Showing posts with label hackers. Show all posts
Showing posts with label hackers. Show all posts

1/26/2012

Israeli hacker team brings down Iranian websites


Πηγή: Jerousalem Post
By Yaakov Lappin
Jan 26 2012

English-language Iranian media outlet Press TV, Iranian Ministry of Health and Medical Education are hacked and taken are offline, feature Israeli flag.

Israeli hackers brought down Iran's Press TV website and two websites belonging to the Ministry of Health and Medical Education on Thursday.

The hackers, who call themselves "IDF Team," said their actions were a response to a series of attacks on Israeli sites the previous day.

Three additional Iranian sites were hacked and their servers altered to display an Israeli flag and anti-Arab text in English.

The website of Press TV, the Iranian regime's English-language satellite channel, was unavailable for a short period of time following the hackers' announcement.

"At 16:30 Israel Clock the Iranian Ministry of Health and Medical Education website will be down until further notice. In addition to Iran's television network, broadcasting in English round-the-clock, based in Tehran that [is] called Press TV will be down until further notice," the hackers wrote in a message.

"Ahmadinejad what do you have to say about that?" theyadded.

The attack represents the latest chapter in an Internet feud that began at the start of the month when an Arab hacker published tens of thousands of Israeli credit card numbers.

Earlier, IDF Team told The Jerusalem Post it was preparing a response after the websites of two Israeli hospitals - Sheba Medical Center at Tel Hashomer and the private Assouta hospital network - were taken offline on Wednesday.

IDF Team has played a pivotal part in Israeli counter-strikes on high-profile Arab websites following attacks by Arab hackers. They appear to have employed a combination of attacks to disable the Iranian websites on Thursday, by launching dedicated denial-of-service attacks (DDOS) attacks and breaking into Iranian servers.

On Wednesday, the Haaretz newspaper's Hebrew-languagewebsite was downed by pro-Palestinian hackers. Haaretz said it saw a message claiming responsibility for the attack by hackers calling themselves "Anonymous Palestine." Thewebsite of the financial newspaper The Marker was also unavailable on Wednesday.

Last week, Israeli hackers brought down the Saudi Arabian Monetary Agency website and the Abu Dhabi Stock Exchangesite, in retaliation for a DDOS attack on the Tel Aviv Stock Exchange and the El Al websites.



1/09/2012

Anonymous Releases Details of US, UK and NATO Officials


Πηγή: ITProPortal
By Ravi Mandalia
Jan 9 2012

According to reports, after successfully hacking into a US intelligence analysis firm, Stratfor, during Christmas, ‘anonymous' hackers posted online details of US, British and NATO officials.

Details of around 242 NATO officials and 221 British military staff have been leaked online by members of the alleged anonymous group. The information disclosed include email addresses as well as encrypted passwords that belong to intelligence, defence and police officials of Britain besides politicians and NATO advisers.

According to an analysis by an expert in cyber security at US Cyber Consequences Unit, John Bumgarner, details that have been posted online include "details of hundreds of UK government officials, some of whom work in sensitive areas," reports The Guardian.

Personal details of former US vice-president Dan Quayle as well as former secretary of state Henry Kissinger along with details of 173 personals serving in Afghanistan have also been leaked. Almost 19,000 email addresses of US military personnel were hacked.

On the other hand, advisers of Britain's Joint Intelligence Organisation, sensitive information of Prime Minister David Cameron besides 221 military officials and 242 NATO staff became the victim of this hacking.

A spokesman for British government commented that, "At present, there is no indication of any threat to UK government systems."




9/20/2011

China’s Growing Spy Threat



Πηγή: The Diplomat
By Alex Newman
Sep. 19 2011


The Chinese government’s ‘vacuum cleaner’ approach to espionage is worrying foreign governments, companies and overseas dissidents. They’re right to be concerned.

Beijing fiercely denies it. Much of the world ignores it. But according to analysts and officials, the communist-controlled People’s Republic of China operates the single largest intelligence-gathering apparatus in the world—and its growing appetite for secrets has apparently become insatiable.

From economic and military espionage to keeping tabs on exiled dissidents, China’s global spying operations are rapidly expanding. And, therefore, so is the threat. Some analysts even argue the regime—which is also gobbling up such key natural resources as farmland, energy, and minerals—has an eye on dominating the world.

Estimates on the number of spies and agents employed by the communist state vary widely. According to public statements by French author and investigative journalist Roger Faligot, who has written several books about the regime’s security services, there are around two million Chinese working directly or indirectly for China’s intelligence apparatus.

Other analysts say it would be impossible to count the exact number. ‘I doubt they know themselves,’ says Richard Fisher, a senior fellow on Asian military affairs at the Washington-based International Assessment and Strategy Center. Regardless, the number is undoubtedly extraordinary. ‘China can rightly claim to have the world’s largest, most amorphous, but also most active intelligence sector,’ he says.

That’s partly because it operates very differently from most. ‘When you consider that China’s intelligence community views any foreign-deployed Chinese citizen, any Chinese delegation, all Chinese criminal networks, and all overseas Chinese with any tangible affinity or connection to the Motherland as a target for recruitment, then you have to find a different way to measure,’ Fisher explains. ‘This has to start with the consideration that any Chinese, especially those from China, from student to CEO, are potential active intelligence assets.’

Other analysts echo his concerns, and a simple fact: the regime’s spies are increasingly active across the globe. Since 2008, more and more intelligence-training colleges—‘spy schools’—have been popping up at universities across the country. Meanwhile, Chinese satellite-reconnaissance and cyber espionage capabilities are expanding at an unprecedented speed.

Officials are, probably for good reason, skittish when discussing China and its intelligence collection operations. But there’s near unanimous agreement—and court convictions in countries around the globe support the premise—that, in terms of sophistication, scope, and international capabilities, the perils of Chinese espionage are on the rise.

‘The danger is pronounced,’ warns Charles Viar, chairman of the Washington, D.C.-based Center for Intelligence Studies. ‘In my view, no one is really doing enough to deal with the Chinese threat. It is too large, and by Western standards, too unconventional.’

Among the array of growing dangers associated with Chinese spying: the regime’s increasingly advanced cyber capabilities. While the techniques are used to steal ever more information of all sorts, the potential for devastating offensive operations exists as well. Leaked US diplomatic cables and cyber-security analysts suggest that Chinese military intelligence has been involved in countless network penetrations in recent years. In some instances, evidence suggests that the regime is even able to remotely control sensitive systems.

Consider one example: In 2009, senior US officials reported that cyber spies—at least some of whom were Chinese—infiltrated the US electrical grid. And after breaking in, they left software behind that could be used to cause disruptions or possibly even shut the system down.

The Evolution of the Menace

Though the evolving threats are more advanced and dangerous today than ever before, Chinese espionage is nothing new. In fact, it began centuries ago—well before the communist regime rose to power.

‘China has a history of organized intelligence-gathering operations that goes back to the 15th century—perhaps even earlier,’ says Joseph Fitsanakis, a senior editor with Intel News who teaches classes on espionage, intelligence, and covert action at King College’s Department of History and Political Science. The Chinese, however, took it to a new level.

Up until two to three decades ago, the regime’s spying was largely domestic in nature, Fitsanakis explains—primarily targeting perceived enemies and dissidents within China. But in the post-1980s era, with economic reforms and growing affluence pacifying much of the internal unrest, Chinese intelligence collection efforts began to focus more on the outside world.

9/18/2011

Top Spy Website Hacked



Πηγή: The Daily Beast
By Eli Lake
Sep. 17 2011


INSA, the leading trade association for intelligence contractors, just had its website hacked. What’s worse, such cyberpiracy is not that uncommon, Eli Lake explains.


On Wednesday, 48 hours after releasing a policy paper on cybersecurity, the top trade association for intelligence contractors got a first-hand lesson on the subject: they discovered that their website was hacked.

Cryptome, a site affiliated with the hacker collective Anonymous, published the membership emails and phone numbers and in some cases home addresses for the members of the Intelligence and National Security Alliance (INSA). By clicking on a link titled, “INSA Nest of Official and Corporate Spies,” anyone can find contact information for senior officials at the NSA, FBI, and CIA, as well as top national security contracting firms like Booz Allen Hamilton.

"When this happens to an organization which is an association made up of your brightest and most competent intelligence and national security professionals and no one is surprised, it tells you we have a cybercrime epidemic," INSA President Ellen McCarthy told The Daily Beast Friday. "It’s not just a few isolated incidents, it’s happening all the time."

INSA boasts members from the top of both the contracting world and the U.S. intelligence community. President Obama’s top adviser on counterterrorism,John Brennan, is a former chairman of INSA’s board of directors, as is Mike McConnell, a former director of national intelligence.

The irony in this case is that the files were published a day after INSA released a paper urging government contractors and the intelligence community to establish common protocols to ward off cyberintruders. The second sentence of the paper notes, “Cyberspace is a haven for a broad range of disruptive operations, including reconnaissance, theft, sabotage, and espionage.”

INSA is only the latest example of how the intelligence community and its affiliated contractors have been hacked by increasingly brazen hackers. On July 11, Anonymous published some 90,000 emails and login credentials for U.S. military officers after breaking into the servers of Booz Allen Hamilton. The group published the data on a website called Pirate Bay and announced on Twitter that July 11 was “Military Meltdown Monday.” The month before, another group of hackers called “LulzSec” (who claim to have since disbanded) published internal files from the FBI and claimed to briefly disable the CIA’s public website.

To get a sense of how bad the problem is, earlier this year, the company that provides the secure login protection or digital keys, RSA, suffered a breach that effectively gave the hacker a skeleton key for thousands of corporate networks all over the world.

“The people who are supposed to be most sophisticated about network security are constantly getting owned,” said Noah Shachtman, a cybersecurity expert at the Brookings Institution and the editor of Wired’s Danger Room blog. “It used to be that if you wanted to steal secrets from the U.S. government, you would have to go to the Pentagon or Langley, Va. But now, because so much of what our military and intelligence agencies do is actually in private contractor hands, one of the easiest ways to get sensitive information is to break into these corporate and association networks.”

McCarthy said the hackers got the master member list the group uses mainly as an invite list for their events. She said more sensitive information like the credit card numbers of its members were on websites on remote locations.

"The people who are supposed to be most sophisticated about network security are constantly getting owned," said Noah Shachtman, a cybersecurity expert.

INSA announced the breach in part, McCarthy said, because the trade organization has encouraged other businesses to be up front with the public after suffering hacks to their servers. She also said she was most upset that some of the home addresses of the group’s membership were shared.

Shachtman said that the emails could also be valuable to hackers. “INSA is just another Washington trade association, one of a thousand. But the personal information on the membership list could be extraordinarily useful for hackers who want to get access to more sensitive networks,” he said. “With the personal emails of these government and industry officials, a hacker could use this information to deliver very personalized and very convincing scams on some of the intelligence world’s leading lights.”


8/10/2011

London Riots 2011: Protesters Use BlackBerry Messenger; Hackers Back Them



Πηγή: ABC News
Aug. 9, 2011


The riots raging across north London have been fueled, in part, by the use of BlackBerry Messenger. When BlackBerry's parent company promised to cooperate with British police, its Inside BlackBerry blog was promptly hacked by protesters.

Credit for the hacking was claimed by a group that calls itself TeaMpoisoN. It has been linked to other shadowy groups, such as Lulz Security and Anonymous, which have taken credit for breaking into the websites of police departments, the U.S. Senate, the CIA, Sony's PlayStation network and Citibank.

As the London riots spread, BlackBerry's Canadian parent company, Research In Motion, or RIM, put up this blog post:

"We feel for those impacted by this weekend's riots in London. We have engaged with the authorities to assist in any way we can. As in all markets around the world Where BlackBerry is available, we cooperate with local telecommunications operators, law enforcement and regulatory officials."

This morning a reply appeared on the BlackBerry blog:

"Dear Rim; You Will _NOT_ assist the UK Police because if u do innocent members of the public who were at the wrong place at the wrong time and owned a blackberry will get charged for no reason at all," it said. "The Police are looking to arrest as many people as possible to save themselves from embarrassment. ... If you do assist the police by giving them chat logs, gps locations, customer information & access to peoples BlackBerryMessengers you will regret it. ..."

The rioting was sparked by the shooting death of 29-year-old Mark Duggan, in the Tottenham section of North London, last Thursday. Police said Duggan shot at them first. Protesters demonstrated on Saturday, and the march soon turned violent. It has spread to the British cities of Birmingham, Bristol and Liverpool.

U.K. police say protesters have been using BlackBerry Messenger -- the popular smartphone text-messaging service -- to organize, while authorities conceded they were monitoring Facebook and Twitter. One message, according to London's Guardian newspaper, read:

"Everyone from all sides of London meet up at the heart of London (central) OXFORD CIRCUS!!, Bare SHOPS are gonna get smashed up so come get some (free stuff!!!) f**k the feds we will send them back with OUR riot! >: O"

Authorities on both sides of the Atlantic have struggled to keep up with the social networking tools used by activists. While BlackBerry has struggled against competition from Apple's iPhone and Google's Android in the United States, it is by far the leading smartphone brand in the U.K.

And the hackers are hard to stop. Last month, police arrested a 19-year-old in Scotland's remote Shetland Islands, calling him the chief spokesman for Lulz Security, but "hacktivism" still continues unabated.

"Given the ease and anonymity with which these attacks can be conducted and the jurisdiction issues, it is likely that the bad guys will remain in the driver's seat for the foreseeable future," said John D'Arcy, an assistant professor of information technology management at the University of Notre Dame.

8/03/2011

Biggest-ever series of cyber attacks uncovered, UN hit

BOSTON | Wed Aug 3, 2011 1:38pm IST

Security experts have discovered the biggest series of cyber attacks to date, involving the infiltration of the networks of 72 organizations including the United Nations, governments and companies around the world.

Security company McAfee, which uncovered the intrusions, said it believed there was one "state actor" behind the attacks but declined to name it, though one security expert who has been briefed on the hacking said the evidence points to China.

The long list of victims in the five-year campaign include the governments of the United States, Taiwan, India, South Korea, Vietnam and Canada; the Association of Southeast Asian Nations (ASEAN); the International Olympic Committee (IOC); the World Anti-Doping Agency; and an array of companies, from defense contractors to high-tech enterprises.

In the case of the United Nations, the hackers broke into the computer system of its secretariat in Geneva in 2008, hid there for nearly two years, and quietly combed through reams of secret data, according to McAfee.

"Even we were surprised by the enormous diversity of the victim organizations and were taken aback by the audacity of the perpetrators," McAfee's vice president of threat research, Dmitri Alperovitch, wrote in a 14-page report released on Wednesday.

"What is happening to all this data ... is still largely an open question. However, if even a fraction of it is used to build better competing products or beat a competitor at a key negotiation (due to having stolen the other team's playbook), the loss represents a massive economic threat."

McAfee learned of the extent of the hacking campaign in March this year, when its researchers discovered logs of the attacks while reviewing the contents of a "command and control" server that they had discovered in 2009 as part of an investigation into security breaches at defense companies.

It dubbed the attacks "Operation Shady RAT" and said the earliest breaches date back to mid-2006, though there might have been other intrusions. (RAT stands for "remote access tool," a type of software that hackers and security experts use to access computer networks from afar).

Some of the attacks lasted just a month, but the longest -- on the Olympic Committee of an unidentified Asian nation -- went on and off for 28 months, according to McAfee.

"Companies and government agencies are getting raped and pillaged every day. They are losing economic advantage and national secrets to unscrupulous competitors," Alperovitch told Reuters.

"This is the biggest transfer of wealth in terms of intellectual property in history," he said. "The scale at which this is occurring is really, really frightening."

CHINA CONNECTION?

Alperovitch said that McAfee had notified all 72 victims of the attacks, which are under investigation by law enforcement agencies around the world. He declined to give more details.

Jim Lewis, a cyber expert with the Center for Strategic and International Studies who was briefed on the hacking discovery by McAfee, said it was very likely China was behind the campaign because some of the targets had information that would be of particular interest to Beijing.

The systems of the IOC and several national Olympic Committees were breached in the run-up to the 2008 Beijing Games, for example.

And China views Taiwan as a renegade province, and political issues between them remain contentious even as economic ties have strengthened in recent years.

"Everything points to China. It could be the Russians, but there is more that points to China than Russia," Lewis said.

McAfee, acquired by Intel Corp this year, would not comment on whether China was responsible.

STONE AGE

Vijay Mukhi, an independent cyber-expert based in India, says some south Asian governments, including India, are highly vulnerable to hacking from China as it strives to broaden its influence and strategic interests in the region.

"I'm not surprised because that's what China does, they are gradually dominating the cyberworld," he said.

"I would call it child's play (for a hacker to get access to Indian government data) ... I would say we're in the stone age."

An Indian telelcommunications ministry official declined to say whether he was aware of the hacking on the government.

The UN said it was aware of the report, and that it has started an investigation to ascertain if there was an intrusion.

But Hwang Mi-kyung, with leading South Korean cyber security firm Ahnlab, cautioned against assuming China was the only one involved.

"I think we're beyond the stage where we should be focusing on the technical aspect of addressing individual attacks and instead we should think more in terms of what we can do policywise. For that, the involvement of Chinese government is very important," she said.

McAfee released the report to coincide with the start of the Black Hat conference in Las Vegas on Wednesday, an annual gathering of security professionals and hackers who use their skills to promote security and fight cyber crime.

In the scorching desert heat, they will meet to talk about a series of recent headline-grabbing hacks, such as on Lockheed Martin Corp, the International Monetary Fund, Citigroup Inc, Sony Corp and EMC Corp's RSA Security.

The activist groups Anonymous and Lulz Security have recently grabbed the spotlight for temporarily shutting down some high-profile websites and defacing others.

But attacks like Operation Shady RAT are far more costly and often undisclosed, as victims fear reputational damage or attention from other hackers. McAfee sees Operation Shady RAT as the tip of the iceberg.

"I am convinced that every company in every conceivable industry with significant size and valuable intellectual property and trade secrets has been compromised (or will be shortly), with the great majority of the victims rarely discovering the intrusion or its impact," Alperovitch wrote in the report.

"In fact, I divide the entire set of Fortune Global 2000 firms into two categories: those that know they've been compromised and those that don't yet know."