AntiSec hackers dump data after hacking police websites
- 08 August, 2011 01:52
- Comments
The war between law enforcement and the Anonymous hacking collective continued this weekend as hackers dumped a 10 gigabyte database that included private e-mails and information sent by confidential informants. Hackers say they stole information during an attack on more than 70 small-town law enforcement agencies.
The hackers, an Anonymous-affiliated group known as AntiSec, say that they hope to "embarrass, discredit and incriminate police officers across the US," in retaliation for ongoing arrests of Anonymous members.
AntiSec said that it had compromised servers at Brooks-Jeffrey, a Mountain Home, Arkansas, company that runs a computer store and online marketing firm. Brooks-Jeffrey Marketing builds websites for sheriff's agencies throughout the southern United States. "It took less than 24 hours to root BJM's server and copy all their data to our private servers," AntiSec said in a statement, posted Saturday.
Brooks-Jeffrey could not immediately be reached for comment.
The hackers had already knocked many of the sheriffs' websites offline last week, but on Saturday AntiSec showed that it had gone beyond mere Web defacement, by posting e-mail messages, passwords, social security numbers, credit card numbers as well as messages from confidential informants.
In the U.S., the criminal investigation of Anonymous is being led by the U.S. Federal Bureau of Investigation. The sheriffs' sites appear to hit simply because they are part of the law enforcement community and because a security flaw at Brooks-Jeffrey made them an easy target for the hackers.
Hackers will often hit third-party service providers as a stepping stone toward more sensitive targets. Earlier this year, online marketer Epsilon Data Management was compromised, forcing dozens of companies, including J.P. Morgan, Verizon, and TiVo, to warn millions of customers that their email addresses had been stolen.
Many of the defaced sheriffs' websites had been restored by Sunday morning. The victims include sheriffs in Arkansas, Mississippi, and Missouri.
The hackers claim to have obtained passwords, contact information and social security numbers from the Missouri Sheriffs' Association's website, which remained offline Sunday.
Robert McMillan covers computer security and general technology breaking news for The IDG News Service. Follow Robert on Twitter at @bobmcmillan. Robert's e-mail address is robert_mcmillan@idg.com
Join the CIO Australia group on LinkedIn. The group is open to CIOs, IT Directors, COOs, CTOs and senior IT managers.
- Bookmark this page
- Share this article
- Got more on this story? Email CIO
- Follow CIO on twitter
- IBM PureApplication System - Application platform systems with integrated expertise
- Spear Phishing Attacks - Why they are successful and how to stop them
- Workshifting: How IT is Changing the Way Business is Done
- Managing Trust - Data protection and compliance for financial services
- Case Study: BNP Paribas Deploys Oracle Exadata to Accelerate Information Processing - The Hardware Perspective
-
Apple aims iPads at High Schools
-
Face Time - Interview with John Brennan and Robert DiStefano
-
Google Jumps Into Social Bookmarks Game
-
NBN build gaining momentum daily: Quigley
-
Face Time - Interview with John Brennan and Robert DiStefano
-
Risk management: ensuring the security of your hosted information
Organisations of all sizes are becoming victims to cybercriminals, data breaches, information theft and security risks. But before you go out and spend a fortune on security software, solutions and consultants, the starting point is to identify and measure your business’s exposure to those risks. In this whitepaper, “Exploring, Identifying and Measuring” risk, we examine how to identify risk and share an approach for identifying and measuring risk in your organisation. -
Consolidation Without Compromise
Virtualisation of computer, storage and infrastructure is enabling the transformation of enterprise datacentres into private clouds. The impact is an unprecedented ability to consolidate infrastructure without compromise: no change to service level agreements (SLAs), no loss of performance or scale, and no regression in the organisation’s overall security posture. Read on. -
CISO Guide to Next Generation Threats - Combating Advanced Malware, Zero-Day and Targeted APT Attacks
Over 95% of businesses unknowingly host compromised endpoints, despite their use of firewalls, intrusion prevention systems (IPS), antivirus and Web gateways.1 Today’s attacks look new and unknown to signature-based tools because the attacks employ advanced malware and zero-day vulnerabilities. To regain the upper hand against next-generation attacks, enterprises must turn to true next-generation protection: signature-less, proactive and real time. Read on.
-
Wiley Plus/WebCT Stand-alone to Accompany Information Technology for Management
-
JavaScript Bible, 7th Edition
-
Professional Visual Studio 2008
-
PowerPoint 2007 for Dummies
-
A Manager's Guide to Data Warehousing
-
The Cism Prep Guide
-
J2me Enterprise Development
-
Red Hat Fedora Linux 2 All-In-One Desk Reference for Dummies
-
QuickBooks 2006 Bible








Comments
Post new comment