RootAyyildiz Turkish Defacer Interview: Did he “scare” the EYP? Turkish hacker RootAyyildiz Turkish Defacer, who has attacked Greek ministries, answers questions from the SecNews editorial team.
In hacking circles, he is called "The Father of Turkish Hackers" given his knowledge and hacking skills, as well as his successful hacking attacks.
Among his successful attacks are many critical Greek infrastructures.
The Ministry of Foreign Affairs, the Ministry of Interior, the Ministry of Labor , and some telecommunications companies in Greece have been subjected to a cyberattack by the hacker in question.
What is his opinion on Greek hackers? Was that the reason why the Greek National Security Service hired 80 new hackers?

–The interview follows–
What do you want us to call you?
RootAyyildiz Turkish Defacer
Do you act alone or do you collaborate/belong to a hacking group?
I've been working alone for quite some time.
So you have no connection to the hacking groups AYYILDIZ TÝM or Aslan Neferler Tim?
I have no connection. For a short time in 2019, Aslan Neferler Tim was simply responsible for managing some of the attacks I did.

Do you act on your own initiative and desire or are you funded by a government or private entity?
I am a Turkish teenager. All I serve are my nationalistic feelings.
Why are you hacking?
I hack websites to defend justice in the online world.
There is a rumor that you finally breached the .gr and .ελ Internet Domain Name Registry. Is that true?
Yes, I organized cyber attacks against the .gr and .ελ Internet Name Registry. My main goal was to access the central panel of nic.gr but I was unable to obtain a complete result.

Can you share some details (non-confidential) about how you managed to attack the .gr and .ελ Internet Name Registry? What kind of vulnerabilities did you identify (sql injection vulnerabilities, 0day exploits, etc.)?
Since cyber attacks are on the website, there are many security vulnerabilities in web scripts. Generally some details I can mention are php code injection, sql injection, os command injection, 21 port service brute force.
Furthermore, someone can use a zeroday and the exploit can be used with great success.
In the past, you have compromised the Greek Ministry of Foreign Affairs. Can you give us some technical details of this attack and/or other attacks on Greek government agencies?
When I needed to share the security vulnerabilities of Greek government organizations, I shared them. I pulled the data using sql injection vulnerabilities in the portal.
I don't want to talk about the attack on the Ministry of Foreign Affairs because AKINCILAR is still on the Ministry of Foreign Affairs servers, so I don't want to affect their hacking business.
Many Turkish hacking groups publish as their own, breaches committed against Greece. According to information, you are supposed to be the “father of Turkish hackers”. Many of your supporters confirm this. Do you think that some hackers are just trying to attract attention by exploiting the work of a talented hacker like you?
There are many people around the world who lie to get attention. I wouldn't like to comment on that.

Is there any (or any) Turkish hacker of the new generation that you consider a strong enough competitor?
Honestly, I don't think that way about this issue and it doesn't concern me.
What is your opinion on the latest attacks on the Ministry of Foreign Affairs, Dimokratianews and Parliament.gr by the AKINCILAR group?
We are young Turks, we are Muslims. We Turks can achieve anything. I congratulate those who carried out these attacks.
Have you ever been the victim of a hacking attack?
I have been the victim of several successful hacking attacks.
What critical Greek infrastructures, services, or companies have you targeted?
I have hacked many Ministries in Greece, always leaving a message on their homepage. I have published the information of many Ministry executives.
I attacked the Ministry of Interior, the Ministry of Foreign Affairs, the Ministry of Labor, and Greek telecommunications companies.

How would you describe the cybersecurity protection level in Greece? Is Greece an easy target?
There are no government websites, corporate websites or hosting companies that cannot be hacked. Greece is a very easy target for us compared to Turkey.
Is Greece your main target?
I am a nationalist. I have organized cyberattacks in various countries to condemn attacks against Turks and Muslims around the world.
Have you met any Greek hacking groups?
I don't know any Greek hacking groups. The only thing Greek hackers can do is DDoS by buying VDS or VPS Server with their money.

Can you share with us some of your future attacks (if not attacks, targets such as telecommunications companies, oil companies, shipping companies, ministries, etc.)
Any country that attacks Turks and Muslims, no matter who it is, I will make it suffer in my own way.
Have you ever been targeted by the authorities? If so, what hacking attacks betrayed you?
Cyberattack in India. I attacked many educational institutions and India prepared reports on my attacks with the help of Kaspersky.
I hacked the largest news website in Sri Lanka to condemn the attack on Muslims. The country's cyber defense chief made a statement about this attack and said on a live broadcast that she would cooperate with me.
When, after a few days, I attacked Greece, according to the Greek media report, the EYP hired 80 hackers.

Your YouTube channel is interesting. You describe all your attacks step by step. Do you plan to also present your hacking attacks against Greece?
I started my YouTube channel at the suggestion of a friend. I only shared some of my attacks, I don't need it anymore.
In your experience, what is the most dangerous hacking method these days?
I wouldn't like to answer anything about that. I can't say anything.
What are the three most important steps users should take to avoid a hacking attack?
- You should not click on emails and links in messages from people you don't know.
- You should not use the same password on every website.
- Keep devices up to date
- Use antivirus
- Use VPN

Would you like to send a message to SecNews users or mention something that hasn't been said in our interview?
Greece should know that the Turks are very good in every field. They are not going to stop until they achieve their goal.
We warmly thank hacker RootAyyildiz Turkish Defacer for the honest answers he gave to SecNews and the report on the attacks on critical Greek infrastructure, a fact that is of particular concern to Greek citizens.
*SecNews is an unbiased and objective news website specialized in cyberattacks and information security and will always give voice to groups or personalities that interest our users. The opinions expressed in the interview reflect EXCLUSIVELY the opinions of RootAyyildiz Turkish Defacer.*
Powerful attack by hackers on the Greek NamesRegistry.gr!
In April 2019, the Registry of Domain Names with the [.gr] and [.ελ] endings suffered an attack on its information systems. This attack is part of a broader effort, at an international level, to negatively affect the operation of Internet Registries. The investigation of the incident did not reveal any evidence of a leak of personal data.

As part of the effort of the Registry of domain names with the ending [.gr] and [.ελ] to ensure the integrity of its data, as well as to protect the beneficiaries of the internet names, it proceeded to immediately change the authorization codes of the domain names [.gr] and [.ελ].
Learn more about the attack here.
AKINCILAR: New hacking attack on the Ministry of Foreign Affairs
On September 20, 2020, a new hacking attack was carried out on the Ministry of Foreign Affairs website, catalogue.mfa.gr, by the Turkish hacking group AKINCILAR.

According to information published by Turkish user @ynsmroztas on Twitter , which is directly related to the hacking group, AKINCILAR targeted the site of the contact details list of the Ministry of Foreign Affairs executives using the SQL injection technique , which in most cases is combined with a breach and leak of sensitive data .
Learn more about the attack here.
