Ghost Squad Hackers defaced a second European Space Agency (ESA) site in a week

Ghost Squad Hackers defaced a second European Space Agency (ESA) site in a week

A group of hacktivists that goes online with the name Ghost Squad Hackers has defaced for the second time in a week a site of the European Space Agency (ESA).


Last week a group of hackers that goes online with the name Ghost Squad Hackers announced the defacement of a site of the European Space Agency (ESA), https://business.esa.int/.


Now the group contacted me again to report a second hack of a website of the European Space Agency. This time the hackers compromised the website of https://space4rail.esa.int/index.html, it is the second defacement in a few days suffered by the ESA.


Ghost Squad Hackers told me that they have found for the second time in a few days a Server-side request forgery (SSRF) remote code execution vulnerability in the server of the agency. This time they have exploited the issue to gain access to the https://space4rail.esa.int domain and deface it.


Server-side request forgery (also known as SSRF) is a web security vulnerability that allows an attacker to induce the server-side appl ..

Support the originator by clicking the read the rest link below.