Counterfeit hacking to companies that had sold nationwide monitoring spyware to the government, internal information of 400 GB leaked out on the net


ByEleni boulasiki

Hacking Team, a security company in Italy, was hacked and 400 GB of internal resources leaked out on the net. The official Twitter account of Hacking Team got hijacked over 12 hours, a sample release place of information stolen by hacking and I made it. The Hacking Team sells hacking and monitoring tools for governments and law enforcement agencies, and has been listed in the "Internet enemies" list of reporters without borders, and Adobe has not grasped from the internal document It is clear that we knew Flash's zero day vulnerability.

Hacking Team hacked, attackers claim 400GB in dumped data | CSO Online
http://www.csoonline.com/article/2943968/data-breach/hacking-team-hacked-attackers-claim-400gb-in-dumped-data.html

Hacking Team responds to data breach, issues public threats and denials | CSO Online
http://www.csoonline.com/article/2944333/data-breach/hacking-team-responds-to-data-breach-issues-public-threats-and-denials.html

Hacking Team Breach Shows a Global Spying Firm Run Amok | WIRED
http://www.wired.com/2015/07/hacking-team-breach-shows-global-spying-firm-run-amok/

Hacking support software company hacked damage - WSJ
http://jp.wsj.com/articles/SB10608521192908353573604581092843601846356

News - Italian companies selling monitoring software to the government hacked damage: ITpro
http://itpro.nikkeibp.co.jp/atcl/news/15/070702251/

It is not clear who created the hacking team, but the information over 400 GB stolen by hacking leaked to BitTorrent. This included source code of various kinds of software, mail, employee's password, customer list and so on.

The customer list includes US Department of Defense, Federal Bureau of Investigation (FBI), DEA (Drug Administration), Russia, Azerbaijan, Kazakhstan, Saudi Arabia, the United Arab Emirates (UAE), Bahrain, Oman, Egypt, Sudan, Ethiopia, Morocco , Nigeria, Lebanon, Mongolia, South Korea and so on. The license of the remote control system is licensed to Ethiopia's Information Network Security Organization for 1 million dollars (about 122 million yen) and for the National Information Security Service of Sudan undergoing embargo by the United Nations, it is about 4,800 dollars (about 5844 Ten thousand yen), and I also know that I sold another software to Egypt for 58 thousand euros (about 778 thousand yen).

By the way, for sale to Sudan, spy tools are not deemed to be weapons, so they made a deal because they are not subject to UN embargoing measures. Regarding this matter, there was an e-mail exchange between the Hacking Team officers and the United Nations, the United Nations opposed the sale to Sudan.

Privacy Researcher'sChristopher Soghoan"If Sudan is the most demanding country in the world and Hacking Team thought it could be sold legally to Sudan, they would be able to sell anywhere in the world," he said. .

Privacy InternationalofEric KingMr. Mi also commented that this hacking is as valuable as information disclosure by Edward Snowden, "he says," There are few countries where Hacking Team does not try to sell software. "

As of 2013, WIRED reports that Hacking Team sold spy software to Turkey, which was used for the United States. At this time, the Hacking Team explains, "It is offering only to the government and law enforcement agencies that are used for legitimate purpose", but after that, in Morocco and UAE, what was used against dissidents I understand that, I am in blame.

American Gets Targeted by Digital Spy Tool Sold to Foreign Governments | WIRED
http://www.wired.com/2013/06/spy-tool-sold-to-governments/

So, what kind of software did Hacking Team sell? You can watch the CM movie on YouTube.

Hacking Team Commercial - YouTube


The movie says, "Confidential data is being transmitted on encrypted channels, and not all the information you need is transmitted, the target may be outside of the domain you are monitoring." Feeding anxiety, I call on "Is passive monitoring sufficient?"


"I have to hack the target"


When the target is browsing, exchanging documents, receiving SMS, crossing the border ...... There are various situations that "I want to hack".


Also, there are various subjects such as skype, encrypted phone, target location, message content, friendship relationship, browsing contents, sound and video, and so on.


Also, escape from the protection system, the information collection infrastructure is hidden.


If that is the Hacking Team you can do it.


It was a CM image of a hacking suite for information interception by government agencies, a remote control system "Da Vinci".


Although spyware alone is quite troublesome, some of the information leaked out of the Hacking Team included Adobe's unmodified Flash zero-day vulnerability. Because the information and patches by Adobe have not been released yet at 8 o'clock on July 8, 2015 which created the article, Symantec calls to temporarily invalidate Adobe Flash if there is concern about the vulnerability It is.

Fear of exploitation by an attacker on leaked Flash zero-day vulnerability | Symantec Connect Community
http://www.symantec.com/connect/blogs/flash

Again, 400 GB of data has not been fully decoded. What kind of "bombs" are hidden behind the remaining data ......

in Note,   Video, Posted by logc_nt