174
Nart Villeneuve and Masashi Crete-Nishihata
32. McCartan, “ Myanmar on the Cyber-offensive. ”
33. “ Mizzima Websites Hacked, ” Mizzima News; Saw Yan Naing, “ Burmese Exile Media Web Site
Again under Attack, ” The Irrawaddy, October 1, 2008, http://www.irrawaddy.org/article.php?art
_id=14348 .
34. “ Mizzima Websites Hacked, ” Mizzima News.
35. “ Hack Attempts Suspend Mizzima Websites, ” Mizzima News, October 10, 2008, http://
mizzima-english.blogspot.com/2008/10/hack-attempts-suspend-mizzima-websites.html .
36. “ Backdoor programs ” refer to malicious software designed to provide attackers with unauthorized remote access to computer systems. For a detailed technical description of the c99shell
backdoor program, see “ Backdoor.PHP.C99Shell.w, ” Secure List, July 15, 2008, http://www
.securelist.com/en/descriptions/old188613 .
37. The user-agent header is sent by your browser to the Web server you are connecting to. The
user-agent header commonly identifi es the operating system and browser that you are using.
38. In fact, they appeared to be monitoring news of attacks on opposition Web sites, with one
user posting this article into the IRC chat Myanmar ISP, “ Military Government Paralyses Internet, ” October 9, 2008, http://www.myanmarisp.com/20080816/ICTN/ictnews0101/ , authored by
Reporters Without Borders, which details the ongoing attacks and suggests that the military and
government were behind the attacks.
39. “ Myanmar on the Cyber-offensive, ” BaganLand, http://baganland.blogspot.com/2008/09/
myanmar-on-cyber-offensive.html .
40. Joomla! is an open-source content management system. See, Joomla! http://www.joomla.org/ .
41. The following instructions demonstrate the simplicity of this browser exploit:
1. Go to URL target.com/index.php?option=com_user & view=reset & layout=confi rm.
2. Write into fi eld “ token ” char ‘ and click OK.
3. Write new password for admin.
4. Go to url: target.com/administrator/.
5. Login as admin with new password.
42. “ Backdoor.PHP.C99Shell.w, ” Secure List, July 15, 2008, http://www.securelist.com/en/
descriptions/old188613 .
43. See Co.cc lookup, https://www.co.cc/whois/whois.php?domain=0verkill.
44. Moscow Aviation Institute, “ Faculty of Applied Mathematics and Physics, ” http://www.mai
.ru/english/fac_8/computer_eng.htm ; Moscow Aviation Institute, “ Informatics and Mathematics, ” http://www.mai.ru/english/fac_8/informatics_eng.htm .
45. U.S. Department of Treasury OFAC, “ Nonproliferation: What You Need to Know about Treasury Sanctions, ” April 7, 2009, http://www.treas.gov/offi ces/enforcement/ofac/programs/wmd/
wmd.pdf ; Federation of American Scientists, “ A Sourcebook on Allegations of Cooperation
between Myanmar (Burma) and North Korea on Nuclear Projects, ” February 14, 2011, http://
Nart Villeneuve and Masashi Crete-Nishihata
32. McCartan, “ Myanmar on the Cyber-offensive. ”
33. “ Mizzima Websites Hacked, ” Mizzima News; Saw Yan Naing, “ Burmese Exile Media Web Site
Again under Attack, ” The Irrawaddy, October 1, 2008, http://www.irrawaddy.org/article.php?art
_id=14348 .
34. “ Mizzima Websites Hacked, ” Mizzima News.
35. “ Hack Attempts Suspend Mizzima Websites, ” Mizzima News, October 10, 2008, http://
mizzima-english.blogspot.com/2008/10/hack-attempts-suspend-mizzima-websites.html .
36. “ Backdoor programs ” refer to malicious software designed to provide attackers with unauthorized remote access to computer systems. For a detailed technical description of the c99shell
backdoor program, see “ Backdoor.PHP.C99Shell.w, ” Secure List, July 15, 2008, http://www
.securelist.com/en/descriptions/old188613 .
37. The user-agent header is sent by your browser to the Web server you are connecting to. The
user-agent header commonly identifi es the operating system and browser that you are using.
38. In fact, they appeared to be monitoring news of attacks on opposition Web sites, with one
user posting this article into the IRC chat Myanmar ISP, “ Military Government Paralyses Internet, ” October 9, 2008, http://www.myanmarisp.com/20080816/ICTN/ictnews0101/ , authored by
Reporters Without Borders, which details the ongoing attacks and suggests that the military and
government were behind the attacks.
39. “ Myanmar on the Cyber-offensive, ” BaganLand, http://baganland.blogspot.com/2008/09/
myanmar-on-cyber-offensive.html .
40. Joomla! is an open-source content management system. See, Joomla! http://www.joomla.org/ .
41. The following instructions demonstrate the simplicity of this browser exploit:
1. Go to URL target.com/index.php?option=com_user & view=reset & layout=confi rm.
2. Write into fi eld “ token ” char ‘ and click OK.
3. Write new password for admin.
4. Go to url: target.com/administrator/.
5. Login as admin with new password.
42. “ Backdoor.PHP.C99Shell.w, ” Secure List, July 15, 2008, http://www.securelist.com/en/
descriptions/old188613 .
43. See Co.cc lookup, https://www.co.cc/whois/whois.php?domain=0verkill.
44. Moscow Aviation Institute, “ Faculty of Applied Mathematics and Physics, ” http://www.mai
.ru/english/fac_8/computer_eng.htm ; Moscow Aviation Institute, “ Informatics and Mathematics, ” http://www.mai.ru/english/fac_8/informatics_eng.htm .
45. U.S. Department of Treasury OFAC, “ Nonproliferation: What You Need to Know about Treasury Sanctions, ” April 7, 2009, http://www.treas.gov/offi ces/enforcement/ofac/programs/wmd/
wmd.pdf ; Federation of American Scientists, “ A Sourcebook on Allegations of Cooperation
between Myanmar (Burma) and North Korea on Nuclear Projects, ” February 14, 2011, http://
