Democratic Underground Latest Greatest Lobby Journals Search Options Help Login
Google

Anonymous speaks: the inside story of the HBGary hack

Printer-friendly format Printer-friendly format
Printer-friendly format Email this thread to a friend
Printer-friendly format Bookmark this thread
This topic is archived.
Home » Discuss » General Discussion Donate to DU
 
kpete Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Feb-15-11 09:34 PM
Original message
Anonymous speaks: the inside story of the HBGary hack
Edited on Tue Feb-15-11 09:35 PM by kpete
Anonymous speaks: the inside story of the HBGary hack
By Peter Bright |



It has been an embarrassing week for security firm HBGary and its HBGary Federal offshoot. HBGary Federal CEO Aaron Barr thought he had unmasked the hacker hordes of Anonymous and was preparing to name and shame those responsible for co-ordinating the group's actions, including the denial-of-service attacks that hit MasterCard, Visa, and other perceived enemies of WikiLeaks late last year.

When Barr told one of those he believed to be an Anonymous ringleader about his forthcoming exposé, the Anonymous response was swift and humiliating. HBGary's servers were broken into, its e-mails pillaged and published to the world, its data destroyed, and its website defaced. As an added bonus, a second site owned and operated by Greg Hoglund, owner of HBGary, was taken offline and the user registration database published.

Over the last week, I've talked to some of those who participated in the HBGary hack to learn in detail how they penetrated HBGary's defenses and gave the company such a stunning black eye—and what the HBGary example means for the rest of us mere mortals who use the Internet.

....................

Alas, two HBGary Federal employees—CEO Aaron Barr and COO Ted Vera—used passwords that were very simple; each was just six lower case letters and two numbers. Such simple combinations are likely to be found in any respectable rainbow table, and so it was that their passwords were trivially compromised.

lots, lots, (incl new batch of damning e-mails) more (3 pages) you tell me what YOU think?
kpete:
http://arstechnica.com/tech-policy/news/2011/02/anonymous-speaks-the-inside-story-of-the-hbgary-hack.ars/
Printer Friendly | Permalink |  | Top
Merlot Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Feb-15-11 09:54 PM
Response to Original message
1. I think this was the best valentines ever!
love those hacked emails - they're better than chocolate!

now, when do we get the promised BofA dump? You know, anonymous could just do a major dump and make bofa long for the days when wikileaks verified and redacted info and selectively released docs.
Printer Friendly | Permalink |  | Top
 
Boswell Donating Member (257 posts) Send PM | Profile | Ignore Tue Feb-15-11 09:58 PM
Response to Original message
2. wonderfully proportional response
:)
Printer Friendly | Permalink |  | Top
 
riverwalker Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Feb-15-11 10:07 PM
Response to Original message
3. here is the hacked page of HBGary, if you missed it
Edited on Tue Feb-15-11 10:10 PM by riverwalker
hilarious :rofl:
Printer Friendly | Permalink |  | Top
 
cutlassmama Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Feb-16-11 03:38 AM
Response to Original message
4. I may sound like a fanboy, but Anonymous is awesome; the only people that need to fear them are the
Printer Friendly | Permalink |  | Top
 
Matariki Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Feb-16-11 04:34 AM
Response to Original message
5. You HAVE to read the IRC chat log between Penny Leavy (pres. of HBGary) and Anon
Where she pretty much begs them to "Leave her company alone!!".

They make (increasing) demands on her - including donating Aaron Barr's salary to Bradley Manning's defense fund. (Points for them, imho)

It gets funnier when they tell her "Penny: Hmm, fire him and make him admit defeat in a public statement. Maybe post a picture of a shoe on his head."

http://pastebin.com/x69Akp5L
Printer Friendly | Permalink |  | Top
 
Vinnie From Indy Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Feb-16-11 09:38 AM
Response to Reply #5
6. Fascinating, but difficult to read until you get used to it
Some of the folks in the discussion are quite funny with their responses. Viva Anonymous!
Printer Friendly | Permalink |  | Top
 
sabrina 1 Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Feb-16-11 01:40 PM
Response to Original message
7. The most ironic thing about it is, that HBGary is supposed to be
a security company. I'm not very technical but from reading the article it looks like they were so careless with their own security, they made it easy for Anonymous to gain access to their site.

So many things they did wrong. But the one that stands out most to me is the exchange of emails between the HBGary guy, Fuzzi I think his handle was, with the fake Gary where he gave him all the info he needed without once suspecting that something might be wrong. Rather than make a phone call to check, especially being that they are in the security business.

I hope the country's security system is better than theirs was. What a total embarrassment for them. But when you decide to attack a news organization for money, to lie about them, to join in a smear campaign, I can't find much sympathy for them.

Go Anonymous! I'm sure others will hesitate before stirring that hornet's nest again.
Printer Friendly | Permalink |  | Top
 
mdmc Donating Member (1000+ posts) Send PM | Profile | Ignore Thu Feb-17-11 09:14 PM
Response to Original message
8. ..
Printer Friendly | Permalink |  | Top
 
Jaren Donating Member (4 posts) Send PM | Profile | Ignore Thu Feb-17-11 09:44 PM
Response to Original message
9. I am in absolute shock!
the fact that HBGary was so easily cracked is a laughable offense. And to think that the are federal contractors.
Printer Friendly | Permalink |  | Top
 
DU AdBot (1000+ posts) Click to send private message to this author Click to view 
this author's profile Click to add 
this author to your buddy list Click to add 
this author to your Ignore list Sat May 04th 2024, 01:01 AM
Response to Original message
Advertisements [?]
 Top

Home » Discuss » General Discussion Donate to DU

Powered by DCForum+ Version 1.1 Copyright 1997-2002 DCScripts.com
Software has been extensively modified by the DU administrators


Important Notices: By participating on this discussion board, visitors agree to abide by the rules outlined on our Rules page. Messages posted on the Democratic Underground Discussion Forums are the opinions of the individuals who post them, and do not necessarily represent the opinions of Democratic Underground, LLC.

Home  |  Discussion Forums  |  Journals |  Store  |  Donate

About DU  |  Contact Us  |  Privacy Policy

Got a message for Democratic Underground? Click here to send us a message.

© 2001 - 2011 Democratic Underground, LLC