yugatech x infinix

No Hacking Involved in DOJ and Enchanted Kingdom Websites

Been receiving emails from readers and fellow bloggers about the alleged hacking of 3 government agency websites, namely the DOJ, PNP-CIDG and ITECC. Investigations were being done by PLDT (or Infocom, the webhost), the DOJ and the management of Enchanted Kingdom. What would have seemed like a hack was actually a server glitch.

If you dig deeper into the incident, you will notice that all of the four (4) websites involve are located on a similar IP address (i.e. 202.57.124.135). That’s one sure indication that all of the websites involved are hosted on the same server.

Here’s the weird thing when I first heard/read about it. If it were a hacking attempt, there wasn’t any logic behind it. No visible trace or indication that a hack was made or a script was maliciously injected into the website. They just basically opened up to the official Enchanted Kingdom website. It would seem that the webmaster or someone who have access to the FTP uploaded the Enchanted Kingdom webpages into the other 3 domain accounts.

If the web host (Infocom) was running these websites on a *nix server, it is possible that this was caused by a glitch in the DNS (Bind) or webserver (Apache) configs. Ordinarily, you can only host one website per IP address. However, this is now possible because of Virtual Hosting.

Virtual hosting is a method that is used to host more than one domain name on the same computer, sometimes on the same IP address. This allows you to virtually host as many domain accounts on a single server or single IP. This is done via name-based or IP-based. In this case, since all websites are on a single IP, they used a named-based system.

Wikipedia explains it in more detail:

Name based virtual hosts use multiple host names for the same webserver IP address. With web browsers that support HTTP/1.1 (as nearly all now do), upon connecting to a webserver, the browsers send the address that the user typed into their browser’s address bar (the URL). The server can use this information to determine which web site, as well as page, to show the user. The browser specifies the address by setting the Host HTTP header with the host specified by the user. The Host header is required in all HTTP/1.1 requests.

For instance, a server could be receiving requests for two domains, www.site1.com and www.site2.com, both of which resolve to the same IP address. For www.site1.com, the server would send the HTML file file from the directory /www/JoeUser/site/, while requests for www.site2.com would make the server serve pages from /www/AnthonyUser/site/.

If the Domain Name System (DNS) is not properly functioning, it becomes much harder to access a virtually-hosted website. Ordinarily, in this case, the user could try and fall back to using the IP address to contact the system, as in http://12.34.56.78/. However, the web browser doesn’t know what hostname to send when this happens, so the server will respond with a default website—often not the site the user expects. This workaround is not really useful for an average web user, but may be of some use to a site administrator while fixing DNS records.

Usually this information is stored in the server as httpd.conf. In essence, in misconfiguration might have happened or the httpd file must ahve been corrupted that resulted in the incident above. This usually happens when the files are updated with newer information and was not saved properly, got truncated in the process or the config file had some typos in them.

When this happens, it is usually the first website listed in the configs will appear for all other domains you typed in your browser. As a webhost, we’ve encountered this type of errors/glitches on several occasions in the past. Sometimes, it’s a cPanel bug, a DNS error (Bind) or simply an incorrectly saved webserver config.

Abe Olandres
Abe Olandres
Abe is the founder and Editor-in-Chief of YugaTech with over 20 years of experience in the technology industry. He is one of the pioneers of blogging in the country and considered by many as the Father of Tech Blogging in the Philippines. He is also a technology consultant, a tech columnist with several national publications, resource speaker and mentor/advisor to several start-up companies.
  1. i knew it. haha.

  2. I’ve seen it happen in my servers around once or twice. The hacking didn’t make sense to me too. Usually hackers leave a small note.

  3. when i saw this on the news last night, i already had a doubt. what was said is that the page will be redirected to enchanted-kingdom’s site after login. there were guys from cidg and nbi, claiming that noypi hackers are on the attack again. why in the world they are saying that? they didn’t even provide logs or something that will prove it.

  4. hehe. thanks for the info!

  5. I think, if the hosting provider is using apache, it is an error in directive…. hmmmm……. Indeed no hacking happened….

    :D

  6. ooopppssss i mean “VirtualHost directive”….. sorry I enclosed the worl VirtualHost in “” characters….

  7. i knew it! the meda is way too excited to report this :)

  8. Sensationalist reporting mofos! That’s what our Philippine T.V. reporting media has come down to.

  9. You have the same opinion with technews-ihaw.blogspot.com this group was formerly from ISAW.

  10. I am simply proud that the first hacker to ever be persecuted and put in jail is from my home town and graduated from my high school. Hacked into government sites and I’m damn proud of him, though he’s probably being tattooed right now deep in his privates, if you know what I mean.

Leave a Reply

Your email address will not be published. Required fields are marked *

yugatech x epson

Latest Review

ASUS ROG Flow Z13 2025 Review
Chuwi Minibook X Review
Samsung Galaxy A36 5G Review
BenQ MA320U Review – The Best 32” 4K UHD Monitor for MacBook Users?
HMD Crest 5G Review

Latest Guide

Top 10 AFFORDABLE 65-inch 4K TVs To Buy In The Philippines (Q1 2025)
BEV, Hybrid, PHEV: An Explainer for the Common Filipino Driver
2025 Postpaid Fiber Plans in the Philippines: PLDT, Globe, Converge, Sky
Top Apple products to kickstart the New Year through Home Credit
The Best Flagship Phones of 2024

YugaAuto

Loading feed...

YugaMoto

Loading feed...

YugaGaming

Loading feed...

AskYuga

Loading feed...
No Hacking Involved in DOJ and Enchanted Kingdom Websites » YugaTech | Philippines Tech News & Reviews

Yearly Device Database

Smartphone pricelist Philippines 2024

Smartphone pricelist Philippines 2023

Smartphone pricelist Philippines 2022

Smartphone pricelist Philippines 2021

Smartphone pricelist Philippines 2020

Popular Topics

What We Do

YugaTech | Philippines Tech News & Reviews
© 2024. All Rights Reserved.