Author Archives: Ulrik
The CLEA Hack
I en redegørelse for angrebet mod California Law Enforcement Association skriver Anonymous:
/*******************************************************************************
CALIFORNIA LAW ENFORCEMENT ASSOCIATION - DEFACED AND DESTROYED BY ANTISEC
*******************************************************************************/
Soundtrack to the Rev Track #2: The Coup - Five Million Ways to Kill a CEO
I'm from the land where the Panthers grew
You know the city and the avenue
If you the boss we be smabbin through
And we'll be grabbin' you
To say "What's up with the revenue?"
Most everybody already knows that we don't like police very much. Shit, just about everybody hates them, everybody except for the rich and powerful who depend on their protection. But which state got the most blood on their hands? Well we already owned pigs in Texas and Arizona, and many many others; guess its time to ride on the California police.
From the murder of Oscar Grant, the repression of the occupation movement, the assassination of George Jackson in San Quinten prison, the prosecution of our anonymous comrades in San Jose, and the dehumanizing conditions in California jails and prisons today, California police have a notorious history of brutality and therefore have been on our hitlist for a good minute now.
So we went ahead and owned the California State Law Enforcement Association (CSLEA.COM), defacing and destroying their website. We dumped a few of their mail spools and forum databases, and we did get a few laughs out of reading years of their private email correspondence (such as CSLEA's Legislative and Police Liason Coby Pizzotti's convos with his girlfriend who calls him "doodle"). But what we were really after was their membership rosters, which included the cleartext password to 2500 of their members, guaranteeing the ownage of many more California pigs to come.
"But wait! Cops are people too! Part of the 99%!" orly? When these soulless traitors voluntarily chose to cross the picket line and side with the bosses and bureaucrats, they burned all bridges with working class. As the bootboys for capitalism they do not protect us, instead choosing to serve the interests and assets of the rich ruling class, the 1%. Many Occupiers are learning what many of us already know about the role of police in society when they violently attacked protesters occupying public parks. Now it's time to turn the table and start firing shots off in the right direction. Problem, officer?
Interestingly, CSLEA members have discussed some of our previous hacks against police targets, raising concern for the security of their own systems. However Ken deliberately made some rather amusing lies as to their security. He repeatedly denied having been hacked up until web hosts at stli.com showed him some of the backdoors and other evidence of having dumped their databases. We were reading their entire email exchange including when they realized that credit card and password information was stored in cleartext. This is about the time Ken changed his email password, but not before receiving a copy of the 'shopper' table which contained all the CCs. Too late, Ken.
In all fairness, they did make an effort to secure their systems after discovery of the breach. They changed a few admin passwords and deleted a few backdoors. Shut mail down for a few days. They also finally decided to set a root mysql password, but we got the new one: "vanguard". We noticed that you got rid of the credit card table, and most of the users in your database. Still haven't figured out how to safely hash passwords though: we really loved your change from 'redd555' to 'blu444'. Clever.
But we still had shell on their servers, and were stealthily checking out the many other websites on the server, while also helping ourselves to thousands of police usernames and passwords (it's how Special Agent Fred Baclagan at the California DOJ Cybercrimes Unit got humiliated last month). For two months, we passed around their private password list amongst our black hat comrades like it was a fat blunt of the dank shit, and now it's time to dump that shit for the world to use and abuse. Did you see that there were hundreds of @doj.ca.gov passwords? Happy new years!!
/*******************************************************************************
LIST OF SITES HOSTED BY CSLEA, NOW WIPED OFF THE NET !!!
*******************************************************************************/
Association of Conservation Employees (ACE)
Association of Criminalists-DOJ (AC-DOJ)
Association of Deputy Commissioners (ADC)
Association of Motor Carrier Operations Specialists (AMCOS)
Association of Motor Vehicle Investigators of California (AMVIC)
Association of Special Agents-DOJ (ASA-DOJ)
California Association of Criminal Investigators (CACI)
California Association of Food and Drug Investigators (CAFDI)
California Association of Fraud Investigators (CAFI)
California Association of Regulatory Investigators and Inspectors (CARII)
California Association of State Investigators (CASI)
California Organization of Licensing Registration Examiners (COLRE)
California Association of Law Enforcement Employees (CALEE)
California Highway Patrol Public Safety Dispatchers Association (CHP-PSDA)
Fire Marshal and Emergency Services Association (FMESA)
Hospital Police Association of California (HPAC)
Resource Protection Peace Officers Association (RPPOA)
State Employed Fire Fighters Association (SEFFA)
Læs hele balladen her.
Police documents about ‘Anonymous’ leaked by ‘Anonymous’
/*******************************************************************************
H0H0H0!!! ANTISEC BRINGING YOU MOAR PRIV8 POLICE DOCUMENTS ABOUT ANONYMOUS
*******************************************************************************/
******************************************************************
**** DEPARTMENT OF DEFENSE INTEREST COMPUTER SYSTEM (DODICS) ****
******************************************************************
* DDD * USE OF THIS OR ANY OTHER DEPARTMENT OF DEFENSE * DDD *
* D D * INTEREST COMPUTER SYSTEM (DODICS) CONSTITUTES * D D *
* D D * YOUR CONSENT TO MONITORING BY DOD AUTHORIZED * D D *
* DDD * PERSONNEL FOR COMPUTER SECURITY AND SYSTEM * DDD *
* * MANAGEMENT PURPOSES. * *
* OO * * OO *
* O O * THIS DODICS AND ALL RELATED EQUIPMENT ARE TO * O O *
* O O * BE USED FOR THE COMMUNICATIONS, TRANSMISSION, * O O *
* OO * PROCESSING, MANIPULATION, AND STORAGE OF * OO *
* * OFFICIAL U.S. GOVERNMENT OR OTHER AUTHORIZED * *
* DDD * INFORMATION ONLY. * DDD *
* D D * * D D *
* D D * UNAUTHORIZED USE OF THIS COMPUTER MAY SUBJECT * D D *
* DDD * YOU TO CRIMINAL PROSECUTION AND PENALTIE. * DDD *
******************************************************************
**** DEPARTMENT OF DEFENSE INTEREST COMPUTER SYSTEM (DODICS) *****
******************************************************************
OVER THE YEARS WE HAVE EXPOZED MANY A PRIVATE GOVERNMENT DOCUMENTS STOLED FROM TEH MAIL SPOOLZ AND INTRANETS OF THE PIGS ... BUT NOW WE HAVE DISCOVERD THAT THEY ARE ONTO US AND IZ ONLY A MATTER OF TIME BEFORE WE ARE ALL BIZZUSTD!!!
// THEY R HIP 2 OUR MASTER PLAN...
• (U) "Project Mayhem," (PM) was announced by Anonymous in August 2011, and according to their public website projectmayhem2012[dot]org, is set to culminate on 21 December 2012. The PM website ahs several links to YT videos, which appear to have been randomly selected and have no direct tie to PM or past / current / future Anonymous malicious activity. Furthermore, there is no dialogue or hints as to specific tactics, techniques and procedures (TTP) that Anonymous plans on employing on or prior to 21 December 2012. There are also several seemingly related internet wiki-style portals and web forums, operating under the PM name, devoted to random malicious acts - some involving physical disruption and some involving targeting information systems - but no direct discussion of attack scenarios.
• (U) The name "Project Mayhem" is derived from the popular 1999 film Fight Club. The project refers to a secret operation carried out by the Fight Club to topple the corporate American system. In the movie, the Club carries out numerous malicious acts such as defacement of buildings with graffiti, sabotage, and arson. In the finale, the main character is ultimately responsible for destroying buildings belonging to major financial institutions with explosives.
• (U//FOUO) DHS/NCCIC'S PM ASSESSMENT: While Anonymous' PM will not likely be as spectacular as the activities it was named after in the movie Fight Club, little is known about their plans for this event. We anticipate several more YT videos and public statements via Twitter leading up to the culmination date of 21 December 2012. Based on previous incidents involvin Anonymous, we can expect DDOS, web defacement, SQL injection, and potentially in-person protests targeting worldwide government institutions and private corporations. Though the characters in the movie Fight Club who carried out their version of PM utilized deadly force and terrorist tactics, Anonymous is not likely to use violent force in their operations.
// THEY ANALYZED OUR METHODOLOGY...
• (U) Anonymous utilizes a crude target nomination procedure, outlined below, that is coordinated on one of several communication mediums - IRC, websites (#chan, etc), insurgency wiki, or anonymous themed website:
1. An individual on the communications medium posts an appeal to Anonymous
leadership requesting members to target a victim;
2. Those individuals who agree, follow suit with vague details given as to
intentions and/or tactics.
3. "Lulz ensue," or they don't;
4. If "lulz ensue,", go back to step 2 and see if more people join the action,
or;
5. Lose interest.
// THEY HAVE OUR 0DAY...
• (U) According to Anonymous, they are working on a new attack tool called #RefRef that is able to use a server's resources and/or processing power to conduct a DOS against itself. It is unclear at this time what the true capabilities of #RefRef are; Anonymous has stated publicly that the tool will be ready for wider use by the group in September 2011. There have been several publicly disclosed tools claiming to be versions of #RefRef however there has been nothing to validate these claims.
// AND HAVE INFILTRAT0RED OUR ORGANIZATION!!!
• (U//FOUO) Following law enforcement action against Anonymous and LulzSec, individuals claiming to be members of the groups contacted FBI field offices in an attempt to provide information and become informants. While some individuals may have had honest intentions when contacting the FBI, others may have engaged in social engineering to solicit information about law enforcement personnel or active investigations of Anonymous and LulzSec. In addition, individuals may have also contacted the FBI to provide misinformation about the identities of Anonymous and LulzSec members and their activities as a means of interfering with law enforcement investigations.
• (U//FOUO) In June 2011, suspected members of LulzSec discussed a scheme to provide misinformation to the FBI in a private Internet Relay Chat (IRC) channel. Members discussed having an FBI informant with access to the IRC channel contact his handling agent to provide misinformation in exchange for payment. Once this occurred, the group then planned to publicize the incident and to give the impression that the FBI was funding LulzSec activities.
• (U//FOUO) In October 2011, an FBI source with unknown reliability reported that an individual contacted FBI field offices via e-mail claiming to have information regarding Anonymous. Source reporting suggests that this individual had previously discussed in chat logs attempts to social engineer an FBI agent to download malware.
// BUT THEY R SCARD...
• (U//FOUO) The FBI judges that the retaliatory reactions of Anonymous and LulzSec, combined with law enforcement activity aimed at dismantling the group, points toward the continued targeting and intimidation of law enforcement personnel. The FBI judges that law enforcement personnel may be subjected to increased contact by individuals regarding information about Anonymous and LulzSec members and activities, as additional law enforcement action against suspected members of Anonymous and splinter groups are conducted. This contact could lead to the increase of social engineering tactics against officers to obtain sensitive information that could be used to compromise active cases. In addition, suspected members of Anonymous and LulzSec may continue to provide misinformation in an effort to thwart law enforcement investigations, which may impact future prosecution of these subjects.
// AND ARE SCRAMBLING 2 PROTECT THEMSELVES
• (U//FOUO) The FBI judges that the following precautions are likely to enhance law enforcement ability to preserve information and ensure officer safety during interviews and search warrants:
• (U//FOUO) Being Aware of Social Engineering Tactics. Subjects may gather personal and employment information about law enforcement officers by manipulating them into divulging sensitive information. This information would enhance “doxing” by enabling subjects to gather further identifiers.
• (U//FOUO) Limiting Access to Video Equipment. Access to mobile phones, video recording devices, digital cameras, and Web cams would allow subjects to photograph law enforcement personnel. These pictures and videos may then be uploaded to the Internet and included in “doxes” of law enforcement.
• (U//FOUO) Limiting Access to Mobile Devices. Subjects may attempt to contact other Anonymous members to alert members of law enforcement presence, through making phone calls, sending text messages, and accessing social networking sites using mobile devices. Members have been known to access Internet Relay Chat (IRC) channels through mobile phones, therefore subjects may be able to communicate with other members without appearing to be on the Internet.
• (U//FOUO) Being Aware of Encryption Methods. Further efforts that may impede intelligence collection include encryption techniques such as full disk encryption. In these instances, information may be lost if suspects are notified before the search warrant is executed and the computer is turned off prior to law enforcement arrival.
• (U//FOUO) Obtaining Proper Consent for Minors. Some of the subjects of Anonymous are minors, which may hinder intelligence collection. Differences in state authorities designating the age at which someone is considered a minor may make it difficult to interview these subjects. Proper approval and parental consent may be required prior to contacting a minor and collecting information.
// BUT IN THE END THEY KNOW THEY ARE FUXX0R3D!
• (U//FOUO) According to congressional testimony from February of this year, government and private sector groups are concerned by the lack of overall authority and strategic direction in regards to cyberattack defense. There is no clear agreement between Congress, the White House, Pentagon, Central Intelligence Agency, Department of Homeland Security, and other stakeholders regarding where responsibilities lie with regard to various networks, and which department should respond to cyberattack scenarios.
• (U) Outlook
• (U//FOUO) Cyber threats will likely continue to increase and evolve in 2011 and beyond. User vigilance is the first line of defense in protecting information and assets. Appendices A, B and C contain detailed lists of threats and possible mitigation techniques; some areas may contain overlap. Follow your agency’s protocol for handling cyber threats and attacks, and report all major incidents to the JRIC via e-mail at leads@jric.org, or by phone at (562) 345-1100.
Læs hele balladen her.
Anonymous hacker Specialforces.com
Her er en redegørelse fra hacker fællesskabet ‘Anonymous’ om angebet mod specialforces.com, sidste år:
/*******************************************************************************
SPECIALFORCES.COM MILITARY AND POLICE SUPPLY STORE: OWNED AND EXPOSED
*******************************************************************************/
Welcome to the next owning in this issue. In our ongoing efforts to destroy the military and prison industrial complex at the point of production, we targeted the online police equipment supply store SpecialForces.com. Their 15,000 customers are mostly composed of military and police officers, and they're all going to be very mad when they hear how all their personal information has been plastered all over the internet. But that's just what happens when you support corporations that traffic in weaponry used by the soulless swine of the state to beat up protesters!!
We weren't planning on releasing this anytime soon, but since priv8 password lists were leaked early and news articles and rumors are starting to circulate, it's time to set the story of this owning straight. We were briefly working with another hacker Abhaxas, who some might know as movl from back in the day. One of the targets we worked on together was this SpecialForces.com online store. We rooted it and grabbed all their databases and private email spools. However, unlike many groupies and script kiddies who are quick to rush and dump half-owned targets to pastebin, we made a decision to hold off on publishing anything too soon until the passwords and credit cards were properly used and abused to their fullest potential. Then Abhaxas pulls some sketchy shit. Between his suspicious social engineering plot where he emailed dozens of FBI across the country offering up info about our group, and then he disappeared after being doxed by his ex-girlfriend x25_princess in the aftermath of a public harsh twitter breakup, there's not much more to do except cut it off and stay quiet. But then he popped back up months later and ran his mouth on twitter about how he was responsible for the all our hax because of this one dump from "his" hack. Oh really? You found an open /cart/install directory and brought us a few DB dumps where the passwords and credit cards were encrypted with blowfish and you didn't have the key or access anymore. And at this point because of the very verbose and obvious entry point, the sysadmin was aware of the hack and locked the box down. Or so he thought. Who broke back into the box? Who rooted and backdoored it? Who stole the encryption keys and wrote to parse and dump all the passwords and ccs into cleartext? Who dumped 6GBs of private mail spools? Who hilariously taunted the sysadmin while killing his root bash processes while he was online?
Now that the password list has been dumped, the cat's out of the bag on this target. The programmer Dave Thomas was already quoted in the news has having notified his customers. So we may as well dump the rest: the cleartext credit card, password, and home addresses for several thousand mostly military and police customers. How did they take the news, Dave? It is unfortunate that we were so busy owning other targets that we never had enough time to exploit these lists to its fullest (within fifteen minutes of checking random emails someone was able to access a web-based prison phone management system, even going so far as disabling the recording features). No matter: the release of the home addresses and credit card information of all these will guarantee these agents and supporters of the 1% will sleep with one eye open well into 2012.
Plus we didn't want to let a good hacklog go to waste. BUST THAT SHIT OUT !!!
# uname -a
Linux ip-208-109-219-15.ip.secureserver.net 2.6.18-8.1.15.el5 #1 SMP Mon Oct 22 08:32:04 EDT 2007 i686 i686 i386 GNU/Linux
# cat /etc/shadow
root:$1$lr0e4BnN$q2GEqgZqekcfmlQ/BDdEz0:15196:0:99999:7:::
Læs hele balladen her.
Occupy 2012 – The Rap News
En rigtig sjov nytårsudgave fra Rap News, om hvad vi mon kan vente os i 2012.
Anonymous hacker Sony igen
Som en reaktion på Sony’s støtte til USA’s såkaldte ‘Stop Online Piracy Act’ (SOPA) har det internationale hackerfællesskab Anonymous igen angrebet Sony. Både Sony Pictures website og facebook side blev angrebet og Anonymous hævder at have skaffet sig administrator adgang til Sony’s servere.
Anonymous afslører nynazister
En afdeling af det internationale hackerfællesskab kendt som Anonymous anoncerer angreb mod nynazister og offentliggør mængder af e-mail, navne og fotografier af nazister.
Anonymous i julehumør
We are anonymous. We are Legion. We do not forgive. We do not forget. Expect us.
I ugen mellem jul og nytår har Anonymous lagt i ovnen til en række hacking aktioner, de første har allerede fået den særlige julestemning at mærke. Stratfor Global Intelligence Service blev således hacket juleaften. Deres website blev lagt ned og ‘defaced’, deres kundekartotek blev kopieret, ligesom tusindevis af deres e-mail og kreditkort informationer blev det. Og nu er 1 million $ på vej, som anonyme donationer, til bl.a. Røde Kors, Save the Children og CARE. Af kundekartoteket kan man bl.a. se at Bank of America, US Defence Dept., Lockheed Martin og Los Alamos National Laboratory er blandt kunderne hos Statfor Global. Det meste af weekenden var meddelelsen: “Marry Lulzxmas! Are you ready for a week of mayhem?” eneste indhold på sikkerhedsfirmaets hjemmeside. Og mandag (idag) er hjemmesiden stadig nede og indeholder kun en besked om at siden er under vedligeholdelse.
News from Anonymous
Greetings, Citizens of the World,
The internet is in danger of an oppressive new law that will allow the Federal Government of the United States to shut down, arrest, fine and prosecute any website and it’s operator(s) at the behest of corporations who can and do stand to profit from weaponized censorship. The goal of the so-called ‘Stop Online Piracy Act’ SOPA is to empower litigious U.S. corporations to police the internet, with the ability to act as judge, jury and executioner. SOPA tramples civil rights laws, fair use, freedom of press and freedom of speech. Under SOPA an average person could be arrested, fined, sued and spend time in a federal prison for so little as uploading a video to YouTube or even linking to one. This law further proves the reality of corporate rule and totalitarianism.
Recently the vote on SOPA was delayed until early 2012 due to dissenting influence and the backlash of the immense number of core internet services that this bill targets. In a democracy this should be enough to defeat the bill, however, in the U.S. it only means that the vote will get delayed until the media loses interest and the backing corporate lobbyists have enough time to “influence” [read: bribe] the vote to their favour. However, it has been clandestinely moved forward in an attempt to fast track the law under the radar of a culture drunk on materialistic obsession — as such The House Judiciary Committee is reconvening on the 21st of December. In short, we were lied to.
While it was the intent to give people little time to react, our reaction will not be little. This oligarchy rules without democracy, consent or support; it fears us, it fears protesters, it fears the solidarity of the Occupy Movement, it fears the 99%, it fears YOU. The Federal Government currently perches on the narrow brink of collapse, lets give it a nice hard push. We simply do not need or want the future they’re trying to sell us. No government can exist that we, the people, refuse to support. It’s time to revoke that consent. It’s time to spread the message of dissent everywhere. Show those who have, and continue to, grant themselves nearly unlimited power how great the force is that rises up en masse to oppose their tyranny.
We are Anonymous.
We are legion.
We are everyone.
We are everywhere.
We are you.
We do not forgive.
We do not forget.
This is our world, and we’re taking it back.
Expect us.
Santa is going to find out who is naughty or nice
Trailer til en finsk film om julemanden

