Hacking Incident #273: The Office of Attorney General Tanzania (www.agctz.go.tz) Hacked by ./MaXimous48

Publication Date: September 24, 2020

On September 24th, 2020, the website of The Office of Attorney General Tanzania (www.agctz.go.tz) was breached by the hacker known as ./MaXimous48, associated with the Devil Security Crew. The attack specifically targeted the main URL of the website, indicating a breach of the site’s primary domain.

The attacker used a brute force attack as the proof of concept for this incident. A brute force attack involves systematically trying various combinations of credentials until the correct one is found, allowing unauthorized access to the system. This method was employed to exploit weaknesses in the website’s security and gain control.

The hacker’s reason for the attack was stated as “just for fun,” suggesting that the motivation behind the breach was personal enjoyment rather than financial or political objectives.

Hacker Details:

  • Hacker Name: ./MaXimous48
  • Hacker Group: Devil Security Crew

Website Details:

  • URL: https://www.agctz.go.tz/
  • System: Linux
  • Web Server: Apache
  • IP: 154.118.230.167
  • Location: Tanzania, United Republic of

Incident Details:

  • Date: September 24th, 2020 18:26:51 (WIB)
  • Proof of Concept: Brute force attack
  • Reason: Heh…just for fun!

Archive Page: https://defacer.id/mirror/id/110002
Cyber Attack Report’s Page: https://defacer.id/cyber-attack-report/110002