A secure site used to collect donations for Donald Trump's campaign has been found to be not so secure after an Iraqi hacker managed to breach it. The message posted by the attacker was clear: "Hacked by Pro_Mast3r ~/ Attacker Gov / Nothing Is Impossible / Peace from Iraq."
The breach was reported on Twitter by user @pwnallthethings, who also noted that the website is hosted on Pantheonsite.io and is based on the WordPress platform.
The server appears to be used for Trump's official campaign, as ArsTechnica reports that the server's certificate was legitimate, but a link to an image hosted on a third-party website was insecure, resulting in a warning being displayed in Chrome and Firefox.
At the time of writing this article, the site secure2.donaltjtrump.com is offline, as it is quite likely that it has been taken down due to admins trying to fix the problems.
According to a blog post published by Italian journalist Paolo Attivissimo, the source code of the compromised server did not contain any malicious scripts. Instead, the server contained a link to JavaScript code on a Google Code account named 'masterendi,' (which has since been deactivated) that has been linked to cyberattacks on three other sites in the past.
No further details have been released, and there has been no official statement from the Trump-Pence campaign press office. It seems that Donald Trump has been one of the most common targets of hackers lately, presumably due to his high popularity.

