attack1.gif (6050 bytes)

WEB

SITE

UNDER

ATTACK

 

On the afternoon of 14 Feb 03, without warning or prior consultation, we were notified by our 'Server', the agency in which we buy space on the internet to store and display our YOHI web site, that:

1 -- They had received a 'spam' complaint about our site --  a complaint that we were using our domain name to solicit individuals to visit a pornography site.

2 -- As a result of that 'complaint', our 'Server' suspended our account -- rendered the site inaccessible to everyone.

3 -- Our 'Server' stated that if we would indicate that such activities will cease in the future -- they would restore our account.

Within the correspondence from our 'Server' was the "complaint", and another document from another agency with some management authority over our 'Server', who indicated:

1 -- This problem must be resolved within 24 hours.

2 -- This particular account needs termination.

The 'complaint' was highly technical [language not understood], but clearly did contain offensive words, and included a link to a URL which in fact turned out to be a pornography site.  It did not however, reveal the identity of the individual / agency making the complaint -- as best we could determine. 

All of us on the web site management team were incensed at the allegation. We knew absolutely nothing about the pornography the 'site' referenced, nor had we in any way made any solicitation of any type to any one - in the past, currently and certainly would not in the future.  WE WERE NOT GUILTY!

Additionally, we were intensely disappointed that some unscrupulous person [a 'hacker' of some sort] was able to breach the security and management systems of the 'Server' that permitted such a thing to happen in the first place, and which resulted in such drastic action against us.

We immediately appealed the allegation, the 'Server' understood, and 5 hours later our account [and web site] was restored.

The incident repeated itself on 20 July 03 when we determined that   the site was no longer viewable starting about 1700 hours.  We had not been notified that it was being removed, so inquired as to why our server removed it.  We were informed that more complaints had been received [by them] that the web site was again spamming for pornography.  Ultimately they provided us 6 'complaints'.  Review of those complaints revealed that persons were able to penetrate the security systems in place again and apparently launch e-mail messages from our site using a feature provided by the server -- our 'receiving' e-mail address.  Investigation of the complaints them selves did in fact identify real or bogus individuals who were abusing the system.   They, by name and e-mail address are total strangers to us.  After difficult hours of negotiation, our site was placed back on line and viewable at about 0200 hours 23 July 03.

It is beyond our ability to totally understand how this is all occurring.  However, to hopefully prevent recurrences, we have cancelled features offered by the server as a part of the overall 'hosting package' which obviously are being penetrated by the bad guys.  Where the cancellation of features and limitations we impose upon our selves will end is uncertain.    

We have talked about SPAM on this web site for years, and have taken all kinds of action to prevent it.  As you all know we have removed all e-mail addresses from the Found List specifically for that reason.  You and I also know that in this day and age, there is an expanding segment of our society whose sole purpose in life is to make things miserable for everyone else and it seems we can do nothing about it.  We know first hand that they have the ability to sent you e-mail and fool you into thinking the e-mail is from a friend or relative -- when in fact the mail is totally bogus.  We know they will attach things to download, or insert links, both of which will harm you or your equipment if you 'fall for it'.  Here are two cases  where it can get NO UGLIER.  

We urge you to:

1 -- Be aware of the events we reference, and be cautious as to whose mail you read or what your server provides.   You too can be a victim without any effort on your part.  Apparently it is easy for them to degrade your life.

2 -- At every opportunity press your congressman / women, and other officials, to enact laws that will stop the people who perpetuate hoaxes, scams, or SPAM, and PUT THEM IN JAIL - FOREVER.

If you were / or are the recipient of any mail that portends to convey an offensive thought or idea, and appears to have come from some one connected to this web site, PLEASE NOTIFY US.  We will tell you in ADVANCE, that WE DID NOT DO IT -- WE ARE NOT GUILTY!!!!!!! But neither can we stop it!!!!!

It has been our experience in cases of SPAM coming to us, that when we complain to the SERVER involved, NOTHING happens.  The Spam's continue ad infinitum.

It is extremely expensive to hire an agency and attempt to locate / identify the person / agency that perpetuated the hoax on us; and after that, the expense of a legal team to prosecute would be substantial.  Within our very limited resources to "FIGHT BACK", we will continue to do what we can to seek justice. 

It would appear that our 'server' is joining us in a learning experience that is confirming the 'net' is a very dangerous place indeed.

In the event this site is 'hacked' again, removed from the 'net' and we are unable to restore it, it will be reestablished on another server.   At this time I cannot tell you what server that will be; however, you can always find out the details by contacting individually the members of the Management Team, or visiting the following URL:    http://members.aol.com/Yohidevils/yokohama.html

Yes, we also have and will continue to perform those standard functions that now days fix all problems, from the computer to the repair of lawn mowers -- change passwords and the rebooting of our computers.

 

attack2.gif (8692 bytes)

STAY ALERT!

CAVEAT EMPTOR!

attack3.gif (16041 bytes)