<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>AllThingsD &#187; cyber crime</title>
	<atom:link href="http://allthingsd.com/tag/cyber-crime/feed/" rel="self" type="application/rss+xml" />
	<link>http://allthingsd.com</link>
	<description></description>
	<lastBuildDate>Sat, 11 Feb 2012 06:53:43 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
<atom:link rel="hub" href="http://pubsubhubbub.appspot.com"/><image>
		  <url>http://allthingsd.com/theme/images/logo-rss.jpg</url>
		  <title>All Things Digital</title>
		  <link>http://allthingsd.com/</link>
		  <width>144</width>
		  <height>22</height>
	</image>		<item>
		<title>Stratfor Hack Damage Report: 50,000 Credit Cards, 44,000 Passwords</title>
		<link>http://allthingsd.com/20111227/stratfor-hack-damage-report-50000-credit-cards-44000-passwords/</link>
		<comments>http://allthingsd.com/20111227/stratfor-hack-damage-report-50000-credit-cards-44000-passwords/#comments</comments>
		<pubDate>Tue, 27 Dec 2011 22:10:00 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[anonymous]]></category>
		<category><![CDATA[AntiSec]]></category>
		<category><![CDATA[computer security]]></category>
		<category><![CDATA[cyber crime]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[LulzSec]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Stratfor]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=157427</guid>
		<description><![CDATA[Number of Lulz: Incalculable.]]></description>
			<content:encoded><![CDATA[<p><img src="http://allthingsd.com/files/2011/07/anonymous_at_scientology_in_los_angeles-380x285.png" alt="" title="anonymous_at_scientology_in_los_angeles" width="380" height="285" class="alignright size-Featured wp-image-99962" />A few days after the private security think tank Stratfor disclosed that it had been the <a href="http://allthingsd.com/20111226/anonymous-plays-robin-hood-with-stolen-credit-cards/">victim of a hacking attack</a>, apparently carried out by the loosely affiliated group Anonymous, the extent of the damage is becoming clear.</p>
<p>Identity Finder, a New York-based identity theft protection firm, has analyzed the information breached and summarized what the attackers appear to have made off with.</p>
<blockquote class="memo">
<ul>
<li>50,277 unique credit card numbers, of which 9,651 are <em>not</em> expired<br />
<LI>86,594 email addresses, of which 47,680 are unique<br />
<LI>27,537 phone numbers, of which 25,680 are unique</p>
<li>44,188 encrypted passwords, of which roughly 50 percent could be easily cracked
<li>73.7 percent of decrypted passwords were weak
<li>21.7 percent of decrypted passwords were medium strength
<li>4.6 percent of decrypted passwords were strong
<li>Average decrypted password length: 7.1 characters
<li>10 percent of decrypted passwords were less than 5 characters long
<li>Only 4.8 percent of decrypted passwords were 10+ characters long
<li>Presumably the remaining non-decrypted passwords were stronger than the decrypted subset
<li>13,973 of the addresses belonged to United States victims; the remainder belonged to individuals from around the world</ul>
</blockquote>
<p>There are also an additional 2.7 million email messages that the attackers claim to have taken, but that have not yet been released.</p>
<p>Stratfor has promised to inform the customers whose information was taken no later than Dec. 28, which is tomorrow. Anonymous, ever seeking to justify its actions in the name of some higher moral purpose, said in a tweet that Stratfor, which sells subscriptions to its intelligence analysis reports to government, law enforcement agencies and businesses, isn&#8217;t &#8220;the harmless company it tries to paint itself as,&#8221; and that the emails will show that.</p>
<p><!-- tweet id : 151731063918563329 --><br />
<style type="text/css">#bbpBox_151731063918563329 a { text-decoration:none; color:#99001a; }#bbpBox_151731063918563329 a:hover { text-decoration:underline; }</style>
<div id="bbpBox_151731063918563329" class="bbpBox" style="padding:20px; margin:5px 0; background-color:#131516; background-image:url(http://a1.twimg.com/images/themes/theme14/bg.gif);">
<div style="background:#fff; padding:10px; margin:0; min-height:48px; color:#333333; -moz-border-radius:5px; -webkit-border-radius:5px;"><span style="width:100%; font-size:18px; line-height:22px;">@<a href="http://twitter.com/intent/user?screen_name=techwriterjim" class="twitter-action">techwriterjim</a> It was conducted by <a href="http://twitter.com/search?q=%23Antisec" title="#Antisec">#Antisec</a>. Stratfor is not the &#8220;harmless company&#8221; it tries to paint itself as. You&#8217;ll see in those emails.</span>
<div class="bbp-actions" style="font-size:12px; width:100%; padding:5px 0; margin:0 0 10px 0; border-bottom:1px solid #e6e6e6;"><img align="middle" src="http://allthingsd.com/wp-content/plugins/twitter-blackbird-pie//images/bird.png" /><a title="tweeted on December 27, 2011 10:27 am" href="http://twitter.com/#!/AnonymousIRC/status/151731063918563329" target="_blank">December 27, 2011 10:27 am</a> via <a href="http://code.google.com/p/qwit/" rel="nofollow" target="blank">Qwit</a><a href="https://twitter.com/intent/tweet?in_reply_to=151731063918563329" class="bbp-action bbp-reply-action" title="Reply"><span><em style="margin-left: 1em;"></em><strong>Reply</strong></span></a><a href="https://twitter.com/intent/retweet?tweet_id=151731063918563329" class="bbp-action bbp-retweet-action" title="Retweet"><span><em style="margin-left: 1em;"></em><strong>Retweet</strong></span></a><a href="https://twitter.com/intent/favorite?tweet_id=151731063918563329" class="bbp-action bbp-favorite-action" title="Favorite"><span><em style="margin-left: 1em;"></em><strong>Favorite</strong></span></a></div>
<div style="float:left; padding:0; margin:0"><a href="http://twitter.com/intent/user?screen_name=AnonymousIRC"><img style="width:48px; height:48px; padding-right:7px; border:none; background:none; margin:0" src="http://a1.twimg.com/profile_images/1554234337/anontopenyan_normal.png" /></a></div>
<div style="float:left; padding:0; margin:0"><a style="font-weight:bold" href="http://twitter.com/intent/user?screen_name=AnonymousIRC">@AnonymousIRC</a>
<div style="margin:0; padding-top:2px">AnonymousIRC</div>
</div>
<div style="clear:both"></div>
</div>
</div>
<p><!-- end of tweet --></p>
<p>Whatever. Wired reported that someone who participated in the attack said that a total of four servers were breached, <a href="http://www.wired.com/threatlevel/2011/12/antisec-hits-private-intel-firm-million-of-docs-allegedly-lifted/">and the data on them wiped</a>. The question that then logically arises is this: What was a firm that&#8217;s ostensibly in the business of advising business and government clients on security doing about its own?</p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20111227/stratfor-hack-damage-report-50000-credit-cards-44000-passwords/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>16 Arrested in Nationwide Hacker Crackdown</title>
		<link>http://allthingsd.com/20110719/16-arrested-in-nationwide-hacker-crackdown/</link>
		<comments>http://allthingsd.com/20110719/16-arrested-in-nationwide-hacker-crackdown/#comments</comments>
		<pubDate>Tue, 19 Jul 2011 21:42:48 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[anonymous]]></category>
		<category><![CDATA[crime]]></category>
		<category><![CDATA[cyber crime]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[LulzSec]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[U.S. Department of Justice]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=100079</guid>
		<description><![CDATA[The arrests include 14 for a December attack against PayPal, and two connected to a pair of incidents connected to the LulzSec gang. Five others are arrested in the U.K. and The Netherlands.]]></description>
			<content:encoded><![CDATA[<p><img src="http://allthingsd.com/files/2011/07/Screen-shot-2011-07-19-at-3.09.12-PM-380x194.png" alt="" title="Screen shot 2011-07-19 at 3.09.12 PM" width="380" height="194" class="alignright size-medium wp-image-100187" />The U.S. Department of Justice and the FBI just announced that 14 people have been arrested around the country in connection with an investigation into the activities of the hacker gang calling itself Anonymous. Two others were arrested on what are being described as &#8220;cyber-related charges.&#8221;</p>
<p>The 14 arrested in Alabama, Arizona, California, Colorado, the District of Columbia, Florida, Massachusetts, Nevada, New Mexico and Ohio have been indicted by a federal grand jury in San Jose, California. I&#8217;ve embedded the complaint below.</p>
<p>Two others were arrested on similar charges on two separate complaints in Florida. The Florida case concerns the attack on InfraGard, the public-private information-sharing partnership affiliated with the FBI. The New Jersey case concerns the release of confidential documents <a href="http://allthingsd.com/20110625/at-the-heigh-of-their-infamy-lulzsec-hackers-call-it-quits/">stolen from AT&#038;T</a>. These would appear to be the first U.S. arrests connected with the LulzSec crew that&#8217;s been so active this summer.</p>
<p>Additionally, police in the U.K. arrested another person and police in The Netherlands arrested four more people in connection with the case.</p>
<p>The indictment names 14 people: Christopher Wayne Cooper, 23, a.k.a. “Anthrophobic;” Joshua John Covelli, 26, a.k.a. “Absolem” and “Toxic;” Keith Wilson Downey, 26; Mercedes Renee Haefer, 20, a.k.a. “No” and “MMMM;” Donald Husband, 29, a.k.a. “Ananon;”  Vincent Charles Kershaw, 27, a.k.a. “Trivette,” “Triv” and “Reaper;” Ethan Miles, 33; James C. Murphy, 36; Drew Alan Phillips, 26, a.k.a. “Drew010;” Jeffrey Puglisi, 28, a.k.a. “Jeffer,” “Jefferp” and “Ji;” Daniel Sullivan, 22; Tracy Ann Valenzuela, 42; and Christopher Quang Vo, 22. One individual’s name has been withheld by the court, which suggests he or she is a juvenile.</p>
<p>The defendants are charged with conspiracy and intentional damage to a protected computer.</p>
<p>The 14 are accused of carrying out a December distributed denial of service attack against PayPal, the payment site owned by eBay. DDOS attacks are when attackers overwhelm a Web server with fake requests for attention at such a high volume that legitimate users can&#8217;t get through. </p>
<p>The group has also claimed responsibility for attacks against Visa, and at one point planned to attack Amazon. Various other factions connected to Anonymous have also attacked Sony and recently claimed responsibility for a hacking attack against the defense contractor Booz Allen Hamilton.</p>
<p>The FBI also made arrests today in the attack on the Web site of InfraGard, a non-profit group affiliated with the FBI itself. Scott Matthew Arciszewski, 21, was arrested today by FBI agents and charged with intentional damage to a protected computer. He&#8217;s been charged in the Middle District of Florida and has already appeared in a federal court in Orlando.</p>
<p>The complaint alleges that Arciszewski accessed without authorization the Tampa Bay InfraGard website and uploaded three files, and then Tweeted about it on Twitter.</p>
<p>InfraGard is a public-private partnership for critical infrastructure protection sponsored by the FBI with chapters in all 50 states.</p>
<p>In a related complaint unsealed in the District of New Jersey, the DOJ charged Lance Moore, 21, of Las Cruces, New Mexico with stealing confidential business information stored on AT&#038;T’s servers and posting it on a public file sharing site. Moore is charged with one count of accessing a protected computer without authorization. </p>
<p>According to the New Jersey complaint, Moore, a customer support contractor for AT&#038;T, exceeded his authorized access to AT&#038;T’s servers and downloaded thousands of documents, applications and other files that, on the same day, he allegedly posted on a public file hosting site. That would be The Pirate Bay.</p>
<p>According to the complaint, on June 25, the computer hacking group LulzSec publicized that they had obtained confidential AT&#038;T documents and made them publicly available on the Internet. The documents were the ones Moore had previously uploaded. He faces a maximum penalty of 10 years in prison and a $250,000 fine. Each count of conspiracy carries a maximum penalty of five years in prison and a $250,000 fine. </p>
<p>Here&#8217;s the indictment.</p>
<p><a title="View Indictment 7.19.11 on Scribd" href="http://www.scribd.com/doc/60382303/Indictment-7-19-11" style="margin: 12px auto 6px auto; font-family: Helvetica,Arial,Sans-serif; font-style: normal; font-variant: normal; font-weight: normal; font-size: 14px; line-height: normal; font-size-adjust: none; font-stretch: normal; -x-system-font: none; display: block; text-decoration: underline;">Indictment 7.19.11</a><iframe class="scribd_iframe_embed" src="http://www.scribd.com/embeds/60382303/content?start_page=1&#038;view_mode=list&#038;access_key=key-1e5puj3gwdtmbwxwtfm" data-auto-height="true" data-aspect-ratio="0.772727272727273" scrolling="no" id="doc_84156" width="100%" height="600" frameborder="0"></iframe><script type="text/javascript">(function() { var scribd = document.createElement("script"); scribd.type = "text/javascript"; scribd.async = true; scribd.src = "http://www.scribd.com/javascripts/embed_code/inject.js"; var s = document.getElementsByTagName("script")[0]; s.parentNode.insertBefore(scribd, s); })();</script></p>
<p><em>[Image via Foxnews.com] </em></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20110719/16-arrested-in-nationwide-hacker-crackdown/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft Battles Cyber Criminals</title>
		<link>http://allthingsd.com/20100225/microsoft-battles-cyber-criminals/</link>
		<comments>http://allthingsd.com/20100225/microsoft-battles-cyber-criminals/#comments</comments>
		<pubDate>Thu, 25 Feb 2010 23:48:02 +0000</pubDate>
		<dc:creator>Nick Wingfield</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[cyber crime]]></category>
		<category><![CDATA[digital]]></category>
		<category><![CDATA[frontpage]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[Nick Wingfield]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[The Wall Street Journal]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://voices.allthingsd.com/?p=21740</guid>
		<description><![CDATA[Microsoft Corp. launched a novel legal assault to take down a global network of PCs suspected of spreading spam and harmful computer code, adding what the company believes could become a potent weapon in the battle against cyber criminals.]]></description>
			<content:encoded><![CDATA[<p>Microsoft Corp. (MSFT) launched a novel legal assault to take down a global network of PCs suspected of spreading spam and harmful computer code, adding what the company believes could become a potent weapon in the battle against cyber criminals.</p>
<p>But security experts say it isn&#8217;t yet clear how effective Microsoft&#8217;s approach will be, while online rights groups warn that the activities of innocent computer users could be inadvertently disrupted.</p>
<p>On Monday, a federal judge in Alexandria, Va., granted Microsoft&#8217;s request for an order to deactivate hundreds of Internet addresses that the company linked to an army of tens of thousands of PCs around the globe, infected with computer code that allows them to be harnessed to spread spam, malicious virus programs and mount mass attacks to disable Web sites.</p>
<p><a href="http://online.wsj.com/article/SB10001424052748704240004575086523786147014.html?mod=WSJ_Tech_LEFTTopNews">Read the rest of this post on the original site</a></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20100225/microsoft-battles-cyber-criminals/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>75 Percent of All Spam Globally? On Our Backbones? Holy Cow!</title>
		<link>http://allthingsd.com/20081112/75-percent-of-all-spam-globally-on-our-backbones-holy-cow/</link>
		<comments>http://allthingsd.com/20081112/75-percent-of-all-spam-globally-on-our-backbones-holy-cow/#comments</comments>
		<pubDate>Wed, 12 Nov 2008 18:29:31 +0000</pubDate>
		<dc:creator>John Paczkowski</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Benny Ng]]></category>
		<category><![CDATA[botnet]]></category>
		<category><![CDATA[counterfeit]]></category>
		<category><![CDATA[cyber crime]]></category>
		<category><![CDATA[Global Crossing]]></category>
		<category><![CDATA[Hurricane Electric]]></category>
		<category><![CDATA[Internet provider]]></category>
		<category><![CDATA[ISP]]></category>
		<category><![CDATA[John Paczkowski]]></category>
		<category><![CDATA[Justice Department]]></category>
		<category><![CDATA[kiddie porn]]></category>
		<category><![CDATA[Mark Rasch]]></category>
		<category><![CDATA[master server]]></category>
		<category><![CDATA[McColo]]></category>
		<category><![CDATA[Mega-D]]></category>
		<category><![CDATA[neetwork]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[Paul Ferguson]]></category>
		<category><![CDATA[pharmaceuticals]]></category>
		<category><![CDATA[Pushdo]]></category>
		<category><![CDATA[Rustock]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[Srizbi]]></category>
		<category><![CDATA[traffic]]></category>
		<category><![CDATA[Trend Micro]]></category>
		<category><![CDATA[Warezov]]></category>
		<category><![CDATA[Washington Post]]></category>
		<category><![CDATA[Web-hosting]]></category>

		<guid isPermaLink="false">http://digitaldaily.allthingsd.com/?p=8294</guid>
		<description><![CDATA[According to security experts, Web-hosting outfit McColo is responsible for enabling the broadcast of more than 75 percent of all spam globally. Its client list is a rogues gallery of bad-guy syndicates involved in everything from botnets to counterfeit pharmaceuticals and kiddie porn. So how is it that MoColo’s ISPs, Hurricane Electric and Global Crossing, were unaware of that until notified by a Washington Post reporter?]]></description>
			<content:encoded><![CDATA[<blockquote><p>There is damning evidence that this activity has been going on there for way too long, and plenty of people in the security community have gone out of their way to raise awareness about this network, but nobody seems to care.&#8221;</p>
<p>&#8211; Paul Ferguson, a threat researcher with computer security firm Trend Micro</p></blockquote>
<p><img src="http://digitaldaily.allthingsd.com/files/2008/11/dunce.jpg" alt="" title="dunce" width="200" height="282" class="alignright size-full wp-image-8295" /><br />
According to security experts, Web-hosting outfit McColo is responsible for enabling <a href="http://voices.washingtonpost.com/securityfix/2008/11/spam_volumes_drop_by_23_after.html">the broadcast of more than 75 percent of all spam</a> <em>globally</em>. Its client list is a rogues gallery of bad-guy syndicates involved in everything from botnets to counterfeit pharmaceuticals and kiddie porn. So how is it that MoColo&#8217;s ISPs, Hurricane Electric and Global Crossing, were unaware of that until <a href="http://voices.washingtonpost.com/securityfix/2008/11/major_source_of_online_scams_a.html">notified by a Washington Post reporter</a>?</p>
<p>I&#8217;m not sure there&#8217;s a good answer to that question, though it would certainly be interesting to hear one. Almost as interesting as hearing the two ISPs explain away their network traffic from known criminal botnets Mega-D, Srizbi, Pushdo, Rustock and Warezov, all of which have their master servers hosted at McColo.</p>
<p>&#8220;We shut them down,&#8221; Benny Ng, director of marketing for Hurricane Electric, told the Post. &#8220;We looked into it a bit, saw the size and scope of the problem you were reporting and said &#8216;Holy cow!&#8217; Within the hour we had terminated all of our connections to them.&#8221;</p>
<p><em>&#8220;Holy cow?&#8221;</em> More like, &#8220;Holy cow, someone finally noticed we&#8217;re the preferred ISP of a massive criminal syndicate! What do we do?!?&#8221;</p>
<p>&#8220;ISPs can&#8217;t take the &#8216;I see nothing, I hear nothing&#8217; approach to this content,&#8221; <a href="http://www.washingtonpost.com/wp-dyn/content/article/2008/11/12/AR2008111200658_pf.html">said Mark Rasch, a former cyber crime prosecutor for the Justice Department</a>. &#8220;It&#8217;s a little bit like a landlord who owns a building and sees people coming in and out of the apartment complex constantly at all hours and not suspecting their may be drug activity going on. There are certain things that raise red flags, such as the nature, volume, source and destination of the Internet traffic, that can and should raise red flags. And to have so many third parties looking at the volume and content from this Internet provider saying &#8216;This is outrageous,&#8217; clearly the people doing the hosting should know that as well.&#8221;</p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20081112/75-percent-of-all-spam-globally-on-our-backbones-holy-cow/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
	</channel>
</rss>

