Bank Hires Hackers to Hit WikiLeaks
by
David Roknich | 02.19.2011
"Richard and I am meeting with senior executives at a large US Bank tomorrow regarding Wikileaks. We want to sell this team as part of what we are talking about. I need a favor. I need five to six slides on Wikileaks - who they are, how they operate and how this group may help this bank. Please advise if you can help get me something ASAP. My call is at noon."
Thu, 2 Dec 2010 20:50:30 -0500
I am sending you this complete story of mine becuase you already have a hacked version of it that completely undermines my intent. Please delete these previous efforts, that include numerous spam links that slipped through your filter. The fact that they have indicates a security problem.
Here are the links to the hacked versions of my story that appear on your site:
http://www.phillyimc.org/en/large-us-bank-hires-hackers-hit-wikileaks
http://www.phillyimc.org/en/node/88970/translation
please remove them.
###
While I am here, I might as well share the original story with a few updates, and no spam:
(updates) Details of how this saga continue to unravel are at The Tech Herald
This is an excerpt from one of the 70,000 emails released by anonymous from the "security consulting" firm of HB Gary - HB Gary Federal, and they are still weeping and gnashing their teeth. More than 9 gigabytes of data of their data have been made public. The veracity of the information is assured by internal crosschecks and digital signatures on the individual documents. If you are familiar with the meaning of "mailspool", then you understand what is meant by having their entire spool. It is like of butcherpaper of raw text that includes all of their email in the form that it is stored on their server. The kind folks at anonymous provided us the entire wrap mainly because of continued provocation by infamous "Black Hat" hacker, Greg Hoglund, who is the CEO of HB Gary. From these emails we find that they are regularly employed by Homeland Security and Booz-Allen.
Our government is in their hands.
It is interesting that the DIA (Defense Intelligence Agency) was recently reprimanded for attending a Black Hat conference on an "improper" spying expedition. From what I see in these emails, they were more likely a customer of the wares so finely crafted by HB Gary. Remember the quote "quality product" when you read future releases -:)
There is much to say, and little time. So for now, having read the scant reports currently circulating I'll provide you the little note (item 1 below) where our anonymous team explains their hit on HB Gary, and the complete message quoted above (item 2 below). There will be more, very soon.
###
Item 1 - Note from Anonymous to HB Gary
Dear HBGary (a recently disgraced "security" company),
Warm regards from Anonymous once again. It was our belief that you'd been taught a valuable lesson since our last message to you, but it appears that this is not the case.
After we humiliated you thoroughly by making your private documents public, defacing your website, taking over various online accounts of your executives, socially engineering your "trusted" server admins, unveiling embarrassing personal mishaps of Aaron Barr and essentially ruining any future plans your company might have, we had assumed that you'd at least, for once, use your combined brain cells to realize what you should and shouldn't do. So what did you do? You threatened us. Greg Hoglund, COO of HBGary, thought it wise to push forth that legal action is being taken to bring down Anonymous. Let's not forget that the first time you tried to do something like this, we did not overlook it, and we are not overlooking it now. We were willing to stop attacking you, we were even willing to leave you be entirely - but now you have provoked us, and there will be no mercy.
You even have the nerve to suggest we're falsifying information, which you arrogantly posted in a statement on your company website. The same company website that Anonymous ravaged. HBGary, Inc and HBGary Federal, a separate but related company, have been the victims of an intentional criminal cyberattack. We are taking this crime seriously and are working with federal, state, and local law enforcement authorities and redirecting internal resources to investigate and respond appropriately. To the extent that any client information may have been affected by this event, we will provide the affected clients with complete and accurate information as soon as it becomes available. Meanwhile, please be aware that any information currently in the public domain is not reliable because the perpetrators of this offense, or people working closely with them, have intentionally falsified certain data. HBGary, Inc and HBGary Federal are committed to a comprehensive, accurate, and swift response to this crime.
Anonymous has falsified nothing; we leaked your inboxes in full with no edits. In fact, most of your emails contain S/MIME digital signatures, proving that they're real. This information is now free to the public, and you honestly think you can wriggle your way out of it by accusing Anonymous of tampering with your data?
We feel it's time we took the game to the next level. We have now released all 71,802 HBGary emails so they are fully available to every citizen who is interested. This includes the previously unreleased 27,606 mails from Greg Hoglund's spool. We also included a fulltext search for your convenience.
But do not get us wrong, this is not all about revenge. Your leaked communications reveal that your companies were entangled in highly dubious and most likely illegal activities, including a smear campaign against WikiLeaks, its supportive journalists, and adversaries of the U.S. Chamber of Commerce and Bank of America. Evidence even suggests that this was done with full knowledge of the U.S. Department of Justice.
While the whole truth has yet to be uncovered, Anonymous feels that it is its duty to let the world know what you, related companies, and government agencies are up to behind closed doors. We will not stand idly by while firms like HBGary work in secrecy to undermine rights of citizens or institutions like WikiLeaks.
Admittedly, HBGary, while we do what we feel is necessary and just, we do not deny that we enjoyed breaking your neck in the process. You tried to play our game. You lost.
We are Anonymous.
We are legion.
We do not forgive.
We do not forget.
Expect us - always.
Item 2 -Setting Up the Bank Job on Wikileaks
From: Woods, John [mailto:jwoods@hunton.com]
Sent: Thursday, December 02, 2010 3:56 PM
To: BERICO-Sam.Kremin; Matthew Steckman; Eli Bingham; HBGARY-Aaron.Barr
Subject: URGENT - OPPORTUNITY
Importance: High
Richard and I am meeting with senior executives at a large US Bank tomorrow regarding Wikileaks. We want to sell this team as part of what we are talking about. I need a favor. I need five to six slides on Wikileaks - who they are, how they operate and how this group may help this bank. Please advise if you can help get me something ASAP. My call is at noon.
The complete email exchange and full headers are here
That's it for now. Meanwhile if you need a bulletproof server where any behavior is allowed, I know a multinational group that operates on the border of Russia and China. Why? they just tried a very cheezy exploit on my local website, Galesburg411.com. It was an attempt to get at the setup files for phpmyadmin. I traced the exploit back to it's source, and will tell you all about that source before the sun rises, I hope.
David Roknich
DOGSPOT
Comments
Great post
Submitted by Consultoria RH (not verified) on Wed, 01/18/2012 - 7:30pmEste blog é uma representação exata de competências. Eu gosto da sua recomendação. Um grande conceito que reflete os pensamentos do escritor. Consultoria RH
Post new comment