<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>AllThingsD &#187; FBI</title>
	<atom:link href="http://allthingsd.com/tag/fbi/feed/" rel="self" type="application/rss+xml" />
	<link>http://allthingsd.com</link>
	<description></description>
	<lastBuildDate>Sun, 27 May 2012 01:54:58 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
<atom:link rel="hub" href="http://pubsubhubbub.appspot.com"/><image>
		  <url>http://allthingsd.com/theme/images/logo-rss.jpg</url>
		  <title>All Things Digital</title>
		  <link>http://allthingsd.com/</link>
		  <width>144</width>
		  <height>22</height>
	</image>		<item>
		<title>Security Start-Up CrowdStrike Hires Former FBI Cyber Cop</title>
		<link>http://allthingsd.com/20120418/security-start-up-crowdstrike-hires-former-fbi-cyber-cop/</link>
		<comments>http://allthingsd.com/20120418/security-start-up-crowdstrike-hires-former-fbi-cyber-cop/#comments</comments>
		<pubDate>Wed, 18 Apr 2012 19:30:13 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[General]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Crowdstrike]]></category>
		<category><![CDATA[Dmitri Alperovitch]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[George Kurtz]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[Industry Moves]]></category>
		<category><![CDATA[Intel]]></category>
		<category><![CDATA[McAfee]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Shawn Henry]]></category>
		<category><![CDATA[Warburg Pincus]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=197819</guid>
		<description><![CDATA[A new security start-up led by two former McAfee executives has tapped Shawn Henry, once the FBI's top cyber cop, to run its service division.]]></description>
			<content:encoded><![CDATA[<p><a href="http://allthingsd.com/20120418/security-start-up-crowdstrike-hires-former-fbi-cyber-cop/henry500/" rel="attachment wp-att-197821"><img src="http://allthingsd.com/files/2012/04/henry500-380x285.jpg" alt="" title="henry500" width="380" height="285" class="alignright size-Featured wp-image-197821" /></a>Crowdstrike, a new computer security start-up launched earlier this year with a <a href="http://www.georgekurtz.com/2012/02/crowdstrike-launches-in-stealth-mode.html">$26 million investment</a> from private equity fund Warburg Pincus, said today it had made its first major management hire.</p>
<p>The company has signed Shawn Henry, the FBI&#8217;s former executive assistant director of the Criminal, Cyber, Response, and Service Branch, as the new president of its services subsidiary, CrowdStrike Services. Henry is a 24-year FBI veteran who led some of the Bureau&#8217;s biggest cybercrime cases.</p>
<p>Crowdstrike was launched by two veterans of McAfee, the security software concern that&#8217;s now a unit of chip giant Intel: George Kurtz, McAfee&#8217;s former CTO, and Dmitri Alperovitch, its former Vice President of Threat Research.</p>
<p>Not a great deal has yet been disclosed about Crowdstrike&#8217;s approach to security, but in the February 22 blog post announcing the launch of the company, Kurtz explained that, having seen the results of investigations into several high-profile cyber attacks, the current state of security practice is akin to the old French <a href="http://en.wikipedia.org/wiki/Maginot_Line">Maginot Line</a> that was intended to keep out the Germans. </p>
<p>Kurtz argued that once you know your enemy &#8212; the party that&#8217;s attacking you &#8212; the key to success in stopping their attacks on your digital assets is to raise the cost of the human-powered portions of their attacks. &#8220;The only way to accomplish that is by forcing them to change the way they conduct the human-led parts of their intrusions, such as reconnaissance, lateral movement, identification of valuable assets, and exfiltration,&#8221; Kurtz wrote. </p>
<p>Henry did a short video announcing his move, and I embedded it below.</p>
<p><iframe width="560" height="315" src="http://www.youtube.com/embed/4JMgbMtpJjA" frameborder="0" allowfullscreen></iframe></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20120418/security-start-up-crowdstrike-hires-former-fbi-cyber-cop/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>U.S. Outgunned in Hacker War</title>
		<link>http://allthingsd.com/20120327/u-s-outgunned-in-hacker-war/</link>
		<comments>http://allthingsd.com/20120327/u-s-outgunned-in-hacker-war/#comments</comments>
		<pubDate>Wed, 28 Mar 2012 01:40:07 +0000</pubDate>
		<dc:creator>Devlin Barrett</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[cybercrime]]></category>
		<category><![CDATA[Devlin Barrett]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[Shawn Henry]]></category>
		<category><![CDATA[The Wall Street Journal]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=190668</guid>
		<description><![CDATA[The Federal Bureau of Investigation's top cyber cop offered a grim appraisal of the nation's efforts to keep computer hackers from plundering corporate data networks: "We're not winning," he said.]]></description>
			<content:encoded><![CDATA[<p>The Federal Bureau of Investigation&#8217;s top cyber cop offered a grim appraisal of the nation&#8217;s efforts to keep computer hackers from plundering corporate data networks: &#8220;We&#8217;re not winning,&#8221; he said.</p>
<p>Shawn Henry, who is preparing to leave the FBI after more than two decades with the bureau, said in an interview that the current public and private approach to fending off hackers is &#8220;unsustainable.&#8221; Computer criminals are simply too talented and defensive measures too weak to stop them, he said.</p>
<p><a href="http://online.wsj.com/article/SB10001424052702304177104577307773326180032.html">Read the rest of this post on the original site »</a></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20120327/u-s-outgunned-in-hacker-war/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>FBI's "Sabu" Hacker Was a Model Informant</title>
		<link>http://allthingsd.com/20120309/fbis-sabu-hacker-was-a-model-informant/</link>
		<comments>http://allthingsd.com/20120309/fbis-sabu-hacker-was-a-model-informant/#comments</comments>
		<pubDate>Fri, 09 Mar 2012 08:06:16 +0000</pubDate>
		<dc:creator>Chad Bray</dc:creator>
				<category><![CDATA[General]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[Chad Bray]]></category>
		<category><![CDATA[cyber crime]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[Hector Xavier Monsegur]]></category>
		<category><![CDATA[investigation]]></category>
		<category><![CDATA[LulzSec]]></category>
		<category><![CDATA[Sabu]]></category>
		<category><![CDATA[The Wall Street Journal]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=182248</guid>
		<description><![CDATA[As soon as he was caught, an influential computer hacker agreed to become a government informant and "literally worked around the clock" to help federal agents nab an elusive collective of alleged cyber criminals who have launched online attacks against companies, governments and individuals.]]></description>
			<content:encoded><![CDATA[<p>As soon as he was caught, an influential computer hacker agreed to become a government informant and &#8220;literally worked around the clock&#8221; to help federal agents nab an elusive collective of alleged cyber criminals who have launched online attacks against companies, governments and individuals.</p>
<p>The new details, revealed in court documents made public on Thursday, show how quickly investigators were able to turn 28-year-old Hector Xavier Monsegur against his fellow alleged hackers.</p>
<p><a href="http://online.wsj.com/article/SB10001424052970204603004577269844134620160.html">Read the rest of this post on the original site »</a></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20120309/fbis-sabu-hacker-was-a-model-informant/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Not Lulzing Anymore: Five Hackers Charged in U.S., U.K. and Ireland</title>
		<link>http://allthingsd.com/20120306/not-lulzing-anymore-five-hackers-charged-in-us-uk-and-ireland/</link>
		<comments>http://allthingsd.com/20120306/not-lulzing-anymore-five-hackers-charged-in-us-uk-and-ireland/#comments</comments>
		<pubDate>Tue, 06 Mar 2012 14:21:25 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[General]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[computer crime]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[LulzSec]]></category>
		<category><![CDATA[PlayStation]]></category>
		<category><![CDATA[Sony]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=180859</guid>
		<description><![CDATA[Five people on two continents are charged as being members of the LulzSec hacking troupe that caused so much mayhem last summer. They are alleged to have been turned in by one of their own.]]></description>
			<content:encoded><![CDATA[<p><img src="http://allthingsd.com/files/2012/03/lulz.jpg" alt="" title="lulz" width="380" height="285" class="align right size-full wp-image-181028" />Well, it finally happened: The hacking troupe variously known as LulzSec and Anonymous appears to have been beheaded. <a href="http://www.foxnews.com/scitech/2012/03/06/hacking-group-lulzsec-swept-up-by-law-enforcement/">Fox News is reporting</a> that five people who function as the group&#8217;s leaders have been arrested in the U.S., the U.K. and Ireland.</p>
<p>I&#8217;m working on getting copies of the criminal complaints, and will add them here when I do, but here&#8217;s the rundown: It looks like one of the group&#8217;s insiders got caught and probably made some kind of misstep in covering his tracks, and then worked secretly with the government to inform on other members. This is <a href="http://allthingsd.com/20110606/no-lulzsec-hackers-have-been-arrested-at-least-not-yet/">exactly what I said</a> was likely to happen in this case, way back in June.</p>
<p>According to Fox, the one who turned is a New Yorker named Hector Xavier Monsegur, who worked under the handle Sabu. He&#8217;s 28 years old and the father of two, and lives on the Lower East Side of Manhattan. This is his <a href="https://twitter.com/#!/anonymousabu">Twitter feed</a>. He&#8217;s been a cooperating witness since June, which coincides nicely with the moment when the first rumors started to emerge that the FBI had penetrated the group.</p>
<p>Fox says that according to documents that will be unsealed in a New York federal court today, Monsegur pleaded guilty in August to several hacking-related crimes. His cooperation led to charges against five more people in Chicago, the U.K. and Ireland. Among them is Jake Davis, the 18-year-old resident of the Shetland Islands, who went by the handle Topiary, and whom police in the U.K. <a href="http://allthingsd.com/20110801/uk-police-say-this-is-the-face-of-lulzsec-hacker-known-as-topiary/">collared on Aug. 1</a>.</p>
<p>The other four are Ryan Ackroyd, who went under the handle &#8220;Kayla.&#8221; He&#8217;s a Londoner. Two people from Ireland were also charged: Darren Martyn, whose handle was &#8220;pwnsauce,&#8221; and Donncha O’Cearrbhail, who called himself &#8220;palladium.&#8221; Jeremy Hammond of Chicago went by the handle &#8220;Anarchaos.&#8221;</p>
<p>The news makes the following tweet by Monsegur, a.k.a. Sabu, seem sort of ironic. Among his final tweets, before word emerged that he had helped turn in his comrades, were several railing against informants and other &#8220;cowards.&#8221; Clearly, he was keeping up a brave public face:</p>
<p><!-- tweet id : 176683332988452865 --><br />
<style type="text/css">#bbpBox_176683332988452865 a { text-decoration:none; color:#0084B4; }#bbpBox_176683332988452865 a:hover { text-decoration:underline; }</style>
<div id="bbpBox_176683332988452865" class="bbpBox" style="padding:20px; margin:5px 0; background-color:#C0DEED; background-image:url(http://a0.twimg.com/profile_background_images/290810645/tTxe9h.jpg);">
<div style="background:#fff; padding:10px; margin:0; min-height:48px; color:#333333; -moz-border-radius:5px; -webkit-border-radius:5px;"><span style="width:100%; font-size:18px; line-height:22px;">Without informants or companies bending over+giving up their customer data the feds would be further behind than they are now. Ride up.</span>
<div class="bbp-actions" style="font-size:12px; width:100%; padding:5px 0; margin:0 0 10px 0; border-bottom:1px solid #e6e6e6;"><img align="middle" src="http://allthingsd.com/wp-content/plugins/twitter-blackbird-pie//images/bird.png" /><a title="tweeted on March 5, 2012 7:59 am" href="http://twitter.com/#!/anonymouSabu/status/176683332988452865" target="_blank">March 5, 2012 7:59 am</a> via <a href="http://blackberry.com/twitter" rel="nofollow" target="blank">Twitter for BlackBerry®</a><a href="https://twitter.com/intent/tweet?in_reply_to=176683332988452865" class="bbp-action bbp-reply-action" title="Reply"><span><em style="margin-left: 1em;"></em><strong>Reply</strong></span></a><a href="https://twitter.com/intent/retweet?tweet_id=176683332988452865" class="bbp-action bbp-retweet-action" title="Retweet"><span><em style="margin-left: 1em;"></em><strong>Retweet</strong></span></a><a href="https://twitter.com/intent/favorite?tweet_id=176683332988452865" class="bbp-action bbp-favorite-action" title="Favorite"><span><em style="margin-left: 1em;"></em><strong>Favorite</strong></span></a></div>
<div style="float:left; padding:0; margin:0"><a href="http://twitter.com/intent/user?screen_name=anonymouSabu"><img style="width:48px; height:48px; padding-right:7px; border:none; background:none; margin:0" src="http://a0.twimg.com/profile_images/1728484932/shirt01_normal.gif" /></a></div>
<div style="float:left; padding:0; margin:0"><a style="font-weight:bold" href="http://twitter.com/intent/user?screen_name=anonymouSabu">@anonymouSabu</a>
<div style="margin:0; padding-top:2px">The Real Sabu</div>
</div>
<div style="clear:both"></div>
</div>
</div>
<p><!-- end of tweet --></p>
<p>Anonymous, the wider hacker group with which LulzSec teamed up last year, was quick to urge its followers to block Sabu&#8217;s Twitter account.</p>
<p><!-- tweet id : 177085815682379777 --><br />
<style type="text/css">#bbpBox_177085815682379777 a { text-decoration:none; color:#009999; }#bbpBox_177085815682379777 a:hover { text-decoration:underline; }</style>
<div id="bbpBox_177085815682379777" class="bbpBox" style="padding:20px; margin:5px 0; background-color:#131516; background-image:url(http://a0.twimg.com/images/themes/theme14/bg.gif);">
<div style="background:#fff; padding:10px; margin:0; min-height:48px; color:#333333; -moz-border-radius:5px; -webkit-border-radius:5px;"><span style="width:100%; font-size:18px; line-height:22px;">@<a href="http://twitter.com/intent/user?screen_name=anonymouSabu" class="twitter-action">anonymouSabu</a> is now controlled by feds. We have blocked the account and we suggest you do as well. <a href="http://twitter.com/search?q=%23BlockAnonymouSabu" title="#BlockAnonymouSabu">#BlockAnonymouSabu</a></span>
<div class="bbp-actions" style="font-size:12px; width:100%; padding:5px 0; margin:0 0 10px 0; border-bottom:1px solid #e6e6e6;"><img align="middle" src="http://allthingsd.com/wp-content/plugins/twitter-blackbird-pie//images/bird.png" /><a title="tweeted on March 6, 2012 10:38 am" href="http://twitter.com/#!/anonops/status/177085815682379777" target="_blank">March 6, 2012 10:38 am</a> via <a href="http://www.tweetdeck.com" rel="nofollow" target="blank">TweetDeck</a><a href="https://twitter.com/intent/tweet?in_reply_to=177085815682379777" class="bbp-action bbp-reply-action" title="Reply"><span><em style="margin-left: 1em;"></em><strong>Reply</strong></span></a><a href="https://twitter.com/intent/retweet?tweet_id=177085815682379777" class="bbp-action bbp-retweet-action" title="Retweet"><span><em style="margin-left: 1em;"></em><strong>Retweet</strong></span></a><a href="https://twitter.com/intent/favorite?tweet_id=177085815682379777" class="bbp-action bbp-favorite-action" title="Favorite"><span><em style="margin-left: 1em;"></em><strong>Favorite</strong></span></a></div>
<div style="float:left; padding:0; margin:0"><a href="http://twitter.com/intent/user?screen_name=anonops"><img style="width:48px; height:48px; padding-right:7px; border:none; background:none; margin:0" src="http://a0.twimg.com/profile_images/1852746447/anonops_normal.png" /></a></div>
<div style="float:left; padding:0; margin:0"><a style="font-weight:bold" href="http://twitter.com/intent/user?screen_name=anonops">@anonops</a>
<div style="margin:0; padding-top:2px">AnonOps</div>
</div>
<div style="clear:both"></div>
</div>
</div>
<p><!-- end of tweet --></p>
<p>Hammond, the one in Chicago, was said to be the one who led the <a href="http://allthingsd.com/20111227/stratfor-hack-damage-report-50000-credit-cards-44000-passwords/">hack against the private intelligence company Stratfor</a>. He was profiled by Chicago Magazine in 2007 and portrayed as something of a <a href="http://www.chicagomag.com/Chicago-Magazine/July-2007/The-Hacktivist/">digital Robin Hood</a>.</p>
<p>Ackroyd is said to be the one who found the weaknesses in the servers of the U.S. Senate that led to its <a href="http://allthingsd.com/20110613/lulzsec-strikes-again-hits-bethesda-softworks-and-u-s-senate/">being attacked in June</a>. Hacking federal computer systems is considered a serious crime in the U.S., but is something that LulzSec said, in the posting to Pastebin at the time, that they carried out &#8220;just for kicks.&#8221;</p>
<p><strong>Update:</strong> So the US Attorney&#8217;s Office in New York has issued its press release confirming most of what Fox reported. Here it is.</p>
<blockquote class="memo"><p>Six Hackers in the United States and Abroad Charged for Crimes Affecting Over One Million Victims</p>
<p>Four Principal Members of “Anonymous” and “LulzSec” Charged with Computer Hacking and Fifth Member Pleads Guilty; “AntiSec” Member also Charged with Stealing Confidential Information from Approximately 860,000 Clients and Subscribers of Stratfor</p>
<p>U.S. Attorney’s Office March 06, 2012 	</p>
<p>Five computer hackers in the United States and abroad were charged today, and a sixth pled guilty, for computer hacking and other crimes. The six hackers identified themselves as aligned with the group Anonymous, which is a loose confederation of computer hackers and others, and/or offshoot groups related to Anonymous, including “Internet Feds,” “LulzSec,” and “AntiSec.”</p>
<p>RYAN ACKROYD, a/k/a “kayla,” a/k/a “lol,” a/k/a “lolspoon”; JAKE DAVIS, a/k/a “topiary,” a/k/a “atopiary”; DARREN MARTYN, a/k/a “pwnsauce,” a/k/a “raepsauce,” a/k/a “networkkitten”; and DONNCHA O’CEARRBHAIL, a/k/a “palladium,” who identified themselves as members of Anonymous, Internet Feds, and/or LulzSec, were charged in an indictment unsealed today in Manhattan federal court with computer hacking conspiracy involving the hacks of Fox Broadcasting Company, Sony Pictures Entertainment, and the Public Broadcasting Service (“PBS”). O’CEARRBHAIL is also charged in a separate criminal complaint with intentionally disclosing an unlawfully intercepted wire communication.</p>
<p>HECTOR XAVIER MONSEGUR, a/k/a “Sabu,” a/k/a “Xavier DeLeon,” a/k/a “Leon,” who also identified himself as a member of Anonymous, Internet Feds, and LulzSec, pled guilty on August 15, 2011 in U.S. District Court to a 12-count information charging him with computer hacking conspiracies and other crimes. MONSEGUR’S information and guilty plea were unsealed today. The crimes to which MONSEGUR pled guilty include computer hacking conspiracy charges initially filed in the Southern District of New York. He also pled guilty to the following charges: a substantive hacking charge initially filed by the U.S. Attorney’s Office in the Eastern District of California related to the hacks of HBGary, Inc. and HBGary Federal LLC; a substantive hacking charge initially filed by the U.S. Attorney’s Office in the Central District of California related to the hack of Sony Pictures Entertainment and Fox Broadcasting Company; a substantive hacking charge initially filed by the U.S. Attorney’s Office in the Northern District of Georgia related to the hack of Infragard Members Alliance; and a substantive hacking charge initially filed by the U.S. Attorney’s Office in the Eastern District of Virginia related to the hack of PBS, all of which were transferred to the Southern District of New York, pursuant to Rule 20 of the Federal Rules of Criminal Procedure, in coordination with the Computer Crime and Intellectual Property Section (“CCIPS”) in the Justice Department’s Criminal Division.</p>
<p>Late yesterday, JEREMY HAMMOND, a/k/a “Anarchaos,” a/k/a “sup_g,” a/k/a “burn,” a/k/a “yohoho,” a/k/a “POW,” a/k/a “tylerknowsthis,” a/k/a “crediblethreat,” who identified himself as a member of AntiSec, was arrested in Chicago, Illinois and charged in a criminal complaint with crimes relating to the December 2011 hack of Strategic Forecasting, Inc. (“Stratfor”), a global intelligence firm in Austin, Texas, which may have affected approximately 860,000 victims. In publicizing the Stratfor hack, members of AntiSec reaffirmed their connection to Anonymous and other related groups, including LulzSec. For example, AntiSec members published a document with links to the stolen Stratfor data titled, “Anonymous Lulzxmas rooting you proud” on a file sharing website.</p>
<p>The following allegations are based on the indictment, the information, the complaints, and statements made at MONSEGUR’s guilty plea:</p>
<p>Hacks by Anonymous, Internet Feds, and LulzSec</p>
<p>Since at least 2008, Anonymous has been a loose confederation of computer hackers and others. MONSEGUR and other members of Anonymous took responsibility for a number of cyber attacks between December 2010 and June 2011, including denial of service (“DoS”) attacks against the websites of Visa, MasterCard, and PayPal, as retaliation for the refusal of these companies to process donations to Wikileaks, as well as hacks or DoS attacks on foreign government computer systems.</p>
<p>Between December 2010 and May 2011, members of Internet Feds similarly waged a deliberate campaign of online destruction, intimidation, and criminality. Members of Internet Feds engaged in a series of cyber attacks that included breaking into computer systems, stealing confidential information, publicly disclosing stolen confidential information, hijacking victims’ e-mail and Twitter accounts, and defacing victims’ Internet websites. Specifically, ACKROYD, DAVIS, MARTYN, O’CEARRBHAIL, and MONSEGUR, as members of InternetFeds, conspired to commit computer hacks including: the hack of the website of Fine Gael, a political party in Ireland; the hack of computer systems used by security firms HBGary, Inc. and its affiliate HBGary Federal, LLC, from which Internet Feds stole confidential data pertaining to 80,000 user accounts; and the hack of computer systems used by Fox Broadcasting Company, from which Internet Feds stole confidential data relating to more than 70,000 potential contestants on “X-Factor,” a Fox television show.</p>
<p>In May 2011, following the publicity that they had generated as a result of their hacks, including those of Fine Gael and HBGary, ACKROYD, DAVIS, MARTYN, and MONSEGUR formed and became the principal members of a new hacking group called “Lulz Security” or “LulzSec.” Like Internet Feds, LulzSec undertook a campaign of malicious cyber assaults on the websites and computer systems of various business and governmental entities in the United States and throughout the world. Specifically, ACKROYD, DAVIS, MARTYN, and MONSEGUR, as members of LulzSec, conspired to commit computer hacks including the hacks of computer systems used by the PBS, in retaliation for what LulzSec perceived to be unfavorable news coverage in an episode of the news program “Frontline”; Sony Pictures Entertainment, in which LulzSec stole confidential data concerning approximately 100,000 users of Sony’s website; and Bethesda Softworks, a video game company based in Maryland, in which LulzSec stole confidential information for approximately 200,000 users of Bethesda’s website.</p>
<p>The Stratfor Hack</p>
<p>In December 2011, HAMMOND conspired to hack into computer systems used by Stratfor, a private firm that provides governments and others with independent geopolitical analysis. HAMMOND and his co-conspirators, as members of AntiSec, stole confidential information from those computer systems, including Stratfor employees’ e-mails as well as account information for approximately 860,000 Stratfor subscribers or clients. HAMMOND and his co-conspirators stole credit card information for approximately 60,000 credit card users and used some of the stolen data to make unauthorized charges exceeding $700,000. HAMMOND and his co-conspirators also publicly disclosed some of the confidential information they had stolen.</p>
<p>The Hack of International Law Enforcement</p>
<p>In January 2012, O’CEARRBHAIL hacked into the personal e-mail account of an officer with Ireland’s national police service, the An Garda Siochana (the “Garda”). Because the Garda officer had forwarded work e-mails to a personal account, O’CEARRBHAIL learned information about how to access a conference call that the Garda, the FBI, and other law enforcement agencies were planning to hold on January 17, 2012 regarding international investigations of Anonymous and other hacking groups. O’CEARRBHAIL then accessed and secretly recorded the January 17 international law enforcement conference call, and then disseminated the illegally-obtained recording to others.</p>
<p>***</p>
<p>MONSEGUR, 28, of New York, New York, pled guilty to three counts of computer hacking conspiracy, five counts of computer hacking, one count of computer hacking in furtherance of fraud, one count of conspiracy to commit access device fraud, one count of conspiracy to commit bank fraud, and one count of aggravated identity theft. He faces a maximum sentence of 124 years and six months in prison.</p>
<p>ACKROYD, 23, of Doncaster, United Kingdom; DAVIS, 29, of Lerwick, Shetland Islands, United Kingdom; and MARTYN, 25, of Galway, Ireland, each are charged with two counts of computer hacking conspiracy. Each conspiracy count carries a maximum sentence of 10 years in prison.</p>
<p>O’CEARRBHAIL, 19, of Birr, Ireland, is charged in the indictment with one count of computer hacking conspiracy, for which he faces 10 years in prison. He is also charged in the complaint with one count of intentionally disclosing an unlawfully intercepted wire communication, for which he faces a maximum sentence of five years in prison.</p>
<p>HAMMOND, 27, of Chicago, Illinois, is charged with one count of computer hacking conspiracy, one count of computer hacking, and one count of conspiracy to commit access device fraud. Each count carries a maximum sentence of 10 years in prison.</p>
<p>DAVIS is separately facing criminal charges in the United Kingdom, which remain pending, and ACKROYD is being interviewed today by the Police Central e-crime Unit in the United Kingdom. O’CEARRBHAIL was arrested today by the Garda.</p>
<p>The case is being prosecuted by the U.S. Attorney’s Office for the Southern District of New York. The investigation was initiated and led by the FBI, and its New York Cyber Crime Task Force, which is a federal, state, and local law enforcement task force combating cybercrime, with assistance from the PCeU; a unit of New Scotland Yard’s Specialist Crime Directorate, SCD6; the Garda; the Criminal Division’s CCIPS; and the U.S. Attorneys’ Offices for the Eastern District of California, the Central District of California, the Northern District of Georgia, and the Eastern District of Virginia; as well as the Criminal Division’s Office of International Affairs.</p>
<p>The charges contained in the indictment and complaints are merely accusations, and the defendants are presumed innocent unless and until proven guilty.</p></blockquote>
<p>And here&#8217;s the initial indictment on Hector Monsegur, initially filed in the US District Court for the Southern District of New York in August of last year. I&#8217;m gathering up documents on the other people charged in this and will share it as I get it.</p>
<p><a title="View Monsegur on Scribd" href="http://www.scribd.com/doc/84148479/Monsegur" style="margin: 12px auto 6px auto; font-family: Helvetica,Arial,Sans-serif; font-style: normal; font-variant: normal; font-weight: normal; font-size: 14px; line-height: normal; font-size-adjust: none; font-stretch: normal; -x-system-font: none; display: block; text-decoration: underline;">Monsegur</a><iframe class="scribd_iframe_embed" src="http://www.scribd.com/embeds/84148479/content?start_page=1&#038;view_mode=list&#038;access_key=key-1p9z0laafqzn0jrz0gg" data-auto-height="true" data-aspect-ratio="0.772727272727273" scrolling="no" id="doc_3469" width="100%" height="600" frameborder="0"></iframe></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20120306/not-lulzing-anymore-five-hackers-charged-in-us-uk-and-ireland/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>FBI File Shocker: Steve Jobs Was a Willful, Mercurial Ex-Hippie and Computer Genius</title>
		<link>http://allthingsd.com/20120209/fbi-file-shocker-steve-jobs-was-a-willful-mercurial-ex-hippie-and-computer-genius/</link>
		<comments>http://allthingsd.com/20120209/fbi-file-shocker-steve-jobs-was-a-willful-mercurial-ex-hippie-and-computer-genius/#comments</comments>
		<pubDate>Thu, 09 Feb 2012 17:07:16 +0000</pubDate>
		<dc:creator>John Paczkowski</dc:creator>
				<category><![CDATA[Media]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[background investigation]]></category>
		<category><![CDATA[dossier]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[Steve Jobs]]></category>
		<category><![CDATA[top-secret]]></category>
		<category><![CDATA[Walter Isaacson]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=173102</guid>
		<description><![CDATA[What did the FBI have on Steve Jobs? Heh.]]></description>
			<content:encoded><![CDATA[<p><a href="http://allthingsd.com/files/2012/02/Steve_Jobs_Hippie.png"><img src="http://allthingsd.com/files/2012/02/Steve_Jobs_Hippie-380x254.png" alt="" title="Steve_Jobs_Hippie" width="380" height="254" class="alignright size-medium wp-image-173123" /></a>What did the FBI have on Steve Jobs?  Not much, according to its investigation of the late Apple founder and CEO. </p>
<p>The agency <a href="http://vault.fbi.gov/steve-jobs">just released its file on Jobs</a>, compiled during a background check conducted in the 1990s, when Jobs was being considered for a spot on a White House council on exports. And, with the exception of a noteworthy nugget or two, it&#8217;s about as mundane as they come.</p>
<p>If you&#8217;ve read Walter Isaacson&#8217;s biography of Jobs &#8212; or, frankly, any newspaper obituary of the man &#8212; then you&#8217;re already as well-informed on his life and peccadilloes as the FBI.</p>
<p>Put it this way: Among the highlights of the agency&#8217;s 191-page dossier is the observation that Jobs was a former hippie: “During the late 1960s and early 1970s, Mr. Jobs may have experimented with illegal drugs, having come from that generation.&#8221;</p>
<p>A few others:</p>
<ul>
<li>Jobs had a tendency to &#8220;twist the truth and distort reality in order to achieve his goals.&#8221;</li>
<li>Jobs underwent a &#8220;change in philosophy by participating in eastern and/or Indian mysticism and religion. This change apparently influenced his personal life for the better.”</li>
<li>Jobs was &#8220;strongwilled, stubborn, hardworking and driven, which &#8230; is why he is so successful.&#8221;</li>
<li>Jobs liked to get his own way.</li>
<li>Jobs was not a member of the Communist party.</li>
<li>Jobs did &#8220;an outstanding job in the computer industry.&#8221;</li>
</ul>
<p>Really, the FBI&#8217;s only discovery of note was that Jobs was inexplicably granted Top Secret security clearance by the Defense Industrial Security Clearance Office between 1988 and 1990. Oddly, those credentials were issued by Pixar, which may have done some government work around that time. </p>
<p>Beyond that? Not much. Had Isaacson written his biography of Jobs a few decades earlier, he would have saved the FBI a hell of a lot of work.</p>
<p>Below, the report in its entirety:</p>
<p><a title="View Jobs on Scribd" href="http://www.scribd.com/doc/81068196/Jobs" style="margin: 12px auto 6px auto; font-family: Helvetica,Arial,Sans-serif; font-style: normal; font-variant: normal; font-weight: normal; font-size: 14px; line-height: normal; font-size-adjust: none; font-stretch: normal; -x-system-font: none; display: block; text-decoration: underline;">Jobs</a><iframe class="scribd_iframe_embed" src="http://www.scribd.com/embeds/81068196/content?start_page=1&#038;view_mode=list&#038;access_key=key-76izcbm39z9u4rbln4z" data-auto-height="true" data-aspect-ratio="0.77370417193426" scrolling="no" id="doc_92134" width="100%" height="600" frameborder="0"></iframe><script type="text/javascript">(function() { var scribd = document.createElement("script"); scribd.type = "text/javascript"; scribd.async = true; scribd.src = "http://www.scribd.com/javascripts/embed_code/inject.js"; var s = document.getElementsByTagName("script")[0]; s.parentNode.insertBefore(scribd, s); })();</script></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20120209/fbi-file-shocker-steve-jobs-was-a-willful-mercurial-ex-hippie-and-computer-genius/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>With Burn Note, Self-Destructing Emails Vanish After They’ve Been Read</title>
		<link>http://allthingsd.com/20120131/with-burn-note-self-destructing-emails-vanish-after-theyve-been-read/</link>
		<comments>http://allthingsd.com/20120131/with-burn-note-self-destructing-emails-vanish-after-theyve-been-read/#comments</comments>
		<pubDate>Tue, 31 Jan 2012 18:03:05 +0000</pubDate>
		<dc:creator>Lauren Goode</dc:creator>
				<category><![CDATA[Commerce]]></category>
		<category><![CDATA[Media]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Burn Note]]></category>
		<category><![CDATA[communications]]></category>
		<category><![CDATA[court]]></category>
		<category><![CDATA[data]]></category>
		<category><![CDATA[digital]]></category>
		<category><![CDATA[Drop.io]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[Hushmail]]></category>
		<category><![CDATA[Jacob Robbins]]></category>
		<category><![CDATA[law enforcement]]></category>
		<category><![CDATA[legal]]></category>
		<category><![CDATA[secure]]></category>
		<category><![CDATA[system]]></category>
		<category><![CDATA[Vanish]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=169298</guid>
		<description><![CDATA[A new email service promises to expunge any trace of email exchanges after a note has been read. But, in the age of digital data, is anything ever really erased?]]></description>
			<content:encoded><![CDATA[<p>Last year, New York-based entrepreneur Jacob Robbins was working on a project with someone who lived on the West Coast. He needed to share a password with his collaborator via email, but was suddenly hesitant to send the sensitive information.</p>
<p>&#8220;I didn&#8217;t want the password to live in an email somewhere. I started thinking, what if there was something that would allow me to destroy the email?&#8221; Robbins said in an interview.</p>
<p>The thought stayed with him, and by summer, Robbins had dropped the other project to turn his full attention to building a service for hyper-secure email exchanges. He named the service Burn Note. <a href="http://allthingsd.com/files/2012/01/BurnNote1.png"><img src="http://allthingsd.com/files/2012/01/BurnNote1-380x272.png" alt="" title="BurnNote1" width="380" height="272" class="alignright size-medium wp-image-169436" /></a></p>
<p><a href="http://burnnote.com">Burn Note</a>, which opens up to the public today, allows the sender of an email to set a time frame in which the receiver can read an email before the email disappears.</p>
<p>At that point, the email no longer exists &#8212; anywhere.</p>
<p>Burn Note&#8217;s Web site says the service uses no binary logging, which means there are no standby servers, or backup copies of emails. The company uses a storage engine that has no journaling capabilities, and an underlying file system that logs metadata but not the content of the notes themselves.</p>
<p>While grabbing an image of the email might seem like a simple workaround, Robbins said he has introduced two methods to the service that make it extremely difficult for recipients to quickly copy the text of an email for posterity. Burn Notes can include Web links, but can&#8217;t send attached files, though Robbins has said attachments are in the works.</p>
<p>&#8220;I think there are a lot of legitimate uses for why people would want an off-the-record conversation,&#8221; Robbins said. &#8220;The message goes away, but it&#8217;s still been communicated to the recipient, which is the point.&#8221;</p>
<p>Robbins most recently served as the head of software development for <a href="http://allthingsd.com/20101102/mark-zuckerberg-really-really-wanted-to-work-with-sam-lessin/">Facebook-acquired Drop.io</a>; he said the Burn Note service was partly inspired by that cloud-storage service. &#8220;There was a feature that we considered, but ultimately didn&#8217;t turn on, where a file could have a certain number of views before it self-destructed,&#8221; Robbins said.</p>
<p>While there currently aren&#8217;t any mobile apps for Burn Note, Robbins said that it&#8217;s a mobile-optimized Web site, so it can be accessed from a phone with a Web browser.</p>
<p>Highly encrypted or &#8220;vanishing&#8221; email services aren&#8217;t new. In 1999, Canada-based Hush Communications launched Hushmail, a free Web-based email system for individuals and businesses that sent PGP &#8212; Pretty Good Privacy &#8212; encrypted emails. As Wired <a href="http://www.wired.com/threatlevel/2007/11/encrypted-e-mai/">reported</a>, it was originally stated that &#8220;uniquely-coded&#8221; Hushmails were so encrypted that not even Hush employees with access to servers could read the emails. </p>
<p>But in 2007, Hush <a href="http://www.wired.com/threatlevel/2007/11/encrypted-e-mai/">turned over</a> a dozen CDs of emails, following a court order obtained through a mutual assistance treaty between the U.S. and Canada. The evidence was requested as part of a U.S. federal prosecution of alleged steroid dealers. The company subsequently acknowledged that Hushmails could, in some instances, be decrypted.</p>
<p>In 2009, the New York Times wrote about a group of scientists at the University of Washington who developed <a href="http://www.nytimes.com/2009/07/21/science/21crypto.html">software that would make email messages disappear after a period of time</a>. The software, called Vanish, would rely on a key-based encryption system that differed from the usual key cryptography used in digital communications, by making the &#8220;keys&#8221; erode over time.</p>
<p>A couple of months after that, &#8220;Freedom to Tinker,&#8221; which is hosted by Princeton&#8217;s <a href="https://citp.princeton.edu/">Center for Information Technology Policy</a>, released a <a href="https://freedom-to-tinker.com/blog/felten/breaking-vanish-story-security-research-action">paper</a> detailing a series of experimental attacks against the Vanish prototype. The paper stated that Vanish should be considered too risky to rely on.</p>
<p>On a <a href="http://vanish.cs.washington.edu/index.html">Web site for Vanish</a>, the group acknowledged that the implementation on which Vanish was based was not adequately protected against attacks, and says it&#8217;s &#8220;investigating new directions and architectures for self-destructing data.&#8221;</p>
<p>Burn Note&#8217;s Robbins says Hushmail&#8217;s service and the Vanish project are different from Burn Note because those products rely on encryption keys, while Burn Note is effectively reengineering the default settings of computer systems and server systems so that nothing at all is saved. </p>
<p>When asked what Burn Note&#8217;s protocol would be for handling requests from law-enforcement officials for email exchanges, Robbins replied, &#8220;Burn Notes aren&#8217;t emails.&#8221;</p>
<p>He went on to say that the exchange of Burn Notes is more comparable to phone calls in that, unless they&#8217;re recorded, the exchange itself can&#8217;t be retrieved.</p>
<p><a href="http://allthingsd.com/files/2012/01/BurnNoteGone.png"><img src="http://allthingsd.com/files/2012/01/BurnNoteGone-380x225.png" alt="" title="BurnNoteGone" width="380" height="225" class="alignleft size-medium wp-image-169439" /></a></p>
<p>But Burn Note &#8212; unlike phone companies &#8212; doesn&#8217;t keep a log of who is communicating with whom. Robbins said the company plans to compile and study anonymous usage data, but will keep two separate logs &#8212; incoming messages and outgoing messages &#8212; rather than a log of messages exchanged between users. According to the company&#8217;s explanation of its <a href="https://burnnote.com/technical">technical procedures</a>, even the time stamp on the message is anonymized: Burn Note rounds the times to the nearest hour so that timing cannot be used as a unique identifier.</p>
<p>&#8220;A lot of services launch to acclaim that they&#8217;re going make digital communications disappear,&#8221; said Paul Ohm, an associate professor of law focused on information privacy at the University of Colorado Law School. &#8220;But they sometimes become that place where bad people go to exchange information, or a haven for criminals. In order for this work, you have to stay on the side of legitimacy.&#8221;</p>
<p>&#8220;It&#8217;s never a complete dead end,&#8221; Ohm added. &#8220;There has to be data living somewhere, and there&#8217;s always a way to engineer around these systems.&#8221;</p>
<p>While Burn Note will at first be marketed to the average email user, Robbins said he hopes to attract attention from the enterprise market. &#8220;I think there’s a really interesting set of use cases around banks, especially if it can be made to plug in to existing systems,&#8221; he said. </p>
<p>When asked how Burn Note might comply with the record-keeping obligations of U.S. financial institutions have, Robbins said it would require a case-by-case evaluation.</p>
<p>&#8220;I don&#8217;t have a good answer for that, because it will require review by a legal professional before we can fully work through that type of situation,&#8221; Robbins said. He pointed to the company&#8217;s <a href="https://burnnote.com/privacy">privacy policy</a>, which plainly states: </p>
<p>&#8220;If you have a legal obligation to preserve data, do not use Burn Note.&#8221;</p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20120131/with-burn-note-self-destructing-emails-vanish-after-theyve-been-read/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>FBI Charges Seven With Online Piracy</title>
		<link>http://allthingsd.com/20120119/fbi-charges-seven-with-online-piracy/</link>
		<comments>http://allthingsd.com/20120119/fbi-charges-seven-with-online-piracy/#comments</comments>
		<pubDate>Thu, 19 Jan 2012 20:11:26 +0000</pubDate>
		<dc:creator>Devlin Barrett</dc:creator>
				<category><![CDATA[Media]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[Devlin Barrett]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[Megaupload.com]]></category>
		<category><![CDATA[piracy]]></category>
		<category><![CDATA[pirates]]></category>
		<category><![CDATA[SOPA]]></category>
		<category><![CDATA[The Wall Street Journal]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=165564</guid>
		<description><![CDATA[The Federal Bureau of Investigation shut down Thursday one of the world's most popular file-sharing websites, MegaUpload.com, and announced the arrest of four of the people behind it in a global crackdown against the suspected online pirates.]]></description>
			<content:encoded><![CDATA[<p>The Federal Bureau of Investigation shut down Thursday one of the world&#8217;s most popular file-sharing websites, MegaUpload.com, and announced the arrest of four of the people behind it in a global crackdown against the suspected online pirates.</p>
<p>The move came a day after Washington lawmakers were besieged by complaints about legislation designed to crack down on the online sharing of pirated copies of music, movies and other material, people familiar with the matter said.</p>
<p><a href="http://online.wsj.com/article/SB10001424052970204616504577171060611948408.html">Read the rest of this post on the original site »</a></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20120119/fbi-charges-seven-with-online-piracy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>"Stingray" Phone Tracker Fuels Constitutional Clash</title>
		<link>http://allthingsd.com/20110922/stingray-phone-tracker-fuels-constitutional-clash/</link>
		<comments>http://allthingsd.com/20110922/stingray-phone-tracker-fuels-constitutional-clash/#comments</comments>
		<pubDate>Thu, 22 Sep 2011 07:00:39 +0000</pubDate>
		<dc:creator>Jennifer Valentino-DeVries</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[Daniel David Ringmaiden]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[Jennifer Valentino-DeVries]]></category>
		<category><![CDATA[the Hacker]]></category>
		<category><![CDATA[The Wall Street Journal]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=123390</guid>
		<description><![CDATA[For more than a year, federal authorities pursued a man they called simply "the Hacker." Only after using a little known cellphone-tracking device -- a stingray -- were they able to zero in on a California home and make the arrest.]]></description>
			<content:encoded><![CDATA[<p>For more than a year, federal authorities pursued a man they called simply &#8220;the Hacker.&#8221; Only after using a little known cellphone-tracking device &#8212; a stingray &#8212; were they able to zero in on a California home and make the arrest.</p>
<p>Stingrays are designed to locate a mobile phone even when it&#8217;s not being used to make a call. The Federal Bureau of Investigation considers the devices to be so critical that it has a policy of deleting the data gathered in their use, mainly to keep suspects in the dark about their capabilities, an FBI official told The Wall Street Journal in response to inquiries.</p>
<p>A stingray&#8217;s role in nabbing the alleged &#8220;Hacker&#8221; &#8212; Daniel David Rigmaiden &#8212; is shaping up as a possible test of the legal standards for using these devices in investigations. The FBI says it obtains appropriate court approval to use the device.</p>
<p><a href="http://online.wsj.com/article/SB10001424053111904194604576583112723197574.html?mod=WSJ_Tech_LEFTTopNews">Read the rest of this post on the original site &#187;</a></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20110922/stingray-phone-tracker-fuels-constitutional-clash/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>U.S. Probes Oracle Dealings</title>
		<link>http://allthingsd.com/20110831/u-s-probes-oracle-dealings/</link>
		<comments>http://allthingsd.com/20110831/u-s-probes-oracle-dealings/#comments</comments>
		<pubDate>Wed, 31 Aug 2011 09:30:27 +0000</pubDate>
		<dc:creator>Joseph Palazzolo and Samuel Rubenfeld</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[bribery]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[investigation]]></category>
		<category><![CDATA[Justice Department]]></category>
		<category><![CDATA[Oracle]]></category>
		<category><![CDATA[Securities and Exchange Commission]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=115548</guid>
		<description><![CDATA[U.S. authorities are investigating whether Oracle Corp., one of the world's largest software companies by sales, violated federal antibribery laws in its dealings abroad, according to people familiar with the matter.]]></description>
			<content:encoded><![CDATA[<p>U.S. authorities are investigating whether Oracle Corp., one of the world&#8217;s largest software companies by sales, violated federal antibribery laws in its dealings abroad, according to people familiar with the matter.</p>
<p>Agents in the Federal Bureau of Investigation&#8217;s Washington field office and fraud prosecutors in the Justice Department&#8217;s Criminal Division are handling a criminal investigation, which has been under way for at least a year, according to people familiar with the matter. Attorneys at the Securities and Exchange Commission are also investigating for possible civil violations, these people said.</p>
<p><a href="http://online.wsj.com/article/SB10001424053111903352704576540841634820096.html">Read the rest of this post on the original site »</a></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20110831/u-s-probes-oracle-dealings/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Anonymous Hacks NATO, Steals Lame Documents</title>
		<link>http://allthingsd.com/20110721/anonymous-hacks-nato-steals-lame-documents/</link>
		<comments>http://allthingsd.com/20110721/anonymous-hacks-nato-steals-lame-documents/#comments</comments>
		<pubDate>Thu, 21 Jul 2011 18:06:11 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[anonymous]]></category>
		<category><![CDATA[cybercrime]]></category>
		<category><![CDATA[cyberwar]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[LulzSec]]></category>
		<category><![CDATA[PDF]]></category>
		<category><![CDATA[PDFCast]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Twitter]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=101249</guid>
		<description><![CDATA[The hacking group Anonymous raised eyebrows today for its "daring hacker raid" on the servers of NATO. What did it take? A bunch of documents that so far seem, well, boring, really.]]></description>
			<content:encoded><![CDATA[<p><a href="http://allthingsd.com/20110721/anonymous-hacks-nato-steals-lame-documents/anon-nato/" rel="attachment wp-att-101250"><img src="http://allthingsd.com/files/2011/07/anon-nato-307x480.png" alt="" title="anon-nato" width="307" height="480" class="alignright size-large wp-image-101250" /></a>Is it finally a cyberwar? Not likely.</p>
<p>The hacking group Anonymous claimed via its Twitter feed to have breached servers belonging to NATO, the North Atlantic Treaty Organization military alliance that has largely been responsible for the military defense of Europe since the end of World War II.</p>
<p>So far, three PDF copies of documents the group claimed to have taken in the attack were circulating on <a href="http://pdfcast.org/">a sharing site devoted to PDF documents</a>. Two were marked &#8220;NATO Restricted&#8221; and appear to have been removed from the PDFCast site.</p>
<p>I haven&#8217;t seen the first two, but the Telegraph <a href="http://www.telegraph.co.uk/technology/news/8652328/Nato-investigates-Anonymous-hacking-claims.html">described one</a> as a working paper on communications systems used by NATO forces in Afghanistan, and was said to include technical and procurement information. A second concerned a plan to outsource communications for NATO forces stationed in Kosovo. If it sounds exciting, then I have some news for you: It&#8217;s not.</p>
<p>&#8220;Restricted&#8221; may sound important. As <a href="http://www.theregister.co.uk/2011/07/21/nato_restricted/">the Register points out</a>, in the taxonomy of document labels, &#8220;Restricted&#8221; is for documents of relatively low importance. Anonymous is crowing like it has just broken into a trove of NATO&#8217;s deepest secrets. It appears instead they&#8217;ve taken some documents relating to relatively mundane workaday operations.</p>
<p>Higher up the scale are documents that get stamped &#8220;Confidential,&#8221; then &#8220;Secret&#8221; and then &#8220;Top Secret.&#8221; </p>
<p>A third document which just emerged via the @AnonymousIRC Twitter feed is a 59-page document concerning NATO security procedures. It is marked &#8220;NATO Unclassified&#8221; which is actually even lower on the totem pole than &#8220;Restricted.&#8221; The only restriction is that they&#8217;re subject to NATO copyright and can only be released with NATO permission. Not that NATO is going to care very much. This very document has been <a href="http://cryptome.org/nato-cm2002-49.htm">floating around since 2006</a>.</p>
<p><!-- tweet id : 94013224856453120 --><br />
<style type="text/css">#bbpBox_94013224856453120 a { text-decoration:none; color:#99001a; }#bbpBox_94013224856453120 a:hover { text-decoration:underline; }</style>
<div id="bbpBox_94013224856453120" class="bbpBox" style="padding:20px; margin:5px 0; background-color:#131516; background-image:url(http://a1.twimg.com/images/themes/theme14/bg.gif);">
<div style="background:#fff; padding:10px; margin:0; min-height:48px; color:#333333; -moz-border-radius:5px; -webkit-border-radius:5px;"><span style="width:100%; font-size:18px; line-height:22px;">We are sitting on about one Gigabyte of data from NATO now, most of which we cannot publish as it would be irresponsible. But Oh NATO&#8230;.</span>
<div class="bbp-actions" style="font-size:12px; width:100%; padding:5px 0; margin:0 0 10px 0; border-bottom:1px solid #e6e6e6;"><img align="middle" src="http://allthingsd.com/wp-content/plugins/twitter-blackbird-pie//images/bird.png" /><a title="tweeted on July 21, 2011 4:57 am" href="http://twitter.com/#!/AnonymousIRC/status/94013224856453120" target="_blank">July 21, 2011 4:57 am</a> via <a href="http://83degrees.com/to/powertwitter" rel="nofollow" target="blank">Power Twitter</a><a href="https://twitter.com/intent/tweet?in_reply_to=94013224856453120" class="bbp-action bbp-reply-action" title="Reply"><span><em style="margin-left: 1em;"></em><strong>Reply</strong></span></a><a href="https://twitter.com/intent/retweet?tweet_id=94013224856453120" class="bbp-action bbp-retweet-action" title="Retweet"><span><em style="margin-left: 1em;"></em><strong>Retweet</strong></span></a><a href="https://twitter.com/intent/favorite?tweet_id=94013224856453120" class="bbp-action bbp-favorite-action" title="Favorite"><span><em style="margin-left: 1em;"></em><strong>Favorite</strong></span></a></div>
<div style="float:left; padding:0; margin:0"><a href="http://twitter.com/intent/user?screen_name=AnonymousIRC"><img style="width:48px; height:48px; padding-right:7px; border:none; background:none; margin:0" src="http://a0.twimg.com/profile_images/1444236954/stache-cut_normal.png" /></a></div>
<div style="float:left; padding:0; margin:0"><a style="font-weight:bold" href="http://twitter.com/intent/user?screen_name=AnonymousIRC">@AnonymousIRC</a>
<div style="margin:0; padding-top:2px">AnonymousIRC</div>
</div>
<div style="clear:both"></div>
</div>
</div>
<p><!-- end of tweet --></p>
<p><!-- tweet id : 94049761161789441 --><br />
<style type="text/css">#bbpBox_94049761161789441 a { text-decoration:none; color:#99001a; }#bbpBox_94049761161789441 a:hover { text-decoration:underline; }</style>
<div id="bbpBox_94049761161789441" class="bbpBox" style="padding:20px; margin:5px 0; background-color:#131516; background-image:url(http://a1.twimg.com/images/themes/theme14/bg.gif);">
<div style="background:#fff; padding:10px; margin:0; min-height:48px; color:#333333; -moz-border-radius:5px; -webkit-border-radius:5px;"><span style="width:100%; font-size:18px; line-height:22px;">Hi NATO. Yes we haz more of your delicious data. You wonder where from? No hints, your turn. You call it war; we laugh at your battleships.</span>
<div class="bbp-actions" style="font-size:12px; width:100%; padding:5px 0; margin:0 0 10px 0; border-bottom:1px solid #e6e6e6;"><img align="middle" src="http://allthingsd.com/wp-content/plugins/twitter-blackbird-pie//images/bird.png" /><a title="tweeted on July 21, 2011 7:23 am" href="http://twitter.com/#!/AnonymousIRC/status/94049761161789441" target="_blank">July 21, 2011 7:23 am</a> via <a href="http://83degrees.com/to/powertwitter" rel="nofollow" target="blank">Power Twitter</a><a href="https://twitter.com/intent/tweet?in_reply_to=94049761161789441" class="bbp-action bbp-reply-action" title="Reply"><span><em style="margin-left: 1em;"></em><strong>Reply</strong></span></a><a href="https://twitter.com/intent/retweet?tweet_id=94049761161789441" class="bbp-action bbp-retweet-action" title="Retweet"><span><em style="margin-left: 1em;"></em><strong>Retweet</strong></span></a><a href="https://twitter.com/intent/favorite?tweet_id=94049761161789441" class="bbp-action bbp-favorite-action" title="Favorite"><span><em style="margin-left: 1em;"></em><strong>Favorite</strong></span></a></div>
<div style="float:left; padding:0; margin:0"><a href="http://twitter.com/intent/user?screen_name=AnonymousIRC"><img style="width:48px; height:48px; padding-right:7px; border:none; background:none; margin:0" src="http://a0.twimg.com/profile_images/1444236954/stache-cut_normal.png" /></a></div>
<div style="float:left; padding:0; margin:0"><a style="font-weight:bold" href="http://twitter.com/intent/user?screen_name=AnonymousIRC">@AnonymousIRC</a>
<div style="margin:0; padding-top:2px">AnonymousIRC</div>
</div>
<div style="clear:both"></div>
</div>
</div>
<p><!-- end of tweet --></p>
<p><!-- tweet id : 94066518366752768 --><br />
<style type="text/css">#bbpBox_94066518366752768 a { text-decoration:none; color:#99001a; }#bbpBox_94066518366752768 a:hover { text-decoration:underline; }</style>
<div id="bbpBox_94066518366752768" class="bbpBox" style="padding:20px; margin:5px 0; background-color:#131516; background-image:url(http://a1.twimg.com/images/themes/theme14/bg.gif);">
<div style="background:#fff; padding:10px; margin:0; min-height:48px; color:#333333; -moz-border-radius:5px; -webkit-border-radius:5px;"><span style="width:100%; font-size:18px; line-height:22px;">This one isn&#8217;t restricted but ironic: <a href="http://t.co/A86jUGX" rel="nofollow">http://t.co/A86jUGX</a> | It describes security procedures within NATO. Well, seems nobody ever read them.</span>
<div class="bbp-actions" style="font-size:12px; width:100%; padding:5px 0; margin:0 0 10px 0; border-bottom:1px solid #e6e6e6;"><img align="middle" src="http://allthingsd.com/wp-content/plugins/twitter-blackbird-pie//images/bird.png" /><a title="tweeted on July 21, 2011 8:29 am" href="http://twitter.com/#!/AnonymousIRC/status/94066518366752768" target="_blank">July 21, 2011 8:29 am</a> via <a href="http://83degrees.com/to/powertwitter" rel="nofollow" target="blank">Power Twitter</a><a href="https://twitter.com/intent/tweet?in_reply_to=94066518366752768" class="bbp-action bbp-reply-action" title="Reply"><span><em style="margin-left: 1em;"></em><strong>Reply</strong></span></a><a href="https://twitter.com/intent/retweet?tweet_id=94066518366752768" class="bbp-action bbp-retweet-action" title="Retweet"><span><em style="margin-left: 1em;"></em><strong>Retweet</strong></span></a><a href="https://twitter.com/intent/favorite?tweet_id=94066518366752768" class="bbp-action bbp-favorite-action" title="Favorite"><span><em style="margin-left: 1em;"></em><strong>Favorite</strong></span></a></div>
<div style="float:left; padding:0; margin:0"><a href="http://twitter.com/intent/user?screen_name=AnonymousIRC"><img style="width:48px; height:48px; padding-right:7px; border:none; background:none; margin:0" src="http://a0.twimg.com/profile_images/1444236954/stache-cut_normal.png" /></a></div>
<div style="float:left; padding:0; margin:0"><a style="font-weight:bold" href="http://twitter.com/intent/user?screen_name=AnonymousIRC">@AnonymousIRC</a>
<div style="margin:0; padding-top:2px">AnonymousIRC</div>
</div>
<div style="clear:both"></div>
</div>
</div>
<p><!-- end of tweet --></p>
<p>NATO issued a statement saying that it is aware of the claim of the breach and is investigating. And it certainly will, but it&#8217;s not as if significant alarm bells are likely to be ringing at NATO Headquarters over this, at least not from the documents seen so far, though the group claims to be holding back on releasing some documents it says &#8220;most of which we cannot publish as it would be irresponsible.&#8221; It promises more releases in the coming days.</p>
<p>Meanwhile, if that weren&#8217;t enough, Anonymous and its ally LulzSec jointly taunted the FBI today. Responding to a quote given to National Public Radio in the story below, the groups issued a joint statement saying, &#8220;Your threats to arrest us are meaningless.&#8221; The statement appears below the radio story.</p>
<p>For those not keeping score, LulzSec is the group that claimed credit for attacking Sony <a href="http://allthingsd.com/20110604/sony-hacked-for-what-seems-to-be-the-umpteenth-time/">umpteen times</a>, then went on to attack other <a href="http://allthingsd.com/20110613/lulzsec-strikes-again-hits-bethesda-softworks-and-u-s-senate/">game companies</a> and the U.S. Senate, then stole emails and other documents from servers belonging to the <a href="http://allthingsd.com/20110624/arizona-confirms-lulzsec-docs-are-authentic-worries-about-officer-safety/">Arizona State Police</a>. It also stole internal documents <a href="http://allthingsd.com/20110627/laughs-just-keep-on-coming-lulzsecs-final-release-contained-malware/">from AT&#038;T</a>.</p>
<p>LulzSec in recent weeks <a href="http://allthingsd.com/20110625/at-the-heigh-of-their-infamy-lulzsec-hackers-call-it-quits/">claimed it had been absorbed</a> by the larger group Anonymous, but the lines appear to be blurring again, as it is at times active under its own banner. Two people connected to LulzSec&#8217;s activities were among 16 arrested in a <a href="http://allthingsd.com/20110719/16-arrested-in-nationwide-hacker-crackdown/">nationwide FBI operation</a> earlier this week. Fourteen others were arrested in connection with a denial of service attack against PayPal in sympathy with WikiLeaks.</p>
<p>The new statement is in reaction to a statement by an FBI assistant director saying the bureau wants to &#8220;send a message&#8221; about computer crime. The hacker group&#8217;s reaction essentially dares law enforcement to take further action. Something tells me they may get their wish.</p>
<p><embed src="http://www.npr.org/v2/?i=138555799&#38;m=138556373&#38;t=audio" height="386" wmode="opaque" allowfullscreen="true" width="400" base="http://www.npr.org" type="application/x-shockwave-flash"></embed></p>
<p><iframe src="http://pastebin.com/embed_iframe.php?i=RA15ix7S" style="border:none;width:100%"></iframe></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20110721/anonymous-hacks-nato-steals-lame-documents/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>16 Arrested in Nationwide Hacker Crackdown</title>
		<link>http://allthingsd.com/20110719/16-arrested-in-nationwide-hacker-crackdown/</link>
		<comments>http://allthingsd.com/20110719/16-arrested-in-nationwide-hacker-crackdown/#comments</comments>
		<pubDate>Tue, 19 Jul 2011 21:42:48 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[crime]]></category>
		<category><![CDATA[cyber crime]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[LulzSec]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[U.S. Department of Justice]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=100079</guid>
		<description><![CDATA[The arrests include 14 for a December attack against PayPal, and two connected to a pair of incidents connected to the LulzSec gang. Five others are arrested in the U.K. and The Netherlands.]]></description>
			<content:encoded><![CDATA[<p><img src="http://allthingsd.com/files/2011/07/Screen-shot-2011-07-19-at-3.09.12-PM-380x194.png" alt="" title="Screen shot 2011-07-19 at 3.09.12 PM" width="380" height="194" class="alignright size-medium wp-image-100187" />The U.S. Department of Justice and the FBI just announced that 14 people have been arrested around the country in connection with an investigation into the activities of the hacker gang calling itself Anonymous. Two others were arrested on what are being described as &#8220;cyber-related charges.&#8221;</p>
<p>The 14 arrested in Alabama, Arizona, California, Colorado, the District of Columbia, Florida, Massachusetts, Nevada, New Mexico and Ohio have been indicted by a federal grand jury in San Jose, California. I&#8217;ve embedded the complaint below.</p>
<p>Two others were arrested on similar charges on two separate complaints in Florida. The Florida case concerns the attack on InfraGard, the public-private information-sharing partnership affiliated with the FBI. The New Jersey case concerns the release of confidential documents <a href="http://allthingsd.com/20110625/at-the-heigh-of-their-infamy-lulzsec-hackers-call-it-quits/">stolen from AT&#038;T</a>. These would appear to be the first U.S. arrests connected with the LulzSec crew that&#8217;s been so active this summer.</p>
<p>Additionally, police in the U.K. arrested another person and police in The Netherlands arrested four more people in connection with the case.</p>
<p>The indictment names 14 people: Christopher Wayne Cooper, 23, a.k.a. “Anthrophobic;” Joshua John Covelli, 26, a.k.a. “Absolem” and “Toxic;” Keith Wilson Downey, 26; Mercedes Renee Haefer, 20, a.k.a. “No” and “MMMM;” Donald Husband, 29, a.k.a. “Ananon;”  Vincent Charles Kershaw, 27, a.k.a. “Trivette,” “Triv” and “Reaper;” Ethan Miles, 33; James C. Murphy, 36; Drew Alan Phillips, 26, a.k.a. “Drew010;” Jeffrey Puglisi, 28, a.k.a. “Jeffer,” “Jefferp” and “Ji;” Daniel Sullivan, 22; Tracy Ann Valenzuela, 42; and Christopher Quang Vo, 22. One individual’s name has been withheld by the court, which suggests he or she is a juvenile.</p>
<p>The defendants are charged with conspiracy and intentional damage to a protected computer.</p>
<p>The 14 are accused of carrying out a December distributed denial of service attack against PayPal, the payment site owned by eBay. DDOS attacks are when attackers overwhelm a Web server with fake requests for attention at such a high volume that legitimate users can&#8217;t get through. </p>
<p>The group has also claimed responsibility for attacks against Visa, and at one point planned to attack Amazon. Various other factions connected to Anonymous have also attacked Sony and recently claimed responsibility for a hacking attack against the defense contractor Booz Allen Hamilton.</p>
<p>The FBI also made arrests today in the attack on the Web site of InfraGard, a non-profit group affiliated with the FBI itself. Scott Matthew Arciszewski, 21, was arrested today by FBI agents and charged with intentional damage to a protected computer. He&#8217;s been charged in the Middle District of Florida and has already appeared in a federal court in Orlando.</p>
<p>The complaint alleges that Arciszewski accessed without authorization the Tampa Bay InfraGard website and uploaded three files, and then Tweeted about it on Twitter.</p>
<p>InfraGard is a public-private partnership for critical infrastructure protection sponsored by the FBI with chapters in all 50 states.</p>
<p>In a related complaint unsealed in the District of New Jersey, the DOJ charged Lance Moore, 21, of Las Cruces, New Mexico with stealing confidential business information stored on AT&#038;T’s servers and posting it on a public file sharing site. Moore is charged with one count of accessing a protected computer without authorization. </p>
<p>According to the New Jersey complaint, Moore, a customer support contractor for AT&#038;T, exceeded his authorized access to AT&#038;T’s servers and downloaded thousands of documents, applications and other files that, on the same day, he allegedly posted on a public file hosting site. That would be The Pirate Bay.</p>
<p>According to the complaint, on June 25, the computer hacking group LulzSec publicized that they had obtained confidential AT&#038;T documents and made them publicly available on the Internet. The documents were the ones Moore had previously uploaded. He faces a maximum penalty of 10 years in prison and a $250,000 fine. Each count of conspiracy carries a maximum penalty of five years in prison and a $250,000 fine. </p>
<p>Here&#8217;s the indictment.</p>
<p><a title="View Indictment 7.19.11 on Scribd" href="http://www.scribd.com/doc/60382303/Indictment-7-19-11" style="margin: 12px auto 6px auto; font-family: Helvetica,Arial,Sans-serif; font-style: normal; font-variant: normal; font-weight: normal; font-size: 14px; line-height: normal; font-size-adjust: none; font-stretch: normal; -x-system-font: none; display: block; text-decoration: underline;">Indictment 7.19.11</a><iframe class="scribd_iframe_embed" src="http://www.scribd.com/embeds/60382303/content?start_page=1&#038;view_mode=list&#038;access_key=key-1e5puj3gwdtmbwxwtfm" data-auto-height="true" data-aspect-ratio="0.772727272727273" scrolling="no" id="doc_84156" width="100%" height="600" frameborder="0"></iframe><script type="text/javascript">(function() { var scribd = document.createElement("script"); scribd.type = "text/javascript"; scribd.async = true; scribd.src = "http://www.scribd.com/javascripts/embed_code/inject.js"; var s = document.getElementsByTagName("script")[0]; s.parentNode.insertBefore(scribd, s); })();</script></p>
<p><em>[Image via Foxnews.com] </em></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20110719/16-arrested-in-nationwide-hacker-crackdown/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>FBI Moves on Anonymous in New York and California</title>
		<link>http://allthingsd.com/20110719/fbi-moves-on-anonymous-in-new-york-and-california/</link>
		<comments>http://allthingsd.com/20110719/fbi-moves-on-anonymous-in-new-york-and-california/#comments</comments>
		<pubDate>Tue, 19 Jul 2011 19:32:33 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[LulzSec]]></category>
		<category><![CDATA[MasterCard]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[visa]]></category>
		<category><![CDATA[WikiLeaks]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=99921</guid>
		<description><![CDATA[FBI agents are arresting people and executing search warrants nationwide as part of its investigation into the hacking group Anonymous.]]></description>
			<content:encoded><![CDATA[<p><img src="http://allthingsd.com/files/2011/07/Screen-shot-2011-07-19-at-2.15.46-PM-380x168.png" alt="" title="Screen shot 2011-07-19 at 2.15.46 PM" width="380" height="168" class="alignright size-medium wp-image-100077" />FBI agents in New York have searched homes in Brooklyn and in two communities on Long Island, and agents in California have made an as yet unspecified number of arrests as part of an ongoing investigation into the activities of the amorphous hacking group Anonymous.</p>
<p>I&#8217;ve spoken with contacts at three FBI field offices &#8212; one here in New York, one in Los Angeles and another in San Francisco. I&#8217;m told that in New York search warrants were executed on homes in Brooklyn and in the towns of Baldwin and Merrick on Long Island. A source familiar with the investigation says that IP addresses that have come under scrutiny in the course of the investigation have led agents to search those addresses, but that no arrests have yet been made in New York.</p>
<p>Agents in California have made arrests, though the number and the names of those arrested have not yet been released. Additionally, <a href="http://www.foxnews.com/scitech/2011/07/19/exclusive-fbi-search-warrants-nationwide-hunt-anonymous/">Fox News is reporting </a>that the FBI made arrests related to the investigation this morning in Florida and New Jersey, and that as many as a dozen people have been arrested in the operation nationwide. Obviously more information will be forthcoming as the situation develops.</p>
<p>The investigation is related specifically to the distributed denial-of-service attacks that were carried out last year and early this year against several companies in the U.S. The attacks were in sympathy with Wikileaks, which had just started disclosing its cache of leaked U.S. diplomatic cables. Visa, the credit card company, was one of its victims.</p>
<p>The group has grown recently as it absorbed another group of hackers calling itself LulzSec, which had harassed Sony in response to its lawsuits against a person who reverse engineered the security on the Playstation gaming console.</p>
<p>Arrests of Anonymous members have previously been reported <a href="http://allthingsd.com/20110127/police-in-the-u-k-arrest-five-in-anonymous-web-attacks/">in the U.K. </a>, in <a href="http://allthingsd.com/20110613/turkey-arrests-32-alleged-members-of-anonymous-days-after-arrests-in-spain/">Turkey and in Spain</a>.</p>
<p>Fox has some <a href="http://video.foxnews.com/v/1064879616001/raw-video-fbi-hunts-for-anonymous-hackers-in-ny">raw video</a> from the scene where one of the search warrants was executed on Long Island today. It&#8217;s below.</p>
<p><script type="text/javascript" src="http://video.foxnews.com/v/embed.js?id=1064879616001&#038;w=466&#038;h=263"></script><noscript>Watch the latest video at <a href="http://video.foxnews.com">video.foxnews.com</a></noscript></p>
<p><em>[Image and video via Fox News]</em></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20110719/fbi-moves-on-anonymous-in-new-york-and-california/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>At the Height of Their Infamy, LulzSec Hackers Call It Quits</title>
		<link>http://allthingsd.com/20110625/at-the-heigh-of-their-infamy-lulzsec-hackers-call-it-quits/</link>
		<comments>http://allthingsd.com/20110625/at-the-heigh-of-their-infamy-lulzsec-hackers-call-it-quits/#comments</comments>
		<pubDate>Sun, 26 Jun 2011 02:37:14 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[AOL]]></category>
		<category><![CDATA[AT&T]]></category>
		<category><![CDATA[Brazil]]></category>
		<category><![CDATA[CIA]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[Infraguard]]></category>
		<category><![CDATA[LulzSec]]></category>
		<category><![CDATA[Nintendo]]></category>
		<category><![CDATA[PlayStation Network]]></category>
		<category><![CDATA[Qwest]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Sony]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=91075</guid>
		<description><![CDATA[On its 50th day of activity, the hacking group LulzSec calls it quits, but not before dropping one more collection of hacker booty. Why quit now? Probably because the heat is on.]]></description>
			<content:encoded><![CDATA[<p><a href="http://allthingsd.com/20110625/at-the-heigh-of-their-infamy-lulzsec-hackers-call-it-quits/lulzsecquits2/" rel="attachment wp-att-91094"><img src="http://allthingsd.com/files/2011/06/lulzsecquits2-380x285.jpg" alt="" title="lulzsecquits2" width="380" height="285" class="alignright size-Featured wp-image-91094" /></a>The hacker group LulzSec says that after 50 days, it&#8217;s through causing trouble on the Internet. In an <a href="http://pastebin.com/1znEGmHa">announcement</a> posted to Pastebin and linked from its Twitter feed, the group said that after 50 days, the latest batch of files it released via BitTorrent would be its last. (The link to those files has since gone dead.)</p>
<p>&#8220;For the past 50 days we&#8217;ve been disrupting and exposing corporations, governments, often the general population itself, and quite possibly everything in between, just because we could,&#8221; the group wrote in its statement.</p>
<p>The collection of files it released &#8212; LulzSec&#8217;s &#8220;booty&#8221; &#8212; which I downloaded, contained a mishmash of text and images intended to demonstrate, one last time, the group&#8217;s hacking prowess. Among the collection was an image of a U.S. Navy web site civilian jobs board that had been defaced with 11 entries reading &#8220;PabloEscobar AntiSec.&#8221; </p>
<p>Another file, entitled &#8220;Office Networks of Corporations,&#8221; is a text file containing what appear to be the IP addresses of internal corporate networks belonging to several media and telecommunications companies. Among those on the list are the Walt Disney Company, Sony &#8212; a favorite LulzSec target &#8212; Qwest Communications and the EMI Group.</p>
<p>By far the biggest file &#8212; clocking in at more than 600 megabytes &#8212; was a folder containing what appeared to be internal documents taken from AT&#038;T. They include what seem to be planning documents, timelines, internal memos related to testing and other documents concerning the construction of AT&#038;T&#8217;s LTE wireless network.</p>
<p>Another file appears to be an internal memo concerning the structure of an AOL network. </p>
<p>Another text file, entitled &#8220;silly routers,&#8221; contains a long list of IP addresses of routers, the networking equipment that functions as the traffic cops of the Internet. Next to each IP address are the creditials used to log in and make changes to the settings of those routers; however, in each case the username and password are &#8220;root&#8221; and &#8220;admin&#8221; or &#8220;root&#8221; and &#8220;root.&#8221; </p>
<p>The significance here is that &#8220;root&#8221; is the highest level of administrative access that can be gained on any computer. A user with &#8220;root&#8221; access has complete control over the system, and &#8220;gaining root&#8221; is the gold standard of practically any hacker attack. In this case the joke &#8212; or Lulz &#8212; is that the root accounts are guarded by default passwords, either &#8220;root&#8221; or &#8220;admin,&#8221; meaning they&#8217;re essentially unguarded. I traced a few of the IP addresses and found they correspond with addresses in Brazil, where a LulzSec branch &#8212; really more of a copycat group &#8212; has emerged in recent days.</p>
<p>So why is LulzSec calling it quits now at the height of its infamy? For one thing, the heat is clearly on. At least one person said to have ties to the group, a 19-year-old named Ryan Cleary, has been <a href="http://allthingsd.com/20110621/lolzsec-shrugs-after-scotland-yard-nabs-hacking-suspect/">arrested in the U.K.</a>, and assuming the person they&#8217;ve arrested is guilty as charged, chances are that when the pressure is on, he&#8217;ll give Scotland Yard as much evidence as he can in exchange for a lighter sentence.</p>
<p>Additionally, more information has started to emerge about the group via rival gangs and people who are former members. The Guardian Newspaper on Friday published a <a href="http://www.guardian.co.uk/technology/2011/jun/24/inside-lulzsec-chatroom-logs-hackers">fascinating account</a>, including a <a href="http://www.guardian.co.uk/technology/2011/jun/24/lulzsec-irc-leak-the-full-record">lengthy chatroom transcript</a> that provides a great deal of insight into the group&#8217;s inner workings. That this much information has wound up in the hands of a newspaper means that the cone of silence the groups members have relied upon to cover their tracks is starting to break down. Law enforcement agents looking to make more arrests will be combing through the logs looking for connections.</p>
<p>They&#8217;ll be looking for someone else like Cleary, who has a history of hanging around on the periphery of groups like LulzSec, and who may have knowledge of how they operate, or other identities they use online. If it plays out as other cases have, eventually investigators will hit upon another clue that will lead to the arrest of key member who will, when the pressure of the law is brought to bear, start naming names of the other members. </p>
<p>With that kind of heat, it behooves LulzSec&#8217;s members to go silent and split up, and stop creating any kind of digital trail that might lead to them. Chances are that each member will destroy any evidence in their possession that might implicate them personally: Hard drives will be wiped and perhaps physically destroyed.  At the same time they&#8217;ll probably retain somewhere enough evidence that will help them finger other members in the event they&#8217;re arrested.</p>
<p>Then again, there may never be any more arrests. There are untold scores of infamous computer crimes committed for which no one ever got arrested. </p>
<p>One such group that comes to mind is Hacking for Girliez, which in 1998 <a href="http://www.wired.com/politics/law/news/1998/09/14990">defaced the Web site</a> of the New York Times. (See a mirror of what they put up <a href="http://www.2600.com/hackedphiles/nytimes/hacked/">here</a>.) The people who carried out the attack later granted an interview to <a href="http://www.forbes.com/forbes/1998/1116/6211132a.html">Forbes Magazine</a>, but were never heard from again. No one ever faced charges in that incident, and the statute of limitations has long since expired.</p>
<p>LulzSec&#8217;s members could find a way to quietly fade into digital obscurity in the same way that Hacking for Girliez did more than a decade ago. But then much depends on how well its members can keep their mouths shut. Part of their appeal was their ability to brag about their conquests so publicly and with apparent impunity. If each of the group&#8217;s six members can resist the urge to brag that they were once part of the Internet&#8217;s most infamous gang of troublemakers, they might just get away with it.</p>
<p>LulzSec&#8217;s farewell Tweet and statement are below.</p>
<p><!-- tweet id : 84758628325801984 --><br />
<style type="text/css">#bbpBox_84758628325801984 a { text-decoration:none; color:#171cb3; }#bbpBox_84758628325801984 a:hover { text-decoration:underline; }</style>
<div id="bbpBox_84758628325801984" class="bbpBox" style="padding:20px; margin:5px 0; background-color:#103361; background-image:url(http://a0.twimg.com/profile_background_images/247525400/nyaaaan.png); background-repeat:no-repeat">
<div style="background:#fff; padding:10px; margin:0; min-height:48px; color:#333333; -moz-border-radius:5px; -webkit-border-radius:5px;"><span style="width:100%; font-size:18px; line-height:22px;">50 Days of Lulz statement: <a href="http://t.co/GbAD070" rel="nofollow">http://t.co/GbAD070</a> | Torrent: <a href="http://t.co/lGsJ4PU" rel="nofollow">http://t.co/lGsJ4PU</a> Thank you, gentlemen. <a href="http://twitter.com/search?q=%23LulzSec" title="#LulzSec">#LulzSec</a></span>
<div class="bbp-actions" style="font-size:12px; width:100%; padding:5px 0; margin:0 0 10px 0; border-bottom:1px solid #e6e6e6;"><img align="middle" src="http://allthingsd.com/wp-content/plugins/twitter-blackbird-pie//images/bird.png" /><a title="tweeted on June 25, 2011 4:03 pm" href="http://twitter.com/#!/LulzSec/status/84758628325801984" target="_blank">June 25, 2011 4:03 pm</a> via web<a href="https://twitter.com/intent/tweet?in_reply_to=84758628325801984" class="bbp-action bbp-reply-action" title="Reply"><span><em style="margin-left: 1em;"></em><strong>Reply</strong></span></a><a href="https://twitter.com/intent/retweet?tweet_id=84758628325801984" class="bbp-action bbp-retweet-action" title="Retweet"><span><em style="margin-left: 1em;"></em><strong>Retweet</strong></span></a><a href="https://twitter.com/intent/favorite?tweet_id=84758628325801984" class="bbp-action bbp-favorite-action" title="Favorite"><span><em style="margin-left: 1em;"></em><strong>Favorite</strong></span></a></div>
<div style="float:left; padding:0; margin:0"><a href="http://twitter.com/intent/user?screen_name=LulzSec"><img style="width:48px; height:48px; padding-right:7px; border:none; background:none; margin:0" src="http://a1.twimg.com/profile_images/1341989664/somehwat-mad-completely-mad-u-mad-MADAD_normal.jpg" /></a></div>
<div style="float:left; padding:0; margin:0"><a style="font-weight:bold" href="http://twitter.com/intent/user?screen_name=LulzSec">@LulzSec</a>
<div style="margin:0; padding-top:2px">The Lulz Boat</div>
</div>
<div style="clear:both"></div>
</div>
</div>
<p><!-- end of tweet --></p>
<p><iframe src="http://pastebin.com/embed_iframe.php?i=1znEGmHa" style="border:none;width:100%"></iframe></p>
<p><blockquote class="memo" style="background:#faf5e5;font-style:normal;"><p>
<b>PREVIOUSLY:</b></p>
<ul>
<li><a href="http://allthingsd.com/20110627/despite-all-the-attention-lulzsec-hackers-failed/">Despite All the Attention, LulzSec Hackers Failed</a>
<li><a href="http://allthingsd.com/20110625/at-the-heigh-of-their-infamy-lulzsec-hackers-call-it-quits/">At The Height Of Their Infamy, LulzSec Hackers Call It Quits</a>
<li><a href="http://allthingsd.com/20110624/arizona-confirms-lulzsec-docs-are-authentic-worries-about-officer-safety/">Arizona Confirms LulzSec Docs Are Authentic, Worries About Officer Safety</a>
<li><a href="http://allthingsd.com/20110623/lulzsec-goes-all-wikileaks-on-arizona-state-cops/">LulzSec Goes All Wikileaks On Arizona State Cops</a>
<li><a href="http://allthingsd.com/20110621/lolzsec-shrugs-after-scotland-yard-nabs-hacking-suspect/">LulzSec Shrugs After Scotland Yard Nabs Hacking Suspect (Updated)</a>
<li><a href="http://allthingsd.com/20110620/lulzsec-and-anonymous-team-up-to-hack-governments-and-banks/">LulzSec And Anonymous Team Up to Hack Governments and Banks</a>
<li><a href="http://allthingsd.com/20110617/viral-video-lulzsec-gets-taiwanesed/">Viral Video: LulzSec Gets Taiwanesed</a>
<li> <a href="http://allthingsd.com/20110615/cia-website-goes-down-lulzsec-takes-credit/">CIA Web Site Goes Down; LulzSec Takes Credit</a>
<li> <a href="http://allthingsd.com/20110614/lulzsec-blasts-space-game-eve-online-other-gaming-sites/">LulzSec Blasts Space Game Eve Online, Other Gaming Sites</a>
<li> <a href="http://allthingsd.com/20110613/lulzsec-strikes-again-hits-bethesda-softworks-and-u-s-senate/">LulzSec Strikes Again, Hits Bethesda Softworks And U.S. Senate</a>
<li> <a href="http://allthingsd.com/20110613/turkey-arrests-32-alleged-members-of-anonymous-days-after-arrests-in-spain/">Turkey Arrests 32 Alleged Members of Anonymous, Days After Arrests in Spain</a>
<li> <a href="http://allthingsd.com/20110610/web-security-start-up-cloudflare-gets-buzz-courtesy-of-lulzsec-hackers/">Web Security Start-Up Cloudflare Gets Buzz, Courtesy of LulzSec Hackers</a>
<li> <a href="http://allthingsd.com/20110607/no-hacks-to-report-at-xbox-but-microsoft-isnt-letting-its-guard-down/">No Hacks to Report at Xbox, But Microsoft Isn’t Letting Its Guard Down</a>
<li> <a href="http://allthingsd.com/20110606/no-lulzsec-hackers-have-been-arrested-at-least-not-yet/">No LulzSec Hackers Have Been Arrested–At Least Not Yet</a>
<li> <a href="http://allthingsd.com/20110606/lulzsec-posts-more-sony-data-amid-claim-one-ofthem-is-arrested/">LulzSec Posts More Sony Data, Amid Claim One of Them Is Arrested</a><br />
<il> <a href="http://allthingsd.com/20110605/lulzsec-strikes-again-claims-attack-on-nintendo-server/">LulzSec Strikes Again, Claims Attack On Nintendo Server</a><br />
<il> <a href="http://allthingsd.com/20110604/sony-hacked-for-what-seems-to-be-the-umpteenth-time/">Sony Hacked for What Seems To Be the Umpteenth Time</a></p>
<li> <a href="http://allthingsd.com/20110514/sonys-playstation-network-is-back-up-will-anyone-be-back/">Sony&#8217;s Playstation Network Is Back. Sony&#8217;s Reputation Will Take a Little Longer.</a>
<li> <a href="http://allthingsd.com/20110506/exclusive-sony-considers-offering-reward-to-help-catch-hackers/">Exclusive: Sony Considers Offering Reward to Help Catch Hackers</a>
<li> <a href="http://allthingsd.com/20110504/sony-implicates-anonymous-in-attack-anonymous-denies-involvement/">Anonymous Claims It Took No Credit Card Numbers From Sony</a>
<li> <a href="http://allthingsd.com/20110504/sony-implicates-anonymous-in-attack-anonymous-denies-involvement/">Sony Implicates Anonymous in Attack; Group Denies Involvement</a>
<li> <a href="http://allthingsd.com/20110501/sony-apologizes-for-the-playstation-network-breach/">Sony Apologizes For the Playstation Network Breach</a>
<li> <a href="http://allthingsd.com/20110423/sony-blames-playstation-outage-on-external-intrusion/">Sony Blames PlayStation Outage on &#8220;External Intrusion&#8221;</a>
  </ul>
</blockquote>
 </p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20110625/at-the-heigh-of-their-infamy-lulzsec-hackers-call-it-quits/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>LulzSec Shrugs After Scotland Yard Nabs Hacking Suspect (Updated)</title>
		<link>http://allthingsd.com/20110621/lolzsec-shrugs-after-scotland-yard-nabs-hacking-suspect/</link>
		<comments>http://allthingsd.com/20110621/lolzsec-shrugs-after-scotland-yard-nabs-hacking-suspect/#comments</comments>
		<pubDate>Tue, 21 Jun 2011 18:21:54 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[CIA]]></category>
		<category><![CDATA[cybercrime]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[featured post]]></category>
		<category><![CDATA[gaming]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[LulzSec]]></category>
		<category><![CDATA[Nintendo]]></category>
		<category><![CDATA[Scotland Yard]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Sony]]></category>

		<guid isPermaLink="false">http://allthingsd.com/?p=89125</guid>
		<description><![CDATA[Scotland Yard's arrest of a 19-year old on computer crime charges has some wondering if the infamous LulzSec hacking troupe -- which has attacked entities as varied as Sony, Nintendo and the CIA -- is about to be broken. The group itself doesn't sound worried. Update: Now LulzSec has acknowledged a tie to the person arrested.]]></description>
			<content:encoded><![CDATA[<p><a href="http://allthingsd.com/20110621/lolzsec-shrugs-after-scotland-yard-nabs-hacking-suspect/scotlandsmall/" rel="attachment wp-att-89151"><img src="http://allthingsd.com/files/2011/06/scotlandsmall.png" alt="" title="scotlandsmall" width="380" height="194" class="alignright size-full wp-image-89151" /></a>The arrest of an <a href="http://online.wsj.com/article/SB10001424052702303936704576399421209490188.html">alleged hacker in the U.K. by Scotland Yard</a> has led to some fevered speculation that the first true arrest in the case of the LulzSec gang may have just occurred. However, the group itself denied, via its Twitter feed, that any of its members have been arrested.</p>
<p>The arrest of a 19-year-old came in the wake of word that the U.K.&#8217;s Office for National Statistics is looking into the possibility that some data from the 2011 Census may have been stolen. There was a <a href="http://pastebin.com/K1nerhk0">claim on Pastebin</a> by someone claiming to be part of LulzSec that they had conducted just such an attack. On its Twitter feed, LulzSec <a href="http://twitter.com/#!/LulzSec/status/83172089711964161">denied any role</a> in attacking the U.K. Census, but it <a href="http://twitter.com/#!/LulzSec/status/83172676960661504">expressed support</a>.</p>
<p><!-- tweet id : 83164092998758400 --><br />
<style type="text/css">#bbpBox_83164092998758400 a { text-decoration:none; color:#171cb3; }#bbpBox_83164092998758400 a:hover { text-decoration:underline; }</style>
<div id="bbpBox_83164092998758400" class="bbpBox" style="padding:20px; margin:5px 0; background-color:#103361; background-image:url(http://a0.twimg.com/profile_background_images/247525400/nyaaaan.png); background-repeat:no-repeat">
<div style="background:#fff; padding:10px; margin:0; min-height:48px; color:#333333; -moz-border-radius:5px; -webkit-border-radius:5px;"><span style="width:100%; font-size:18px; line-height:22px;">Seems the glorious leader of LulzSec got arrested, it&#8217;s all over now&#8230; wait&#8230; we&#8217;re all still here! Which poor bastard did they take down?</span>
<div class="bbp-actions" style="font-size:12px; width:100%; padding:5px 0; margin:0 0 10px 0; border-bottom:1px solid #e6e6e6;"><img align="middle" src="http://allthingsd.com/wp-content/plugins/twitter-blackbird-pie//images/bird.png" /><a title="tweeted on June 21, 2011 6:27 am" href="http://twitter.com/#!/LulzSec/status/83164092998758400" target="_blank">June 21, 2011 6:27 am</a> via web<a href="https://twitter.com/intent/tweet?in_reply_to=83164092998758400" class="bbp-action bbp-reply-action" title="Reply"><span><em style="margin-left: 1em;"></em><strong>Reply</strong></span></a><a href="https://twitter.com/intent/retweet?tweet_id=83164092998758400" class="bbp-action bbp-retweet-action" title="Retweet"><span><em style="margin-left: 1em;"></em><strong>Retweet</strong></span></a><a href="https://twitter.com/intent/favorite?tweet_id=83164092998758400" class="bbp-action bbp-favorite-action" title="Favorite"><span><em style="margin-left: 1em;"></em><strong>Favorite</strong></span></a></div>
<div style="float:left; padding:0; margin:0"><a href="http://twitter.com/intent/user?screen_name=LulzSec"><img style="width:48px; height:48px; padding-right:7px; border:none; background:none; margin:0" src="http://a1.twimg.com/profile_images/1341989664/somehwat-mad-completely-mad-u-mad-MADAD_normal.jpg" /></a></div>
<div style="float:left; padding:0; margin:0"><a style="font-weight:bold" href="http://twitter.com/intent/user?screen_name=LulzSec">@LulzSec</a>
<div style="margin:0; padding-top:2px">The Lulz Boat</div>
</div>
<div style="clear:both"></div>
</div>
</div>
<p><!-- end of tweet --></p>
<p>LulzSec, of course, is the group that claims to have hacked several Sony Web sites, as well as a Nintendo site, then the gaming servers of a couple of companies. It has also attacked the Web site of the CIA and of private affiliates of the FBI. As recently as yesterday it claimed to have carried out a denial-of-service attack against a British police agency.</p>
<p>Scotland Yard isn&#8217;t yet saying much about the arrest, but did say <a href="http://content.met.police.uk/News/eCrime-unit-arrest-man/1260269113895/1257246741786">in a statement</a> that it was in connection with computer attacks carried out against several companies, including denial of service attacks that LulzSec has been openly bragging about for days. It also said it is cooperating with the FBI.</p>
<p>The Wall Street Journal quoted a source familiar with the matter saying that the person arrested &#8220;may be a member of LulzSec,&#8221; but that can be difficult to pin down in these situations. The person could be merely a sympathizer emulating LulzSec&#8217;s methods but without taking the same care to avoid detection. Or it may be a person operating on the fringes of the group in some way.</p>
<p>For what it&#8217;s worth, there was yet another claim by the group Web Ninjas, a rival faction that says it wants to expose LulzSec members, that the <a href="http://lulzsecexposed.blogspot.com/2011/06/one-down.html">person arrested goes by the name Ryan</a> and that his is just the first arrest of several that are coming. &#8220;Well bad news for LulzSec, count your days as we count your heads, How about this for LULZ?&#8221; they wrote. The Web Ninjas go on to describe &#8220;Ryan&#8221; as the administrator of the IRC chat server supposedly used by LulzSec. But as I said yesterday, it&#8217;s difficult to sort out all these claims and counterclaims. We have, of course, seen <a href="http://allthingsd.com/20110606/no-lulzsec-hackers-have-been-arrested-at-least-not-yet/">similar claims before</a>.</p>
<p>Meanwhile, if LulzSec is worried, it isn&#8217;t showing any evidence of it. It&#8217;s promising to publish more data it has been given.</p>
<p><!-- tweet id : 83016584972607488 --><br />
<style type="text/css">#bbpBox_83016584972607488 a { text-decoration:none; color:#171cb3; }#bbpBox_83016584972607488 a:hover { text-decoration:underline; }</style>
<div id="bbpBox_83016584972607488" class="bbpBox" style="padding:20px; margin:5px 0; background-color:#103361; background-image:url(http://a0.twimg.com/profile_background_images/247525400/nyaaaan.png); background-repeat:no-repeat">
<div style="background:#fff; padding:10px; margin:0; min-height:48px; color:#333333; -moz-border-radius:5px; -webkit-border-radius:5px;"><span style="width:100%; font-size:18px; line-height:22px;">Thank you to the supporters who have assisted in leaks. Like @<a href="http://twitter.com/intent/user?screen_name=WikiLeaks" class="twitter-action">WikiLeaks</a>, our sources remain anonymous. Leak payloads are being decided now.</span>
<div class="bbp-actions" style="font-size:12px; width:100%; padding:5px 0; margin:0 0 10px 0; border-bottom:1px solid #e6e6e6;"><img align="middle" src="http://allthingsd.com/wp-content/plugins/twitter-blackbird-pie//images/bird.png" /><a title="tweeted on June 20, 2011 8:41 pm" href="http://twitter.com/#!/LulzSec/status/83016584972607488" target="_blank">June 20, 2011 8:41 pm</a> via web<a href="https://twitter.com/intent/tweet?in_reply_to=83016584972607488" class="bbp-action bbp-reply-action" title="Reply"><span><em style="margin-left: 1em;"></em><strong>Reply</strong></span></a><a href="https://twitter.com/intent/retweet?tweet_id=83016584972607488" class="bbp-action bbp-retweet-action" title="Retweet"><span><em style="margin-left: 1em;"></em><strong>Retweet</strong></span></a><a href="https://twitter.com/intent/favorite?tweet_id=83016584972607488" class="bbp-action bbp-favorite-action" title="Favorite"><span><em style="margin-left: 1em;"></em><strong>Favorite</strong></span></a></div>
<div style="float:left; padding:0; margin:0"><a href="http://twitter.com/intent/user?screen_name=LulzSec"><img style="width:48px; height:48px; padding-right:7px; border:none; background:none; margin:0" src="http://a1.twimg.com/profile_images/1341989664/somehwat-mad-completely-mad-u-mad-MADAD_normal.jpg" /></a></div>
<div style="float:left; padding:0; margin:0"><a style="font-weight:bold" href="http://twitter.com/intent/user?screen_name=LulzSec">@LulzSec</a>
<div style="margin:0; padding-top:2px">The Lulz Boat</div>
</div>
<div style="clear:both"></div>
</div>
</div>
<p><!-- end of tweet --></p>
<p><strong>Update:</strong> LulzSec is now confirming at least some of the Web Ninja account. In a series of Twitter updates starting about an hour ago, the group said that the person initially identified as Ryan &#8220;is not a member of LulzSec,&#8221; though the group does acknowledge a connection. See the tweets below, one of which links to a Sky News report that I&#8217;ve embedded further down.</p>
<p><!-- tweet id : 83244937847652352 --><br />
<style type="text/css">#bbpBox_83244937847652352 a { text-decoration:none; color:#171cb3; }#bbpBox_83244937847652352 a:hover { text-decoration:underline; }</style>
<div id="bbpBox_83244937847652352" class="bbpBox" style="padding:20px; margin:5px 0; background-color:#103361; background-image:url(http://a0.twimg.com/profile_background_images/247525400/nyaaaan.png); background-repeat:no-repeat">
<div style="background:#fff; padding:10px; margin:0; min-height:48px; color:#333333; -moz-border-radius:5px; -webkit-border-radius:5px;"><span style="width:100%; font-size:18px; line-height:22px;">Ryan Cleary is not part of LulzSec; we house one of our many legitimate chatrooms on his IRC server, but that&#8217;s it. <a href="http://t.co/98VflEi" rel="nofollow">http://t.co/98VflEi</a></span>
<div class="bbp-actions" style="font-size:12px; width:100%; padding:5px 0; margin:0 0 10px 0; border-bottom:1px solid #e6e6e6;"><img align="middle" src="http://allthingsd.com/wp-content/plugins/twitter-blackbird-pie//images/bird.png" /><a title="tweeted on June 21, 2011 11:48 am" href="http://twitter.com/#!/LulzSec/status/83244937847652352" target="_blank">June 21, 2011 11:48 am</a> via web<a href="https://twitter.com/intent/tweet?in_reply_to=83244937847652352" class="bbp-action bbp-reply-action" title="Reply"><span><em style="margin-left: 1em;"></em><strong>Reply</strong></span></a><a href="https://twitter.com/intent/retweet?tweet_id=83244937847652352" class="bbp-action bbp-retweet-action" title="Retweet"><span><em style="margin-left: 1em;"></em><strong>Retweet</strong></span></a><a href="https://twitter.com/intent/favorite?tweet_id=83244937847652352" class="bbp-action bbp-favorite-action" title="Favorite"><span><em style="margin-left: 1em;"></em><strong>Favorite</strong></span></a></div>
<div style="float:left; padding:0; margin:0"><a href="http://twitter.com/intent/user?screen_name=LulzSec"><img style="width:48px; height:48px; padding-right:7px; border:none; background:none; margin:0" src="http://a1.twimg.com/profile_images/1341989664/somehwat-mad-completely-mad-u-mad-MADAD_normal.jpg" /></a></div>
<div style="float:left; padding:0; margin:0"><a style="font-weight:bold" href="http://twitter.com/intent/user?screen_name=LulzSec">@LulzSec</a>
<div style="margin:0; padding-top:2px">The Lulz Boat</div>
</div>
<div style="clear:both"></div>
</div>
</div>
<p><!-- end of tweet --></p>
<p><!-- tweet id : 83246443858636801 --><br />
<style type="text/css">#bbpBox_83246443858636801 a { text-decoration:none; color:#171cb3; }#bbpBox_83246443858636801 a:hover { text-decoration:underline; }</style>
<div id="bbpBox_83246443858636801" class="bbpBox" style="padding:20px; margin:5px 0; background-color:#103361; background-image:url(http://a0.twimg.com/profile_background_images/247525400/nyaaaan.png); background-repeat:no-repeat">
<div style="background:#fff; padding:10px; margin:0; min-height:48px; color:#333333; -moz-border-radius:5px; -webkit-border-radius:5px;"><span style="width:100%; font-size:18px; line-height:22px;">Clearly the UK police are so desperate to catch us that they&#8217;ve gone and arrested someone who is, at best, mildly associated with us. Lame.</span>
<div class="bbp-actions" style="font-size:12px; width:100%; padding:5px 0; margin:0 0 10px 0; border-bottom:1px solid #e6e6e6;"><img align="middle" src="http://allthingsd.com/wp-content/plugins/twitter-blackbird-pie//images/bird.png" /><a title="tweeted on June 21, 2011 11:54 am" href="http://twitter.com/#!/LulzSec/status/83246443858636801" target="_blank">June 21, 2011 11:54 am</a> via web<a href="https://twitter.com/intent/tweet?in_reply_to=83246443858636801" class="bbp-action bbp-reply-action" title="Reply"><span><em style="margin-left: 1em;"></em><strong>Reply</strong></span></a><a href="https://twitter.com/intent/retweet?tweet_id=83246443858636801" class="bbp-action bbp-retweet-action" title="Retweet"><span><em style="margin-left: 1em;"></em><strong>Retweet</strong></span></a><a href="https://twitter.com/intent/favorite?tweet_id=83246443858636801" class="bbp-action bbp-favorite-action" title="Favorite"><span><em style="margin-left: 1em;"></em><strong>Favorite</strong></span></a></div>
<div style="float:left; padding:0; margin:0"><a href="http://twitter.com/intent/user?screen_name=LulzSec"><img style="width:48px; height:48px; padding-right:7px; border:none; background:none; margin:0" src="http://a1.twimg.com/profile_images/1341989664/somehwat-mad-completely-mad-u-mad-MADAD_normal.jpg" /></a></div>
<div style="float:left; padding:0; margin:0"><a style="font-weight:bold" href="http://twitter.com/intent/user?screen_name=LulzSec">@LulzSec</a>
<div style="margin:0; padding-top:2px">The Lulz Boat</div>
</div>
<div style="clear:both"></div>
</div>
</div>
<p><!-- end of tweet --></p>
<p><object width="560" height="349"><param name="movie" value="http://www.youtube.com/v/Jf7iBSX9bFU?version=3&amp;hl=en_US"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/Jf7iBSX9bFU?version=3&amp;hl=en_US" type="application/x-shockwave-flash" width="560" height="349" allowscriptaccess="always" allowfullscreen="true"></embed></object></p>
<blockquote class="memo" style="background:#faf5e5;font-style:normal;"><p>
<b>PREVIOUSLY:</b></p>
<ul>
<li><a href="http://allthingsd.com/20110620/lulzsec-and-anonymous-team-up-to-hack-governments-and-banks/">LulzSec And Anonymous Team Up to Hack Governments and Banks</a>
<li><a href="http://allthingsd.com/20110617/viral-video-lulzsec-gets-taiwanesed/">Viral Video: LulzSec Gets Taiwanesed</a>
<li> <a href="http://allthingsd.com/20110615/cia-website-goes-down-lulzsec-takes-credit/">CIA Web Site Goes Down; LulzSec Takes Credit</a>
<li> <a href="http://allthingsd.com/20110614/lulzsec-blasts-space-game-eve-online-other-gaming-sites/">LulzSec Blasts Space Game Eve Online, Other Gaming Sites</a>
<li> <a href="http://allthingsd.com/20110613/lulzsec-strikes-again-hits-bethesda-softworks-and-u-s-senate/">LulzSec Strikes Again, Hits Bethesda Softworks And U.S. Senate</a>
<li> <a href="http://allthingsd.com/20110613/turkey-arrests-32-alleged-members-of-anonymous-days-after-arrests-in-spain/">Turkey Arrests 32 Alleged Members of Anonymous, Days After Arrests in Spain</a>
<li> <a href="http://allthingsd.com/20110610/web-security-start-up-cloudflare-gets-buzz-courtesy-of-lulzsec-hackers/">Web Security Start-Up Cloudflare Gets Buzz, Courtesy of LulzSec Hackers</a>
<li> <a href="http://allthingsd.com/20110607/no-hacks-to-report-at-xbox-but-microsoft-isnt-letting-its-guard-down/">No Hacks to Report at Xbox, But Microsoft Isn’t Letting Its Guard Down</a>
<li> <a href="http://allthingsd.com/20110606/no-lulzsec-hackers-have-been-arrested-at-least-not-yet/">No LulzSec Hackers Have Been Arrested–At Least Not Yet</a>
<li> <a href="http://allthingsd.com/20110606/lulzsec-posts-more-sony-data-amid-claim-one-ofthem-is-arrested/">LulzSec Posts More Sony Data, Amid Claim One of Them Is Arrested</a><br />
<il> <a href="http://allthingsd.com/20110605/lulzsec-strikes-again-claims-attack-on-nintendo-server/">LulzSec Strikes Again, Claims Attack On Nintendo Server</a><br />
<il> <a href="http://allthingsd.com/20110604/sony-hacked-for-what-seems-to-be-the-umpteenth-time/">Sony Hacked for What Seems To Be the Umpteenth Time</a></p>
<li> <a href="http://allthingsd.com/20110514/sonys-playstation-network-is-back-up-will-anyone-be-back/">Sony&#8217;s Playstation Network Is Back. Sony&#8217;s Reputation Will Take a Little Longer.</a>
<li> <a href="http://allthingsd.com/20110506/exclusive-sony-considers-offering-reward-to-help-catch-hackers/">Exclusive: Sony Considers Offering Reward to Help Catch Hackers</a>
<li> <a href="http://allthingsd.com/20110504/sony-implicates-anonymous-in-attack-anonymous-denies-involvement/">Anonymous Claims It Took No Credit Card Numbers From Sony</a>
<li> <a href="http://allthingsd.com/20110504/sony-implicates-anonymous-in-attack-anonymous-denies-involvement/">Sony Implicates Anonymous in Attack; Group Denies Involvement</a>
<li> <a href="http://allthingsd.com/20110501/sony-apologizes-for-the-playstation-network-breach/">Sony Apologizes For the Playstation Network Breach</a>
<li> <a href="http://allthingsd.com/20110423/sony-blames-playstation-outage-on-external-intrusion/">Sony Blames PlayStation Outage on &#8220;External Intrusion&#8221;</a>
  </ul>
</blockquote>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20110621/lolzsec-shrugs-after-scotland-yard-nabs-hacking-suspect/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cisco Security Survey Finds Windows Vulnerabilities And Spam Decreasing</title>
		<link>http://allthingsd.com/20110120/cisco-security-survey-finds-windows-vulnerabilities-and-spam-decreasing/</link>
		<comments>http://allthingsd.com/20110120/cisco-security-survey-finds-windows-vulnerabilities-and-spam-decreasing/#comments</comments>
		<pubDate>Thu, 20 Jan 2011 14:40:09 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[Mobile]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[accounts]]></category>
		<category><![CDATA[ads]]></category>
		<category><![CDATA[Android]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[applications]]></category>
		<category><![CDATA[Arik Hesseldahl]]></category>
		<category><![CDATA[arrests]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[bank]]></category>
		<category><![CDATA[banks]]></category>
		<category><![CDATA[botnet]]></category>
		<category><![CDATA[botnets]]></category>
		<category><![CDATA[broadband]]></category>
		<category><![CDATA[centers]]></category>
		<category><![CDATA[Cisco Systems]]></category>
		<category><![CDATA[computer]]></category>
		<category><![CDATA[computer security]]></category>
		<category><![CDATA[connections]]></category>
		<category><![CDATA[contractors]]></category>
		<category><![CDATA[corporate]]></category>
		<category><![CDATA[criminals]]></category>
		<category><![CDATA[cyber]]></category>
		<category><![CDATA[data]]></category>
		<category><![CDATA[decline]]></category>
		<category><![CDATA[decrease]]></category>
		<category><![CDATA[defense]]></category>
		<category><![CDATA[desktop]]></category>
		<category><![CDATA[devices]]></category>
		<category><![CDATA[economy]]></category>
		<category><![CDATA[fake]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[forecast]]></category>
		<category><![CDATA[global]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[Hewlett-Packard]]></category>
		<category><![CDATA[highlights]]></category>
		<category><![CDATA[increase]]></category>
		<category><![CDATA[Intellishield]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[iOS]]></category>
		<category><![CDATA[IP address]]></category>
		<category><![CDATA[iPad]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[king of spam]]></category>
		<category><![CDATA[links]]></category>
		<category><![CDATA[Mac OS]]></category>
		<category><![CDATA[messages]]></category>
		<category><![CDATA[messaging]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[mobile phones]]></category>
		<category><![CDATA[money laundering]]></category>
		<category><![CDATA[money muling]]></category>
		<category><![CDATA[network]]></category>
		<category><![CDATA[networking]]></category>
		<category><![CDATA[NewEnterprise]]></category>
		<category><![CDATA[OS X]]></category>
		<category><![CDATA[pharma]]></category>
		<category><![CDATA[pharmaceuticals]]></category>
		<category><![CDATA[phone]]></category>
		<category><![CDATA[release]]></category>
		<category><![CDATA[report]]></category>
		<category><![CDATA[Russian]]></category>
		<category><![CDATA[scammers]]></category>
		<category><![CDATA[scams]]></category>
		<category><![CDATA[ScanSafe]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security feature]]></category>
		<category><![CDATA[server]]></category>
		<category><![CDATA[shutdown]]></category>
		<category><![CDATA[smartphones]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[spam]]></category>
		<category><![CDATA[tablets]]></category>
		<category><![CDATA[targets]]></category>
		<category><![CDATA[threat]]></category>
		<category><![CDATA[Tom Gillis]]></category>
		<category><![CDATA[trends]]></category>
		<category><![CDATA[U.S.]]></category>
		<category><![CDATA[vulnerabilities]]></category>
		<category><![CDATA[Web]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Windows 7]]></category>
		<category><![CDATA[work at home]]></category>

		<guid isPermaLink="false">http://newenterprise.allthingsd.com/?p=2000</guid>
		<description><![CDATA[Still no rest for the weary computer security professional. Smartphones and tablets are coming to the office and creating new opportunities for trouble.]]></description>
			<content:encoded><![CDATA[<p><img src="http://newenterprise.allthingsd.com/files/2010/12/hackers-193x300.jpg" alt="" title="hackers" width="193" height="300" class="alignright size-medium wp-image-605" /><br />
Cyber criminals have fewer ways to attack Microsoft Windows, and sent less spam in 2010 than in 2009&#8211;a first-ever decline of spam from year to year. Those are among the findings in an annual report on the state of Internet security released today by networking giant Cisco Systems.</p>
<p>All the security attention paid in recent years to securing the Windows desktop and the applications running on it have paid off a little, Cisco found, making it harder for computer scammers to successfully carry off their intended crimes on that platform. The trouble is they&#8217;re now starting to focus more attention on mobile devices, including Apple&#8217;s iPhone and iPad, and devices running Google&#8217;s Android operating system, Cisco said.</p>
<p>Meanwhile, the overall global volume of spam, which often contains troublemaking links that are used to deliver attacks, decreased for the first time ever in 2010. Even so, spam still increased in some developed countries where broadband connections are multiplying. In the United Kingdom, spam volume nearly doubled, while the volume in France went up 115 percent. The U.S. saw a slight decline&#8211;11.1 trillion messages down from 11.3 trillion in 2009. Spam in Brazil, China and Turkey also declined. Some of the decline can be attributed to <a href="http://www.jsonline.com/news/crime/111169714.html">last year&#8217;s arrest</a> by FBI agents in Milwaukee of a Russian accused of being the &#8220;king of spam,&#8221; and to the shutdown of a few botnets used by scammers to send spam.</p>
<p>One thing about <a href="http://www.cisco.com/en/US/prod/vpndevc/annual_security_report.html">Cisco&#8217;s report</a> that&#8217;s likely to draw some attention is its finding that the raw number of vulnerabilities on Apple products appear to be growing. Apple users are usually pretty sensitive about this topic, and any comparison of the Mac to Windows on the security front tends to make them grind their teeth and pound out annoyed comments on tech blogs. I know because I&#8217;ve done the same teeth-grinding and have in the past criticized other reports for <a href=http://www.businessweek.com/technology/ByteOfTheApple/blog/archives/2006/05/mcafee_stabs_at_mac_security.html>similar findings</a>.</p>
<p>Here Cisco is addressing vulnerabilities that Apple has itself documented and patched in software updates. One thing that&#8217;s not clear to me&#8211;though it sure looks like it&#8211;is whether Cisco is combining vulnerabilities found on both iOS (iPhone and iPad) and OS X (the Mac). The data it&#8217;s using is from its IntelliShield service, which tracks vulnerabilities and security incidents, and shows that over five years Apple&#8217;s vulnerabilities rose, from less than 200 in 2006 to more than 350 in 2010. That rate was higher than Microsoft and Hewlett-Packard and Cisco itself, the report found, though it goes on to say that Apple has worked harder than most other vendors to protect its users. Security is one of the reasons Apple imposes such strict rules on what&#8217;s available in the App store, though people still jailbreak their phones.</p>
<p><img src="http://newenterprise.allthingsd.com/files/2011/01/tomgillis-214x300.jpg" alt="" title="tomgillis" width="214" height="300" class="alignright size-medium wp-image-2001" />Another trend Cisco found is something called &#8220;money muling.&#8221; Tom Gillis, VP and general manager of Cisco&#8217;s Security business unit, describes money muling as using unsuspecting people who are attracted by &#8220;work at home&#8221; spam messages and Web ads to participate in money laundering by moving small amounts of money into bank accounts, just a few thousand dollars at a time. He says the operations around this are becoming increasingly elaborate, and criminals will devote a lot of effort to developing it this year.</p>
<p>I talked with Gillis about the report and other security trends that Cisco found. Here are a few highlights from our conversation:</p>
<p><strong>NewEnterprise: So you&#8217;re seeing fewer attacks on Windows and more on mobile devices. Is that simply because there are more of them?</strong></p>
<p>Tom Gillis: It&#8217;s the simple fact that there&#8217;s this new class of mobile device coming into the enterprise that used to be a phone and now it&#8217;s a computer, and it can access enterprise information. So what we&#8217;re seeing is that the raw number, but not the severity, is down on Windows. Part of this is that Windows 7 was a very good release on Microsoft&#8217;s part from a security standpoint. And we&#8217;ve got these new devices coming into the enterprise, and so we&#8217;re seeing a shift in focus of attacks on these mobile devices. They&#8217;re vulnerable to attack and they&#8217;re relevant in the enterprise. Two years ago this would have been too small a population to be meaningful.</p>
<p><strong>What kind of attacks are you seeing?</strong></p>
<p>It varies. In some cases there&#8217;s a little &#8220;phone home&#8221; code in a free gaming app. Pretty gentle stuff so far. But as people start using smartphones to access sensitive information we need to start thinking about security considerations on these devices. There&#8217;s a larger theme here that the whole nature of attacks is changing dramatically. The fact that spam volumes dropped at all is a big tell. For 10 years this has only gone up. We&#8217;re not forecasting a steady decline in spam, but the fact that it slowed down at all is an indicator of the shift in the way that attackers are using email. The attacks are more targeted and personal, for one thing.</p>
<p><strong>Can&#8217;t some of this decrease be attributed to some of the arrests that happened last year?</strong></p>
<p>It can. There&#8217;s been a handful of arrests. And they went after not only the botnet operators but other parts of the spam value chain. There are firms and entities that build botnets of compromised machines that relay the spam, and then there are other firms and entities that rent time on those botnets that do the merchandising. The biggest category is selling fake pharmaceuticals. Some of these fake pharma operations were shut down and the people associated with them arrested. It&#8217;s not an easy thing to do, because they&#8217;re global, they move around, and so to make an arrest in this space is a huge accomplishment.</p>
<p><strong>So what is the thinking now about securing the mobile device?</strong></p>
<p>We think there are two ways to make mobile devices work in the enterprise. The flood of devices into the enterprise is huge, and everyone wants to use them to check their email and access corporate directories and other fundamental things. There needs to be some kind of software on the end point&#8211;the phone or device. It will have to be light. You can&#8217;t have some kind of antivirus suite running on the phone. It would be a little piece of software that&#8217;s on all the time that knows when you&#8217;re behind the corporate firewall and when you&#8217;re not, and manages your connection accordingly. We bought a company called ScanSafe that has 40 data centers around the world. When you&#8217;re outside the firewall it connects to you the nearest data center and enforces your corporate policies, but all you as the user know is that it just works. This notion of being on or off the corporate network goes away. And we can do all kinds of scanning for security, independent of the device that&#8217;s being used.</p>
<p><strong>This year we also saw the Stuxnet attacks, which we now know for certain were carried out against the Iranian nuclear program. Clearly this is a new kind of attack that can be mounted against industrial control systems via computer networks. Is Cisco researching this?</strong></p>
<p>Massively. Often these types of attacks are targeted against Cisco&#8217;s biggest enterprise customers. Who buys Cisco&#8217;s infrastructure? The biggest banks in the world, the defense contractors. If the goal of an attacker is to disrupt an economy, their targets will be our customers, and they&#8217;re demanding a response from us. I like to call it global threat correlation, but it comes down to taking huge samples of network traffic and picking out good traffic from the bad. Cisco has a good advantage here because our equipment is so widely deployed around the world. As we start measuring traffic we can develop reputation data on every publicly routable IP address on the Internet. As we start putting telemetry info into that equipment&#8211;and the customer can choose to enable it or not, and it&#8217;s turned off by default. But people turn it on because it helps them against the unknown kind of attacks that are popping up. If a Web server says its a Web server, but you just saw it sending spam three minutes ago, there&#8217;s a pretty good chance it&#8217;s part of a botnet. Once you know that you know that, you can start to mount a pretty good defense. We&#8217;re putting a lot of energy into developing that, and it&#8217;s proven to be pretty robust.</p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20110120/cisco-security-survey-finds-windows-vulnerabilities-and-spam-decreasing/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Seventh Person Arrested in Insider Trading Probe</title>
		<link>http://allthingsd.com/20101229/seventh-person-arrested-in-insider-trading-probe/</link>
		<comments>http://allthingsd.com/20101229/seventh-person-arrested-in-insider-trading-probe/#comments</comments>
		<pubDate>Wed, 29 Dec 2010 20:17:54 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Arik Hesseldahl]]></category>
		<category><![CDATA[arrested]]></category>
		<category><![CDATA[buyback]]></category>
		<category><![CDATA[charged]]></category>
		<category><![CDATA[complaint]]></category>
		<category><![CDATA[conspiracy]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[Federal Bureau of Investigation]]></category>
		<category><![CDATA[fraud]]></category>
		<category><![CDATA[hedge]]></category>
		<category><![CDATA[hedge funds]]></category>
		<category><![CDATA[information]]></category>
		<category><![CDATA[insider]]></category>
		<category><![CDATA[insider trading]]></category>
		<category><![CDATA[investigation]]></category>
		<category><![CDATA[investors]]></category>
		<category><![CDATA[Marvell]]></category>
		<category><![CDATA[NewEnterprise]]></category>
		<category><![CDATA[Nvidia]]></category>
		<category><![CDATA[portfolio]]></category>
		<category><![CDATA[Primary Global Research]]></category>
		<category><![CDATA[probe]]></category>
		<category><![CDATA[quarter]]></category>
		<category><![CDATA[revenues]]></category>
		<category><![CDATA[securities]]></category>
		<category><![CDATA[semiconductors]]></category>
		<category><![CDATA[white collar crime]]></category>
		<category><![CDATA[Winifred Jiau]]></category>

		<guid isPermaLink="false">http://newenterprise.allthingsd.com/?p=1171</guid>
		<description><![CDATA[Another arrest of an expert consultant in the ever-widening FBI investigation into insider trading of tech companies.]]></description>
			<content:encoded><![CDATA[<p><img src="http://newenterprise.allthingsd.com/files/2010/12/gekko-275x179.jpg" alt="" title="gekko" width="275" height="179" class="alignright size-medium wp-image-1181" />The FBI has arrested another person in the ongoing investigation into the sharing of insider information with investors by consultants working for so-called expert firms.</p>
<p>The latest to be arrested is Winifred Jiau, 43, of Fremont, Calif. Like others <a href="http://newenterprise.allthingsd.com/20101216/four-arrested-in-tech-heavy-insider-trading-case/">charged or arrested on Dec. 16</a>, she has ties to Primary Global Research. She&#8217;s accused of providing inside information to Primary Global clients who were portfolio managers at hedge funds of Nvidia and Marvell Technology during a period from 2006 to 2008. Prosecutors say she collected $200,000 during that time. She&#8217;s facing charges of conspiracy and securities fraud.</p>
<p>In August of 2008, the complaint says, she provided managers of two hedge funds with detailed numbers for quarterly revenues, per-share earnings and gross margins for the quarter ending that month. The complaint says that in the conversations she made it clear she had obtained the information directly from an employee of Marvell. The funds in question&#8211;they were not named in the complaint&#8211;allegedly made $820,000 on trades from the information.</p>
<p>On Aug. 8, 2008, the complaint says, Jiau provided the hedge fund managers with an early look at Nvidia&#8217;s quarterly revenue and told them it planned to announce a stock buyback, which it did four days later.</p>
<p>I&#8217;ve embedded the complaint below.</p>
<p><a title="View Jiau, Winifred Complaint on Scribd" href="http://www.scribd.com/doc/46042154/Jiau-Winifred-Complaint" style="margin: 12px auto 6px auto; font-family: Helvetica,Arial,Sans-serif; font-style: normal; font-variant: normal; font-weight: normal; font-size: 14px; line-height: normal; font-size-adjust: none; font-stretch: normal; -x-system-font: none; display: block; text-decoration: underline;">Jiau, Winifred Complaint</a> <object id="doc_635689794989523" name="doc_635689794989523" height="600" width="100%" type="application/x-shockwave-flash" data="http://d1.scribdassets.com/ScribdViewer.swf" style="outline:none;" ><param name="movie" value="http://d1.scribdassets.com/ScribdViewer.swf"><param name="wmode" value="opaque"><param name="bgcolor" value="#ffffff"><param name="allowFullScreen" value="true"><param name="allowScriptAccess" value="always"><param name="FlashVars" value="document_id=46042154&#038;access_key=key-1fceklz34lmnh06uuih6&#038;page=1&#038;viewMode=list"><embed id="doc_635689794989523" name="doc_635689794989523" src="http://d1.scribdassets.com/ScribdViewer.swf?document_id=46042154&#038;access_key=key-1fceklz34lmnh06uuih6&#038;page=1&#038;viewMode=list" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" height="600" width="100%" wmode="opaque" bgcolor="#ffffff"></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20101229/seventh-person-arrested-in-insider-trading-probe/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Still Changing Passwords Today? Silverpop Attack May Be Why.</title>
		<link>http://allthingsd.com/20101215/still-changing-passwords-today-silverpop-attack-may-be-why/</link>
		<comments>http://allthingsd.com/20101215/still-changing-passwords-today-silverpop-attack-may-be-why/#comments</comments>
		<pubDate>Wed, 15 Dec 2010 15:40:33 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[accounts]]></category>
		<category><![CDATA[All Things D]]></category>
		<category><![CDATA[Arc Worldwide]]></category>
		<category><![CDATA[Arik Hesseldahl]]></category>
		<category><![CDATA[artists]]></category>
		<category><![CDATA[attack]]></category>
		<category><![CDATA[Bill Nussey]]></category>
		<category><![CDATA[blog]]></category>
		<category><![CDATA[breach]]></category>
		<category><![CDATA[Business Insider]]></category>
		<category><![CDATA[Chicago]]></category>
		<category><![CDATA[Chicago Business]]></category>
		<category><![CDATA[clients]]></category>
		<category><![CDATA[customer]]></category>
		<category><![CDATA[cyber]]></category>
		<category><![CDATA[deviantArt]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[Encyclopedia Britannica]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[Fossil]]></category>
		<category><![CDATA[Gawker]]></category>
		<category><![CDATA[Gawkergate]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[Mapinfo]]></category>
		<category><![CDATA[McDonald's]]></category>
		<category><![CDATA[NewEnterprise]]></category>
		<category><![CDATA[Nick Denton]]></category>
		<category><![CDATA[password]]></category>
		<category><![CDATA[passwords]]></category>
		<category><![CDATA[Pitney Bowes]]></category>
		<category><![CDATA[Santander Consumer Finance]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[security feature]]></category>
		<category><![CDATA[silverpop]]></category>
		<category><![CDATA[social network]]></category>
		<category><![CDATA[Stacy Kirk]]></category>
		<category><![CDATA[Stamps.com]]></category>
		<category><![CDATA[Walgreens]]></category>
		<category><![CDATA[Web site]]></category>

		<guid isPermaLink="false">http://newenterprise.allthingsd.com/?p=578</guid>
		<description><![CDATA[The hacking incident that affected McDonald's appears to have wider implications for users of scores of other Web sites, and it may be connected, though indirectly, to the weekend attack on Gawker.]]></description>
			<content:encoded><![CDATA[<p><img src="http://newenterprise.allthingsd.com/files/2010/12/hackers-193x300.jpg" alt="" title="hackers" width="193" height="300" class="alignright size-medium wp-image-605" />It still remains unclear whether the password-jacking of McDonald&#8217;s Web site that was revealed Monday was in fact related to what we here at <strong>All Things D</strong> are now calling <a href="http://mediamemo.allthingsd.com/20101214/the-gawker-hack-ripple-hits-linkedin/">Gawkergate</a>. Though as I noted yesterday, the timing was <a href="http://newenterprise.allthingsd.com/20101214/gawker-password-mess-spreads-to-world-or-warcraft-apparently-yaho/">certainly suspicious</a>.</p>
<p>However, we&#8217;re starting to get more information about how the McDonald&#8217;s incident appears connected to hacking incidents at other sites. <a href="http://www.chicagobusiness.com/article/20101213/NEWS07/101219975/mcdonalds-says-hacker-broke-into-customer-database-fbi-investigating">Chicago Business</a> is reporting that the company responsible for McDonald&#8217;s email marketing is <a href="http://www.silverpop.com/marketing-company/company-overview.html">Silverpop Systems</a>, and that it had been operating under a subcontract from Chicago-based Arc Worldwide.</p>
<p>So who else is a customer of Silverpop? Yesterday I received an email from someone who&#8217;s a customer of <a href="http://about.deviantart.com/">deviantArt</a>, a social network where artists share their creations. DeviantArt has a base of 13 million users. Got an account there? You&#8217;d better change any passwords that overlap with other sites. The site advised customers that their accounts were compromised, and blamed Silverpop.</p>
<p>It could extend much further yet. Silverpop has more than 100 clients, and not all of them are publicly disclosed, though here are a few, found on its <a href="http://www.silverpop.com/clients/client-quotes.html">client quotes</a> page and its <a href="http://www.silverpop.com/marketing-resources/case-studies/index.html">case studies</a> page: Stamps.com, Pitney Bowes/Mapinfo, Encyclopedia Britannica, Santander Consumer Finance and watchmaker Fossil. There&#8217;s no word how any of those other companies are affected, if at all.</p>
<p>Silverpop CEO Bill Nussey said in a blog message to customers that the FBI is <a href="http://www.silverpop.com/blogs/email-marketing/uncategorized/a-special-message-from-silverpop.html">investigating the incident</a>, and that only a small percentage of Silverpop customers have been affected. He also said that Silverpop was &#8220;among several technology providers targeted as part of a broader cyber attack.&#8221; Stacy Kirk, a Silverpop spokeswoman, wouldn&#8217;t say anything beyond what&#8217;s in Nussey&#8217;s message.</p>
<p>I&#8217;m beginning to wonder if there&#8217;s some indirect connection between what happened to Silverpop and what happened to Gawker. I&#8217;m speculating here, but it&#8217;s no stretch of the imagination that numbering among deviantArt&#8217;s 13 million users are some of the 1.5 million people whose accounts were compromised in the Gawkergate affair. And the FBI is <a href="http://www.nypost.com/p/news/business/fbi_investigating_gawker_hacking_8d96mcgcFbgMVhw8Ge3rpJ">investigating both</a>. Thomas Plunkett, Gawker&#8217;s technology chief, told me by email that there&#8217;s no evidence of a connection. Then again, as Business Insider tells it, he hasn&#8217;t yet had his <a href="http://www.businessinsider.com/fbi-meeting-with-gawker-tomorrow-2010-12">meeting with the FBI</a>.</p>
<p>Maybe I&#8217;m looking for connections that aren&#8217;t really there, but it&#8217;s really not hard to see how the breach at Gawker could turn out be the start of a domino effect that&#8217;s much larger than anyone has yet realized. There certainly is a lot of  grumbling about <a href="http://search.twitter.com/search?q=%22changing+passwords%22">changing passwords</a> today.</p>
<p>If you know more more about any of this, <a href="mailto:arik@allthingsd.com">get in touch</a>!</p>
<p>Below is the email to deviantArt users.</p>
<blockquote><p>From: deviantART.com <em>(address deleted)</em><br />
Date: Mon, Dec 13, 2010 at 5:54 AM<br />
Subject: RE: Email Notice</p>
<p>Silverpop Systems, Inc.,  a leading marketing company that sends email messages for its clients, told us that information was taken from its servers.  This was probably part of a sweep by spammers.  As a result, email addresses belonging to deviantART members were copied. Corresponding usernames and birth date may also have been removed.</p>
<p>We can assure you that nothing occurred on our systems with respect to this incident and no access was gained to private information on deviantART’s servers.</p>
<p>As a member of deviantART, you certainly have a right to know when an incident of this kind occurs.  Unfortunately spammers are an unavoidable part of living on the Web.</p>
<p>The likely result of this event might be an increase in spam to your email. Experts have told us that there is an increase in email scams out there on the Internet and you should be cautious. Only click links or download attachments from people you know, particularly if they ask for personal information, and be sure that your email service provider has adequate spam filters.</p>
<p>Because we value the information that members give us, we have decided not to rely on the services of Silverpop in the future and their servers will no longer hold any data from us.</p></blockquote>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20101215/still-changing-passwords-today-silverpop-attack-may-be-why/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Jennifer Granick, Lawyer to Hackers, Joins Zwillinger Genetski</title>
		<link>http://allthingsd.com/20101202/jennifer-granick-lawyer-to-hackers-joins-zwillinger-genetiski/</link>
		<comments>http://allthingsd.com/20101202/jennifer-granick-lawyer-to-hackers-joins-zwillinger-genetiski/#comments</comments>
		<pubDate>Thu, 02 Dec 2010 18:58:42 +0000</pubDate>
		<dc:creator>Arik Hesseldahl</dc:creator>
				<category><![CDATA[Enterprise]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Arik Hesseldahl]]></category>
		<category><![CDATA[attorney]]></category>
		<category><![CDATA[Bart Huff]]></category>
		<category><![CDATA[Cablevision]]></category>
		<category><![CDATA[Defcon]]></category>
		<category><![CDATA[Electronic Frontier Foundation]]></category>
		<category><![CDATA[Elizabeth Banker]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[Forbes.com]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[Jennifer Granick]]></category>
		<category><![CDATA[Kevin Poulsen]]></category>
		<category><![CDATA[lawyer]]></category>
		<category><![CDATA[Leota Bates]]></category>
		<category><![CDATA[Myspace]]></category>
		<category><![CDATA[NewEnterprise]]></category>
		<category><![CDATA[Stanford]]></category>
		<category><![CDATA[Washington D.C.]]></category>
		<category><![CDATA[Yahoo]]></category>
		<category><![CDATA[Zwillinger Genetski]]></category>
		<category><![CDATA[Zynga]]></category>

		<guid isPermaLink="false">http://newenterprise.allthingsd.com/?p=85</guid>
		<description><![CDATA[San Francisco lawyer Jennifer Granick, until recently civil liberties director at the Electronic Frontier Foundation, is joining the Washington, D.C.-based law firm of Zwillinger Genetski. Granick gained a reputation as a lawyer willing to defend accused computer hackers.]]></description>
			<content:encoded><![CDATA[<p><img src="http://newenterprise.allthingsd.com/files/2010/12/granick.jpg" alt="" title="granick" width="200" height="200" class="alignright size-full wp-image-86" />San Francisco lawyer Jennifer Granick, until recently civil liberties director at the Electronic Frontier Foundation, is joining the Washington D.C.-based law firm of <a href="http://www.zwillgenblog.com/">Zwillinger Genetski</a>.</p>
<p>The firm&#8217;s clients include several prominent Internet companies, including Yahoo, social gaming giant Zynga, Myspace (a unit of News Corp., parent of this Web site) and Cablevision.</p>
<p>Granick gained a reputation as a lawyer willing to defend accused computer hackers. Her clients have included the hacker-turned-journalist <a href="http://www.wired.com/about/press_bios/#kevin_poulsen">Kevin Poulsen</a>. I wrote <a href="http://www.forbes.com/2000/08/05/feat.html">this profile of her for Forbes.com</a> in 2000, describing her as the person you might call if your day begins with an FBI raid.</p>
<p>About the same time, she gave a heavily attended talk on “Hacking and the Law” at the <a href="http://www.defcon.org/html/links/dc-archives/dc-8-archive.html">DEF CON 8</a> hacker conference in Las Vegas. She went on to become executive director at Stanford University&#8217;s <a href="http://cyberlaw.stanford.edu/">Center for Internet and Society</a>. She also taught at Stanford.</p>
<p>I caught up with her yesterday, and she said part of her role will be to help establish ZwillGen&#8217;s office in San Francisco. The firm has been adding legal talent at a rapid clip. In June it added three lawyers: Elizabeth Banker, a former associate general counsel at Yahoo; Bart Huff, a former assistant United States attorney in Chicago with a history of prosecuting computer crime; and Leota Bates, a former associate at Perkins Coie in Washington, D.C. Granick is the firm&#8217;s eighth attorney.</p>
<p>Will she still have time to take calls from hackers staring down FBI agents? &#8220;I think I&#8217;ll still be able to do that,&#8221; she said. &#8220;They wanted me because of my experience and because of who I&#8217;ve represented.&#8221;</p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20101202/jennifer-granick-lawyer-to-hackers-joins-zwillinger-genetiski/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>FBI Raids Two Hedge Funds Amid Insider-Trading Case</title>
		<link>http://allthingsd.com/20101122/fbi-raids-two-hedge-funds-amid-insider-trading-case/</link>
		<comments>http://allthingsd.com/20101122/fbi-raids-two-hedge-funds-amid-insider-trading-case/#comments</comments>
		<pubDate>Mon, 22 Nov 2010 17:59:12 +0000</pubDate>
		<dc:creator>Susan Pulliam, Jenny Strasburg and Michael Rothfeld</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[David Ganek]]></category>
		<category><![CDATA[David Rothfeld]]></category>
		<category><![CDATA[Diamondback Capital Management]]></category>
		<category><![CDATA[economy]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[frontpage]]></category>
		<category><![CDATA[Jenny Strasburg]]></category>
		<category><![CDATA[Level Global Investors]]></category>
		<category><![CDATA[Richard Kolko]]></category>
		<category><![CDATA[SAC Capital Advisors]]></category>
		<category><![CDATA[Steve Choen]]></category>
		<category><![CDATA[Susan Pulliam]]></category>
		<category><![CDATA[The Wall Street Journal]]></category>

		<guid isPermaLink="false">http://voices.allthingsd.com/?p=32932</guid>
		<description><![CDATA[Federal Bureau of Investigation agents raided the Connecticut offices of hedge funds Diamondback Capital Management LLC and Level Global Investors LP amid a far-reaching insider-trading investigation.

"The FBI is executing court-authorized search warrants in an ongoing investigation," said Richard Kolko, an FBI spokesman, who declined to comment further.]]></description>
			<content:encoded><![CDATA[<p>Federal Bureau of Investigation agents raided the Connecticut offices of hedge funds Diamondback Capital Management LLC and Level Global Investors LP amid a far-reaching insider-trading investigation.</p>
<p>&#8220;The FBI is executing court-authorized search warrants in an ongoing investigation,&#8221; said Richard Kolko, an FBI spokesman, who declined to comment further.</p>
<p>Both hedge funds are run by former managers of Steve Cohen&#8217;s SAC Capital Advisors. Level Global Investors LP is a Greenwich, Conn., hedge-fund firm run by David Ganek, a former SAC Capital trader and art collector. He started Level Global in 2003 and earlier this year reported managing about $4 billion in assets.</p>
<p><a href="http://online.wsj.com/article/SB10001424052748704243904575630693960704872.html?mod=djemalertNEWS">Read the rest of this post on the original site</a></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20101122/fbi-raids-two-hedge-funds-amid-insider-trading-case/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Germany Probes Telecom Chief</title>
		<link>http://allthingsd.com/20100916/germany-probes-telecom-chief/</link>
		<comments>http://allthingsd.com/20100916/germany-probes-telecom-chief/#comments</comments>
		<pubDate>Thu, 16 Sep 2010 07:30:15 +0000</pubDate>
		<dc:creator>David Crawford and Laura Stevens</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[bribery]]></category>
		<category><![CDATA[coercion]]></category>
		<category><![CDATA[David Crawford]]></category>
		<category><![CDATA[Deutsche Telekom AG]]></category>
		<category><![CDATA[digital]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[frontpage]]></category>
		<category><![CDATA[Laura Stevens]]></category>
		<category><![CDATA[Manfred Balz]]></category>
		<category><![CDATA[Rene Obermann]]></category>
		<category><![CDATA[SEC]]></category>
		<category><![CDATA[telecom]]></category>
		<category><![CDATA[The Wall Street Journal]]></category>

		<guid isPermaLink="false">http://voices.allthingsd.com/?p=29761</guid>
		<description><![CDATA[German prosecutors said Wednesday they have begun their own investigation into the role of Deutsche Telekom AG employees—including the company's chief executive, René Obermann—in the alleged bribery and coercion of government officials in Macedonia and Montenegro.]]></description>
			<content:encoded><![CDATA[<p>German prosecutors said Wednesday they have begun their own investigation into the role of Deutsche Telekom AG employees—including the company&#8217;s chief executive, René Obermann—in the alleged bribery and coercion of government officials in Macedonia and Montenegro.</p>
<p>A spokesman for prosecutors in Bonn, where Deutsche Telekom is based, said the office opened the inquiry after reviewing documents provided by the U.S. Securities and Exchange Commission, Federal Bureau of Investigation and Justice Department earlier this year.</p>
<p>U.S. officials have been investigating the company&#8217;s activities in the Balkans since 2006 and had asked German prosecutors to assist by collecting witness testimony in Germany.</p>
<p>German prosecutors searched Mr. Obermann&#8217;s office and one of his two homes on Aug. 31, said Manfred Balz, Deutsche Telekom&#8217;s management board member responsible for compliance, at a news conference Wednesday. The search included computers and documents belonging to Mr. Obermann and to employees who haven&#8217;t been named as suspects.</p>
<p><a href="http://online.wsj.com/article/SB10001424052748703743504575493703414547196.html?mod=WSJ_Tech_LEADSecond">Read the rest of this post on the original site</a></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20100916/germany-probes-telecom-chief/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>White House Pushes for Warrantless Access to Certain Internet Records</title>
		<link>http://allthingsd.com/20100729/white-house-pushes-for-warrantless-access-to-certain-internet-records/</link>
		<comments>http://allthingsd.com/20100729/white-house-pushes-for-warrantless-access-to-certain-internet-records/#comments</comments>
		<pubDate>Thu, 29 Jul 2010 19:20:00 +0000</pubDate>
		<dc:creator>Beth Callaghan</dc:creator>
				<category><![CDATA[Media]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[Beth Callaghan]]></category>
		<category><![CDATA[digital]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[frontpage]]></category>
		<category><![CDATA[government]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[newsbyte]]></category>
		<category><![CDATA[Patriot Act]]></category>
		<category><![CDATA[White House]]></category>

		<guid isPermaLink="false">http://voices.allthingsd.com/?p=27760</guid>
		<description><![CDATA[If the White House has its way, the FBI will be granted access to the Internet activity of terror and intelligence suspects without a court order. The activity covered under the proposal would include all data on email sent or received, and possibly Internet surfing history, but not email contents or search history. Supporters of the measure compare it to the FBI's ability to access phone records without court authority.]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.washingtonpost.com/wp-dyn/content/article/2010/07/28/AR2010072806141.html">If the White House has its way</a>, the FBI will be granted access to the Internet activity of terror and intelligence suspects without a court order. The activity covered under the proposal would include all data on email sent or received, and possibly Internet surfing history, but not email contents or search history. Supporters of the measure compare it to the FBI&#8217;s ability to access phone records without court authority.</p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20100729/white-house-pushes-for-warrantless-access-to-certain-internet-records/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Sleeper in Seattle</title>
		<link>http://allthingsd.com/20100714/sleeper-in-seattle/</link>
		<comments>http://allthingsd.com/20100714/sleeper-in-seattle/#comments</comments>
		<pubDate>Wed, 14 Jul 2010 16:57:45 +0000</pubDate>
		<dc:creator>Voices</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[Alexey Karetnikov]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[frontpage]]></category>
		<category><![CDATA[Microsoft]]></category>
		<category><![CDATA[newsbyte]]></category>
		<category><![CDATA[Redmond]]></category>
		<category><![CDATA[Russian]]></category>
		<category><![CDATA[Spy]]></category>

		<guid isPermaLink="false">http://voices.allthingsd.com/?p=27160</guid>
		<description><![CDATA[Microsoft has certainly had its share of security vulnerabilities, but this is in a class by itself. On Tuesday, the U.S. deported a 12th alleged member of the recently broken Russian spy ring, one Alexey Karetnikov, who, Microsoft acknowledged today, had been working for nine months as a software tester in Redmond. A senior law enforcement official said that the FBI had been watching Karetnikov all along, and that he had "obtained absolutely no information." So the secret mobile strategy is still safe.]]></description>
			<content:encoded><![CDATA[<p>Microsoft has certainly had its share of security vulnerabilities, but this is in a class by itself. On Tuesday, the U.S. <a href="http://www.washingtonpost.com/wp-dyn/content/article/2010/07/13/AR2010071302840.html">deported a 12th alleged member of the recently broken Russian spy ring</a>, one Alexey Karetnikov, who, <a href="http://news.idg.no/cw/art.cfm?id=D1AF2F66-1A64-67EA-E4D22DAEB039C882">Microsoft acknowledged today</a>, had been working for nine months as a software tester in Redmond. A senior law enforcement official said that the FBI had been watching Karetnikov all along, and that he had &#8220;obtained absolutely no information.&#8221; So the secret mobile strategy is still safe.</p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20100714/sleeper-in-seattle/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hackers Aren&#039;t Only Threat to Privacy</title>
		<link>http://allthingsd.com/20100623/hackers-arent-only-threat-to-privacy/</link>
		<comments>http://allthingsd.com/20100623/hackers-arent-only-threat-to-privacy/#comments</comments>
		<pubDate>Wed, 23 Jun 2010 07:00:13 +0000</pubDate>
		<dc:creator>Ben Worthen</dc:creator>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Social]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[AT&T]]></category>
		<category><![CDATA[Ben Worthen]]></category>
		<category><![CDATA[credit card numbers]]></category>
		<category><![CDATA[digital]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[frontpage]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[identity theft]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[Internet Crime Complaint Center]]></category>
		<category><![CDATA[Javelin Strategy & Research]]></category>
		<category><![CDATA[medical records]]></category>
		<category><![CDATA[personal information]]></category>
		<category><![CDATA[social security numbers]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[The Wall Street Journal]]></category>

		<guid isPermaLink="false">http://voices.allthingsd.com/?p=26340</guid>
		<description><![CDATA[Sophisticated hackers aren't the only ones gaining access to sensitive data on the Internet. A large amount of personal information is being left exposed or poorly protected by companies and governments.

The number of identity-theft victims in the U.S. jumped 12 percent to 11.1 million in 2009, according to research company Javelin Strategy &#38; Research.]]></description>
			<content:encoded><![CDATA[<p>Sophisticated hackers aren&#8217;t the only ones gaining access to sensitive data on the Internet. A large amount of personal information is being left exposed or poorly protected by companies and governments.</p>
<p>The number of identity-theft victims in the U.S. jumped 12 percent to 11.1 million in 2009, according to research company Javelin Strategy &#038; Research. Fraud cases reported to the Internet Crime Complaint Center, which is partly run by the Federal Bureau of Investigation, climbed 23 percent to 336,655 last year.</p>
<p>Information that people inadvertently make public on sites like Facebook plays a role. So too do the sort of technical exploits demonstrated by the group that recently exposed a flaw in AT&#038;T Inc.&#8217;s (T) website.</p>
<p>But in many cases, finding social-security and credit-card numbers or medical records on the Internet doesn&#8217;t require computer expertise. Instead, such information is accessible to anyone who knows where to look.</p>
<p><a href="http://online.wsj.com/article/SB10001424052748704122904575314703487356896.html?mod=WSJ_Tech_LEFTTopNews">Read the rest of this post on the original site</a></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20100623/hackers-arent-only-threat-to-privacy/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Apple: As Regulators Poke Around, Should Investors Be Worried?</title>
		<link>http://allthingsd.com/20100611/apple-as-regulators-poke-around-should-investors-be-worried/</link>
		<comments>http://allthingsd.com/20100611/apple-as-regulators-poke-around-should-investors-be-worried/#comments</comments>
		<pubDate>Fri, 11 Jun 2010 20:07:01 +0000</pubDate>
		<dc:creator>Eric Savitz</dc:creator>
				<category><![CDATA[Mobile]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[AdMob]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[Barrons]]></category>
		<category><![CDATA[competition]]></category>
		<category><![CDATA[digital]]></category>
		<category><![CDATA[Eric Savitz]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[frontpage]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[hardware]]></category>
		<category><![CDATA[iAd]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[iPad]]></category>
		<category><![CDATA[iPhone]]></category>
		<category><![CDATA[Rebecca Arbogast]]></category>
		<category><![CDATA[software]]></category>
		<category><![CDATA[Stifel Nicolaus]]></category>
		<category><![CDATA[Tech Trader Daily]]></category>
		<category><![CDATA[telecom]]></category>

		<guid isPermaLink="false">http://voices.allthingsd.com/?p=25947</guid>
		<description><![CDATA[Apple has attracted attention from regulators over a couple of recent moves which negatively affect the businesses of various competitors.

This week, Google complained that Apple’s new rules on sharing iPhone and iPad user data with advertisers unfairly advantages the company’s own iAd service over rivals like Google’s AdMob--and the government is reportedly looking into the issue.]]></description>
			<content:encoded><![CDATA[<p>Apple (AAPL) has attracted attention from regulators over a couple of recent moves which negatively affect the businesses of various competitors.</p>
<p>This week, Google (GOOG) complained that Apple’s new rules on sharing iPhone and iPad user data with advertisers unfairly advantages the company’s own iAd service over rivals like Google’s AdMob&#8211;and the government is reportedly looking into the issue. There’s also continued grumbling over the company’s decision not to support the Adobe (ADBE) Flash standard on the iPhone/iPad platform, and the Feds are apparently looking at that issue, as well.</p>
<p>Stifel Nicloas analyst Rebecca Arbogast reviewed the situation in a research note this morning, and finds that Apple has justifications in both cases that support its policies.</p>
<p><a href="http://blogs.barrons.com/techtraderdaily/2010/06/11/apple-as-regulators-poke-around-should-investors-be-worried/?mod=rss_BOLBlog&#038;mod=tech">Read the rest of this post on the original site</a></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20100611/apple-as-regulators-poke-around-should-investors-be-worried/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Gawker Contacted by FBI in iPad Security Breach Probe</title>
		<link>http://allthingsd.com/20100611/gawker-contacted-by-fbi-in-ipad-security-breach-probe/</link>
		<comments>http://allthingsd.com/20100611/gawker-contacted-by-fbi-in-ipad-security-breach-probe/#comments</comments>
		<pubDate>Fri, 11 Jun 2010 15:59:06 +0000</pubDate>
		<dc:creator>Spencer E. Ante and Ben Worthen</dc:creator>
				<category><![CDATA[Mobile]]></category>
		<category><![CDATA[News]]></category>
		<category><![CDATA[Voices]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[AT&T]]></category>
		<category><![CDATA[Ben Worthen]]></category>
		<category><![CDATA[digital]]></category>
		<category><![CDATA[FBI]]></category>
		<category><![CDATA[frontpage]]></category>
		<category><![CDATA[Gawker]]></category>
		<category><![CDATA[Goatse Security]]></category>
		<category><![CDATA[hardware]]></category>
		<category><![CDATA[Internet]]></category>
		<category><![CDATA[iPad]]></category>
		<category><![CDATA[Spencer E. Ante]]></category>
		<category><![CDATA[The Wall Street Journal]]></category>
		<category><![CDATA[Valleywag]]></category>

		<guid isPermaLink="false">http://voices.allthingsd.com/?p=25912</guid>
		<description><![CDATA[Gawker Media said Friday on its Valleywag blog that it has been contacted by the Federal Bureau of Investigation and was told to hold on to relevant documents related to a possible security breach of AT&#38;T Inc.'s website that exposed the email addresses of some owners of Apple Inc. iPad devices.]]></description>
			<content:encoded><![CDATA[<p>Gawker Media said Friday on its Valleywag blog that it has been contacted by the Federal Bureau of Investigation and was told to hold on to relevant documents related to a possible security breach of AT&#038;T Inc.&#8217;s (T) website that exposed the email addresses of some owners of Apple Inc. (AAPL) iPad devices.</p>
<p>&#8220;We can confirm that Gawker Media was contacted by the FBI earlier today and issued a formal preservation notice,&#8221; Valleywag said in its post.</p>
<p>Gawker Media publicized the incident Wednesday after being contacted by a small group of computer experts calling itself Goatse Security. The group said it discovered the flaw, explaining that it was able to find the email addresses by guessing numbers that identify iPads connected to AT&#038;T&#8217;s mobile network. The group said it uncovered 114,000 email addresses, including those of prominent officials in companies, politics and the military.</p>
<p><a href="http://online.wsj.com/article/SB10001424052748703509404575300502915914936.html">Read the rest of this post on the original site</a></p>
]]></content:encoded>
			<wfw:commentRss>http://allthingsd.com/20100611/gawker-contacted-by-fbi-in-ipad-security-breach-probe/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

