses, usernames, and encrypted passwords, raising serious concerns about the security and data privacy of the digital library, widely known for its Wayback Machine.
The attack, discovered on October 9, exploited a vulnerability in a JavaScript (JS) library on the Internet Archive's website. A pop-up message appeared, notifying users of the breach, stating, "Have you ever felt like the Internet Archive runs on sticks and is constantly on the verge of suffering a catastrophic security breach? It just happened. See 31 million of you on HIBP!" The message referred to the service "Have I Been Pwned?" (HIBP), which helps users check if their data has been compromised.
Cybersecurity experts confirmed that the 6.4 GB database, shared by the attackers, contained email addresses, usernames, and passwords for millions of users. Troy Hunt, founder of HIBP, stated that over half of the compromised email addresses had already appeared in previous data breaches.
Brewster Kahle, the founder of the Internet Archive, acknowledged the breach and ongoing Distributed Denial-of-Service (DDoS) attacks that disrupted the platform. In a post on X (formerly Twitter), Kahle explained the steps taken, including disabling the compromised JS library and upgrading security protocols. He noted, "DDOS attack fended off for now; defacement of our website via JS library; breach of usernames/email/salted-encrypted passwords. We are scrubbing systems and enhancing security."
Despite efforts to restore service, the Internet Archive's website, including its popular Wayback Machine, has experienced intermittent outages. The organisation continues to address the fallout from the attack while reinforcing its systems.
The hacker group "SN_BlackMeta," linked to previous cyberattacks on Middle Eastern financial institutions, took credit for both the data breach and the DDoS attacks. In an X post, the group claimed their attack was motivated by pro-Palestinian sentiments, alleging that the Internet Archive, though not a U.S. government entity, is tied to American support for Israel. However, a community note on the post clarified that the Internet Archive is a nonprofit organisation that hosts extensive resources on Palestine.
Let the Truth be known. If you read VB and like VB, please be a VB Supporter and Help us deliver the Truth to one and all.
New Delhi (PTI): The ICC on Saturday confirmed that Scotland has replaced Bangladesh in the upcoming T20 World Cup, saying the "difficult decision" was taken since it was not feasible to meet BCB's request to shift their matches to Sri Lanka so close to the tournament.
The Bangladesh Cricket Board (BCB) refused to let its team travel to India citing security concerns in the wake of Mustafizur Rahman's ouster from the IPL.
ICC maintained that there was no verifiable security threat to the Bangladesh national team, officials or supporters in India and it was not appropriate to amend the published event schedule.
Scotland's entry into the tournament, starting February 7, ended the suspense over the fate of Bangladesh in the event after BCB stayed adamant in its demand and even suggested that its group be swapped with Ireland's.
At the ICC Board meeting on Wednesday, Bangladesh lost it proposal to shift matches by an overwhelming 14-2 margin with only Pakistan supporting its cause.
"Bangladesh will no longer compete in the upcoming ICC Men’s T20 World Cup, after the Bangladesh Cricket Board (BCB) refused to participate in the tournament per the published match schedule," ICC said in a statement.
"The decision follows an extensive process undertaken by the ICC to address concerns raised by the BCB regarding the hosting of its scheduled matches in India."
It has been learnt that top ICC officials including chairman Jay Shah were in Dubai on Friday and late evening an e-mail was sent to BCB chairman Aminul Islam Bulbul informing him about global body's decision.
"The ICC’s assessments concluded that there was no credible or verifiable security threat to the Bangladesh national team, officials or supporters in India.
"In light of these findings, and after careful consideration of the broader implications, the ICC determined that it was not appropriate to amend the published event schedule," the statement added.
The ICC said it had given BCB a 24-hour time-frame to confirm whether its team would participate in India as scheduled.
"As no confirmation was received within the deadline, the ICC proceeded in line with its established governance and qualification processes to identify a replacement team."
"Scotland are the next-highest ranked T20I team that had originally missed T20 World Cup qualification. They are currently ranked 14th, which in fact is ahead of competing teams Namibia, the United Arab Emirates, Nepal, USA, Canada, Oman and Italy.
"Scotland has been called up to take Bangladesh’s place in Group C, joining England, Italy, Nepal and the West Indies."
Scotland will play their group games against West Indies (February 7), Italy (February 9) and England (February 14) in Kolkata followed by a game against Nepal in Mumbai on February 17.
Bangladesh Sports Ministry advisor Asif Nazrul had advised against national team travelling to India, citing security issues despite being given repeated assurances by the ICC.
The BCB, in a desperate measure, had also approached the Dispute Resolution Committee (DRC) of the ICC, unaware about the terms of reference of the sub-committee which is not allowed to hear an appeal against a decision made by its own Board of Directors.
While the mandatory independent security assessment threat for Bangladesh was "low to moderate", same for all teams, anti-India hardliner Nazrul issued a diktat as representative of the interim government that the team cannot be allowed to travel to India in these circumstances.
In fact, the meeting between Nazrul and national team players turned out to be a one-way communication with Nazrul doing all the talking and telling the star cricketers that they won't be allowed to participate in the tournament.
Financial implication for BCB
The implications of this unceremonious ouster will also badly hit BCB's coffers. The board will lose USD 500,000 participation fee that each nation gets. But the bigger potential loss will be ICC's annual revenue.
The BCB annually receives close to USD 27 million (330 crore BDT) as a share of its revenue from the ICC and that itself constitutes around 60 percent of its annual budget.
Add to it, the loss of sponsorship money for not playing the tournament. Last but not least, with India now not travelling to that part of the world for a bilateral series means BCB will lose money which would have been equal to playing 10 bilateral series against other nations.
The only legal option that exists with BCB is to move to Court of Arbitration of Sports (CAS) in Lausanne but the tournament will still go on.
