← Back

Your message to the BLOGMASTER was sent

Submitted by James Austin Bynoe, Senior Cyber Security Consultant, Caribbean Cyber Security Center

Submitted by James Austin Bynoe, Senior Cyber Security Consultant, Caribbean Cyber Security Center

In the last year there has been a significant increase in the number of cyber related criminal activity in the Caribbean. In recent days the unauthorized changes made to a key regional tourism website represents yet another troubling component of the growing cyber threat we face called “website defacements”.   Website defacement is a type of cyber-attack where a hacker makes unauthorized changes to the content of a website that is offensive, embarrassing, or destructive in nature. When hackers make unauthorized changes to the websites of Caribbean businesses, governments and organizations that changes their content, or appearance it is considered by many as a type of corporate sabotage that can cause severe reputational damage, lower customer confident, or adversely impact revenues. Unfortunately this reality makes any Caribbean business, government or organization with a website which is essential in today’s technology driven world, vulnerable to website defacement however something can be done about it.

To carry out website defacements hackers often use one of the oldest and most common cyber-attack methods called the SQL injection technique.  This proven cyber-attack method used by hackers enables them to gain unauthorized administrative access to a website or in some cases the host network.  Website defacers will often post negative messages or content to the website administrator, business, government or organization.

In addition to the fact that website defacements can cause significant public embarrassment to an organization when their website is defaced, they can also be a gateway for greater unauthorized access and compromise of a system/network, or lead to data losses depending on the business function of the website.  For example, a website that is defaced that has online payment processing capabilities may loss significant customer confident causing them to be reluctant to use the online capabilities due to security concerns, as a result a loss of online revenue could occur.

The Caribbean Cyber Security Center (CCSC) believes that the best way for Caribbean  businesses, organizations and government to prevent website defacements is to have their  websites tested for website application and hosting platform vulnerabilities and threats a hacker can exploit, and fix all identified issues by severity as soon as possible.  CCSC also urges the region to utilize local and trusted ICT resources to conduct the recommended website testing as far too often we are outsourcing our IT security support needs to sources in Canada, the U.K, or the U.S for no good reason, which often cost us more.

Additionally we as a region can’t just pay lip service to ICT development in critical areas like Cyber Security, and then outsource our IT\Cyber security support needs to ICT companies abroad with the IT\Cyber security talent and expertise right within our shores. We at the CCSC believe strongly that cultivating local and regional IT\Cyber security talent and expertise to conduct routine website security testing and a ranges of other IT security support services, will be critical to sustaining the regional fight against the evolving cyber threat in a cost effective manner.  Ironically in most cases the fixes for website security  weaknesses or vulnerabilities identified are free but you can’t fix what you don’t know, hence the importance of getting your website tested.   If you need guidance on how to get your website tested by regional IT\Cyber security resources you can contact the Caribbean Cyber Security Center for guidance.

As we become more dependent on the Internet and ICT generally as an economic development driver, it is critical that Caribbean businesses, organizations and governments budget to have their website’s independently tested at least “twice” a year. A small investment in having your website tested and identified issues fixed has been proven worldwide to be significantly less than the reputational damage, and loss in customer confidence that can occur as the result of a defaced website.


Discover more from Barbados Underground

Subscribe to get the latest posts sent to your email.

10 responses to “Website Defacement Cyber Threat to the CARIBBEAN”


  1. David you should know all about this well as you are one of them.lol

  2. PLANTATION DEEDS FROM 1926TO 2014 MASSIVE FRAUD LANDTAX BILLS AND NO DEEDS, BARBADOS DLP/BLP MASSIVE PONZI FRAUD Avatar
    PLANTATION DEEDS FROM 1926TO 2014 MASSIVE FRAUD LANDTAX BILLS AND NO DEEDS, BARBADOS DLP/BLP MASSIVE PONZI FRAUD

    Cyber Threat@ We have live crooks on the ground NOW , We need not look at the internet,
    Will the DPP go after people on the internet , When he knows his good voter buying elected friends are a bigger threat than other crooks on the net,We have crooks on the ground now,
    If you have a problem with the net unplug your computer,


  3. It is useless trying to encourage heighten awareness in the public sector, some PSs are not capable of using a smartphone or laptop.


  4. @ The Blog master.
    If you’re daily blogging and have fewer than 100 regular readers, and 20 or so of them are your friends (stupidblognames) and “family.”And let’s face it; your mother and your pals are going to like everything you do, no matter how bad it is. “Thanks David great blog ” That’s there daily job. The “Boys club is handicapped” Go take a copywriting course that will provide you the intensive training you’ll need to enjoy lucrative attention.

    Change, it’s hard to “piss down people’s backs and then tell them it’s raining..


  5. David

    Welcome to the BU, aka INCEST a game all my family can play.


  6. Life Changer

    I cannot help but to agree with your analysis of the BU blog because I have made a reiterated endeavor to inform the understanding here, that self-righteousness leads to a blattant partiality. And more often than not, idea turns into ideology and ideology, turns into a senseless tribalism, and which in term, turns into an esoteric-association


  7. Yes! What we need is an objective discussion which is aim fundamentally, at dealing with the issues before deliberation, but devoid of our own biases of course. But aren’t we asking for something which cannot be achieve within the scope of human reasoning, given our nature as human beings?

  8. PLANTATION DEEDS FROM 1926TO 2014 MASSIVE FRAUD LANDTAX BILLS AND NO DEEDS, BARBADOS DLP/BLP MASSIVE PONZI FRAUD Avatar
    PLANTATION DEEDS FROM 1926TO 2014 MASSIVE FRAUD LANDTAX BILLS AND NO DEEDS, BARBADOS DLP/BLP MASSIVE PONZI FRAUD

    Google Must Deliver Records, Federal Judge Says: A United States Federal judge has ordered Google to turn over email records relating to the Email Gate scandal to the T&T Integrity Commission.

    Last week the Integrity Commission sued Google to compel the company to hand over email records.

    Investigators asked for 30 emails from September 2012 to authenticate Opposition Leader Dr. Keith Rowley’s allegations made in Parliament last year.

    US District Judge William Orrick ruled on Monday that the Integrity Commission’s request satisfies US federal law for discovery in a foreign criminal investigation.

    The issue was made simpler by the fact that at least one of the officials in question has consented to Google giving up their account information. Google has 2 weeks to comply.

    From Face Book. Barbados soon be next , dam, crooks liars and bags of Scum.

  9. PLANTATION DEEDS FROM 1926TO 2014 MASSIVE FRAUD LANDTAX BILLS AND NO DEEDS, BARBADOS DLP/BLP MASSIVE PONZI FRAUD Avatar
    PLANTATION DEEDS FROM 1926TO 2014 MASSIVE FRAUD LANDTAX BILLS AND NO DEEDS, BARBADOS DLP/BLP MASSIVE PONZI FRAUD

The blogmaster invites you to join the discussion.

Trending

Discover more from Barbados Underground

Subscribe now to keep reading and get access to the full archive.

Continue reading