Stories
Slash Boxes
Comments

SoylentNews is people

posted by janrinok on Monday July 06 2015, @05:21PM   Printer-friendly
from the not-the-best-advertising dept.

Inquisitr has this story.

It is just now being reported on Twitter and by CSO Online that Italian security firm Hacking Team has been compromised by parties unknown.

The attack, which took place during the Women's World Cup, resulted in a Torrent file with over 400GB of of internal documents, source code, and email communications being made available to the public. Meanwhile, the attackers have also seized control of Hacking Team's Twitter, defacing it and posting images of the stolen data.

Christopher Soghoian, principal technologist of the ACLU, says that a preliminary analyst of the Torrent's contents suggests that Hacking Team included among their customers nations such as South Korea, Kazakhstan, Saudi Arabia, Oman, Lebanon, and Mongolia. Hacking Team, which specializes in intrusion and surveillance, has always maintained that they do not do business with oppressive governments.

The tools developed by Hacking Team have been linked to several cases of privacy invasion in the past, by researches and the media.

n1 writes:

As reported by Threatpost:

Among the more potentially damaging documents made public are invoices showing that Hacking Team has sold its intrusion software to government agencies in countries known to have oppressive regimes, including Sudan, Ethiopia, and Egypt.

[...] Hacking Team officials have not released any official public statements about the attack yet.

As researchers and others have begun to look through the documents, they have found a number of significant things, aside from the invoices. Among the discoveries is the fact that Hacking Team has a legitimate Apple iOS developer certificate that expires next year. Another researcher found a handful of files that listed the VPS (virtual private server) servers used by Hacking Team, and published a list of the IP addresses for the servers.


Original Submission 1
Original Submission 2

 
This discussion has been archived. No new comments can be posted.
Display Options Threshold/Breakthrough Mark All as Read Mark All as Unread
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
  • (Score: 3, Touché) by MrGuy on Monday July 06 2015, @06:12PM

    by MrGuy (1007) on Monday July 06 2015, @06:12PM (#205770)

    I am particularly amused by the wording of their denial.

    According to Salted Hash, [csoonline.com] Christian Pozzi of Hacking Group responded to the hack as follows:

    "We are awake. The people responsible for this will be arrested. We are working with the police at the moment," Pozzi wrote.

    Given the apparent smoking gun of his company's ties to oppressive regimes and defiance of UN embargoes, one wonders if he realizes the irony in his claim that "The people responsible for this will be arrested."

    Note: per the article I quote, the statement attributed to Christian Pozzi was apparently posted on his personal twitter account, which was subsequently hacked and later taken down. Given a reputable news source attributes the quote to Pozzi, I am doing the same, but apply your own amount of salt.

    Starting Score:    1  point
    Moderation   +1  
       Redundant=1, Interesting=1, Touché=1, Total=3
    Extra 'Touché' Modifier   0  
    Karma-Bonus Modifier   +1  

    Total Score:   3  
  • (Score: 2) by Marneus68 on Monday July 06 2015, @06:26PM

    by Marneus68 (3572) on Monday July 06 2015, @06:26PM (#205775) Homepage

    I saw the quote when his twitter was still live bfore it was hacked this morning. I know this doesn't mean anything but I can confirm it was real.

    As for the threat itself I don't think there's any weight to it yet, it's more like a "you dun goofed, you've been reported to the state police and the cyber police" kind of threat.