Panama-hacks-hack
The violation of the data of Panama letters, known as The Mosek Fonseka (MF), is the biggest violation in history and contains 4.8 million emails. The Panama law company was hacked through a WordPress module called Revolution Slider. This plugin is used on more than 2 million websites because it is very popular, there are so many hacks that have the targer revolution slider
The Panama Papers scandal is among the other famous public figures, with the controversy surrounding the Prime Minister of Iceland and President Putin of Russia and British Prime Minister David Cameron.
Data violation consists of 2.6 terabytes and 11.5 million documents. The #Pamma Papers database contains information about more than 200 000 offshore institutions from around the world. There were violations of email accounts, passport copies, invoices, banking documents and of course, thousands of offshore registration acts.
This document presents details about the secret business of 128 politicians around the world. More than 11 million documents show how a global industry sells secrets to politicians, fraudsters and narcotic smugglers, made up of law firms and large banks, but also sell billionaires and some celebrities.
How did this cyber attack?
The Mosek Fonseca website is running WordPress and is currently running a version of the Revolution Slider, which is weak to attack and will give a shell to the remote attacker on the web server. After checking home page source code, we realized that current MF website uses the old version of the Revolution Slider, they were using it: 2.1.7. Up to 3.0.95, all versions of Revolution Slider is weak for hacking attacks. For more details, see the image below:
In addition, according to their DNS results, web servers and mail servers were hosted on the same machine. More importantly, they were hosting private and confidential information on their WordPress database. They were not using firewalls, and nowadays there are so many security companies.
Therefore, using a previous version of plugins, a WordPress website has heavy security risks. But I think that the Mozoss Fonseca website administrator was not thinking that something like this could happen.
Conclusion
What should everyone learn from violating this data is that: