Skip to main content

A bad case of writer's block

Of course the Image is copied from
http://calvinandhobbes.wikia.com/wiki/Writer%27s_Block

On Wednesday morning, like any other Wednesday, I emptied my waste basket into a polythene "paper" bag, and left it outside for collection, before boarding a matatu to work.

However, unlike other Wednesdays, I received a text message from a friend, telling me that he had "seen my story in the Nation". I ignored it, thinking that probably he had seeing a similar story , with facts similar and assumed that someone had copied my story.

Getting into the office, I was checking on recent stories I have written and how other media houses  reported them, when I stumbled onto an article titled "Tech gurus caught napping as 103 websites hacked" .

While the story of the hacking was exposed on the Security Forum, I was arguably the first journalist to cover it, with a little bit more facts that I added from some research and my experience.


I was therefore surprised to find lots of similarities between what I had written and what the journalist had written, (Note that the original article has been changed after I raised the issue) notably:

  • Such tutorials usually exploit programming errors in code, known as bugs, which have not been fixed. The hacker appears to have a website at http://www.direxer.com/ though this has not been updated to reflect the hacking. 
I was surprised that in addition to myself, here was another journalist who had made a general assumption that the hacking exploited bugs. Many websites nowadays are hacked from a technique known as server side scripting.

In addition, this was suspiciously similar to sentences I had written in my article.
The hacker appears to have a website at http://www.direxer.com/ though this has not been updated to reflect the hacking
Such tutorials usually exploit programming errors in code, known as bugs, which have not been fixed.
  •  In a message in the forum, the hacker says:
    show off by me...
    thanks for tutorial in www.code-security.com all...
    i have exploit from cs web, and i attacking to server Goverment Kenya,,,, and then,,, success full... this is deface in this night...
What I wrote. I have preserved the formatting, including the use of italics.
In a message in the forum, the hacker says

show off by me...
thanks for tutorial in www.code-security.com all...
i have exploit from cs web, and i attacking to server Goverment Kenya,,,, and then,,, success full... this is deface in this night...
  • The government has reportedly moved fast to take the affected websites offline through a Cyber Incidence Response Team (CIRT) based at the Communications Commission of Kenya.
  • The CIRT was formed to handle such situations and ensures Kenya's security in cyber space. In a comment, Vincent Ngundi who heads CIRT said: "We're on it. Thanks for the heads-up and comments" in Kenya's Security Forum where the news first broke.
What I wrote:
The government has moved fast to take the affected websites offline through a Cyber Incidence Response Team(CIRT) based at the Communications Commission of Kenya. The CIRT was formed to handle such situations and ensures Kenya's security in cyber space. Vincent Ngundi who heads CIRT has responded with the following comment "We're on it. Thanks for the heads-up and comments" in Kenya's Security Forum where the news first broke.
More
  • The government normally hosts several websites in one server at The Treasury thus compromising the server may expose several websites to a hacker.
  • The Administration Police website has been hacked several times in the recent past. At the same time, most of the websites hacked appear to have been running the Joomla Content Management system:  
What I wrote:
The government normally hosts several websites in one server at The Treasury thus compromising the server may expose several websites to a hacker. The Administration Police website has been hacked several times in the recent past. At the same time, most of the websites hacked appear to have been running the Joomla Content Management system.
I hope the journalist knows that the government websites are normally hosted at treasury because he did his Computer Science degree attachment at the Ministry of Co-operative Development and Marketing, and had to work with a website hosted at the treasury.

I hope the journalist knows that Direxer's site is actually a blog.

I hope the journalist  knows that the sites run Joomla because of a Firefox plugin known as Wappalyzer , which can show what popular technologies a site is using.

I hope the journalist knows Forum Code Security and code-security.net are the same.

I hope the journalist really made sure Direxer is Indonesian, cause in a hurry to post my article, I didn't.

I hope the journalist in addition to numbering the hacked sites to make sure they were 103 , he also confirmed that they had been hacked. I only checked a few.


I hope the journalist does know that he is listed as the author of this article too , and so am I.


I hope to grow my career under the journalist, who is also the president of the Kenya ICT Reporters Association (KIRA).

KIRA seeks to herald ICT journalism in Kenya and the region to the peak, by:
  • "keep pace and understand how the emerging technology tools like Twitter, Skype, Facebook, Youtube, google reader, RSS feeds, news alerts, blogs, websites, etc can be professionally utilised by journalists."
  • need to blog, tweet, skype and subscribe to feeds to remain on top of news.
A small correction, RSS can be traced back to 1995 and Google Reader is an RSS Feed Reader.

You can find out more about KIRA here, where the president also notes that "not many journalists are competent in this beat thus the skewed coverage of ICT matters" .


Below is the text of the original peice as it appeared on the Business Daily.

By JAMES RATEMO, jratemo@ke.nationmedia.com  (email the author)

Posted  Tuesday, January 17  2012 at  22:59

An Indonesian hacker has caught Kenya government tech gurus napping. In an unprecedented occurrence, an Indonesian hacker known as direxer has taken down 103 government of Kenya websites. 

According to a Tuesday discussion on Kenya's online tech forum, Kictanet, the hacker is part of an online Indonesian security forum known as Forum Code Security and says he took down the websites following tutorials from the forum.
The news of the hacking was first exposed on the site code-security.net/archives/114, a forum on code security.
The title on the website read: “Joint Discussion — Forum on Code Security”.
"Such tutorials usually exploit programming errors in code, known as bugs, which have not been fixed. The hacker appears to have a website at http://www.direxer.com/ though this has not been updated to reflect the hacking.
In a message in the forum, the hacker says:
show off by me...
thanks for tutorial in www.code-security.com all...
i have exploit from cs web, and i attacking to server Goverment Kenya,,,, and then,,, success full... this is deface in this night...
The government has reportedly moved fast to take the affected websites offline through a Cyber Incidence Response Team (CIRT) based at the Communications Commission of Kenya.

The CIRT was formed to handle such situations and ensures Kenya's security in cyber space. In a comment, Vincent Ngundi who heads CIRT said: "We're on it. Thanks for the heads-up and comments" in Kenya's Security Forum where the news first broke.
The government normally hosts several websites in one server at The Treasury thus compromising the server may expose several websites to a hacker.
The Administration Police website has been hacked several times in the recent past. At the same time, most of the websites hacked appear to have been running the Joomla Content Management system:
Also see details here












Comments

Popular posts from this blog

Dennis List of Clubs to Dance At

Kenya   Nairobi   Brew Bistro Rooftop/Westlands Nested on the 11th floor in Westlands commercial/shopping district. A long time favourite especially of white 40/50 year old foreigners. One of the few clubs in Nairobi with a dance floor. Locals especially during the last weekend of the month. (Deep House Music Only) Koda / Muze  Bastions of the Nairobi Deep House Scene which plays South African Afrohouse from Thursday to Sunday. Entrance fee. Check out their pages for acts. Both located in Westlands KenRail Towers

Nairobi's Top 4 Texas Brisket Places Reviewed and Ranked

Brisket on a bed of roast vegetables with barbecue sauce at Texas Brisket, Kikuyu  This review has been updated after a number of you suggested I try the brisket at County2County.  What's the best place to have Brisket in Nairobi? What's even brisket?  Brisket is one of the toughest cuts in a cow, from around the belly. It is so tough that it has to be smoked for about 16 hours to tenderise. But that there, is the catch.  12 to 16 hours later, it is the most flavourful and softest cut you will ever have. So full of flavour and so soft you can pick it apart with your fingers.  However, due to the long cooking time involved, only a few places offer brisket in Nairobi.  The best so far is Texas Brisket which is located within Kikuyu Railway station.  They do the meat for a proper 16 hours, and will usually have a fatty or non-fatty portion. The fatty portions are more tasty. A 500 gram serving goes for KSh. 900 and a 1 KG order comes with a serving of fre...

EuroTrip: A Hot Summer in Munich

BMW Museum and BMW Welt from the Olympic Tower  This article is the second in a series of posts on visiting Europe. The first piece on planning a EuroTrip can be found by tapping or clicking here.  Western European countries are known to be cold, at least in Nairobi where I come from. But that was not the case when I walked out of KL1791 from Amsterdam into the Munich airport. I had to double-check my boarding pass on that early August morning in 2018 to ensure that indeed I had taken the right flight, into Munich. I mean, besides Delhi and its 40 degrees summer temperature, Munich at 35 degrees is the second hottest place I’ve been to on earth. In Nairobi, where I am from, 30 degrees is an exception and 32 degrees is pushing it. My next challenge, I was supposed to take a train to Hohenzollernplatz (Why does everything here have a long name?) but looking out of the airport terminal building, there was no train! And so I asked and was pointed down some stairs. I...

WhatsApp Solution: Sorry we were unable to restore any of your message history backup

*This method only works if you are trying to transfer WhatsApp from one phone to another, and have not deleted WhatsApp data or formatted the old phone. If you already uninstalled WhatsApp and deleted data or logged into a different number, it won't work. If you get the “Sorry we were unable to restore any of your message history backup” when trying to restore your WhatsApp messages, trying to restore again from the same backup will probably fail. The issue seems to be caused by an issue with your backup file such as if you repeatedly tried to backup with internet connecting and disconnecting. 

Kenyan Beers and Craft Beer Reviews for 2025

It's 2025, and you asked for yet another Kenyan beer review. Let's cut straight to the chase - we keep the many stories for once we are drunk. Right? This year we categorize the beers according to breweries.  Bila Shaka / Bateleur  Flagship is Bila Shaka which is a rich flavoured but bitter IPA with 6% volume.  They focus more on quality and experimenting.  Home to many pleasantly (sweet per 2 people. I agree) favoured beers like Dire Straits, and for the ladies who love it a lot on the sweeter side, there's Honey Badger. These come in at about 5% or so. Jua Kali isn't as sweet as the above and is a mixed rice and barley beer, for some reason popular in the hot coast. Capitan is their bar beer and is a light-ish, pleasant beer at 4% volume and a good time passer when you're there for a long and good night and have things to do the next day. My favourite local brewer and highly recommended, especially Dire Straits. It's a medium beer, don...