FBI Directs Anonymous Hack-Attacks Then Complains About Them

Hammond said: 'I took responsibility by pleading guilty, but when will the government be made to answer for its crimes?' Photograph: Michael Gottschalk/AFPThanks to Golden Age of Gaia.

Hammond said: ‘I took responsibility by pleading guilty, but when will the government be made to answer for its crimes?’ Photograph: Michael Gottschalk/AFP

sage:  Just to show how silly the 3-letter agencies are getting in their last gasps of existence:  In Story 1, a convicted Anonymous hacker reveals how the FBI directed them to break into government websites around the world.  Then, in Story 2, the FBI has the audacity to announce that Anonymous has “launched a rash of electronic (government) break-ins” in the past year. 

This brings to mind how the FBI has been behind, or at least involved in, several “attacks” in the recent past; the most notably the attack on Obama in the White House this year.

Story 1 – Jeremy Hammond: FBI Directed My Attacks on Foreign Government Sites

By Ed Pilkington, The Guardian – November 15, 2013

http://tinyurl.com/kaoupov

The Anonymous hacktivist sentenced on Friday to 10 years in federal prison for his role in releasing thousands of emails from the private intelligence firm Stratfor has told a Manhattan court that he was directed by an FBI informant to break into the official websites of several governments around the world.

Jeremy Hammond, 28, told a federal court for the southern district of New York that a fellow hacker who went under the internet pseudonym “Sabu” had supplied him with lists of websites that were vulnerable to attack, including those of many foreign countries. The defendant mentioned specifically Brazil, Iran and Turkey before being stopped by judge Loretta Preska, who had ruled previously that the names of all the countries involved should be redacted to retain their secrecy.

Within a couple of hours of the hearing, the three countries had been identified publicly by Forbes, the Huffington Post and Twitter feeds serving more than a million followers. “I broke into numerous sites and handed over passwords and backdoors that enabled Sabu – and by extension his FBI handlers – to control these targets,” Hammond told the court.

The 28-year-old hacker has floated the theory in the past that he was used as part of an effective private army by the FBI to target vulnerable foreign government websites, using the informant Sabu – real name Hector Xavier Monsegur – as a go-between.

Sabu, who was a leading figure in the Anonymous-affiliated hacking group LulzSec, was turned by the FBI into one of its primary informants on the hacker world after he was arrested in 2011, about six months before the Stratfor website was breached.

Referring to the hacking of foreign government websites, Hammond said that in one instance, he and Sabu provided details on how to crack into the websites of one particular unidentified country to other hackers who then went on to deface and destroy those websites. “I don’t know how other information I provided to [Sabu] may have been used, but I think the government’s collection and use of this data needs to be investigated,” he told the court

He added: “The government celebrates my conviction and imprisonment, hoping that it will close the door on the full story. I took responsibility for my actions, by pleading guilty, but when will the government be made to answer for its crimes?”

Hammond’s 10-year federal prison service makes it one of the longest punishments dished out for criminal hacking offences in US history. It joins a lengthening line of long jail terms imposed on hackers and whistleblowers as part of the US authorities’ attempt to contain data security of government agencies and corporations in the digital age.

Preska also imposed a three-year period of probationary supervision once Hammond is released from jail that included extraordinary measures designed to prevent him ever hacking again. The terms of the supervision state that when he is out of prison he must: have no contact with “electronic civil disobedience websites or organisations”; have all his internet activity monitored; subject himself to searches of his body, house, car or any other possessions at any time without warrant; and never do anything to hide his identity on the internet.

Hammond’s 10-year sentence was the maximum available to the judge after he pleaded guilty to one count of the Computer Fraud and Abuse Act (CFAA) relating to his December 2011 breach of the website of the Austin, Texas-based private intelligence company Strategic Forecasting, Inc.

Delivering the sentence, Preska dismissed the defendant’s explanation of his motivation as one of concern for social justice, saying that he had in fact intended to create “maximum mayhem”. “There is nothing high-minded and public-spirited about causing mayhem,” the judge said.

She quoted from comments made by Hammond under various internet handles at the time of the Stratfor hack in which he had talked about his goal of “destroying the heart, hoping for bankruptcy, collapse”. She criticised what she called his “unrepentant recidivism – he has an almost unbroken record of offences that demonstrate an almost total disrespect for the law.”

Before the sentence came down, Hammond read out an outspoken statement to court in which he said he had been motivated to join the hacker group Anonymous because of a desire to “continue the work of exposing and confronting corruption”.

He said he had been “particularly moved by the heroic actions of Chelsea Manning, who had exposed the atrocities committed by US forces in Iraq and Afghanistan. She took an enormous personal risk to leak this information – believing that the public had a right to know and hoping that her disclosures would be a positive step to end these abuses.”

In his own case, he said that as a result of the Stratfor hack, “some of the dangers of the unregulated private intelligence industry are now known. It has been revealed through Wikileaks and other journalists around the world that Stratfor maintained a worldwide network of informants that they used to engage in intrusive and possibly illegal surveillance activities on behalf of large multinational corporations.”

Margaret Kunstler, Hammond’s lead defence lawyer, told the Guardian after the sentencing that the maximum punishment was “not a great surprise”. She said that Preska had turned Hammond’s own comments in web chats against him, “but I think she doesn’t understand the language that’s used in chat rooms and the internet – for her to have used such language against him and not understand what his comments meant seemed piggy to say the least.”

Campaigners say the Anonymous attacks were in retaliation for overzealous prosecution of hackers. Photograph: Alex Milan Tracy/Demotix/CorbisCampaigners say the Anonymous attacks were in retaliation for overzealous prosecution of hackers. Photograph: Alex Milan Tracy/Demotix/Corbis

Story 2 – FBI Warns That Anonymous HasHhacked US Government Sites For a Year

The Guardian – November 16, 2013

http://tinyurl.com/mo6rgar

Official memo says that activist collective launched a rash of electronic break-ins beginning last December.

Activist hackers linked to the collective known as Anonymous have secretly accessed US government computers and stolen sensitive information in a campaign that began almost a year ago, the FBI warned this week.

The hackers exploited a flaw in Adobe Systems Inc’s software to launch a rash of electronic break-ins that began last December, the FBI said in a memo seen by Reuters, then left “back doors” to return to many of the machines as recently as last month.

The news comes a day after an Anonymous activist received a 10-year sentence for his role in releasing thousands of emails from the private intelligence firm Stratfor. On Friday Jeremy Hammond told a Manhattan court he had been directed by an FBI informant to break into the official websites of several governments around the world.

Hammond, who called his sentence a”vengeful, spiteful act”, said of his prosecutors: “They have made it clear they are trying to send a message to others who come after me. A lot of it is because they got slapped around, they were embarrassed by Anonymous and they feel that they need to save face.”

He also said the FBI had directed his attacks on foreign websites: “The government celebrates my conviction and imprisonment, hoping that it will close the door on the full story. I took responsibility for my actions, by pleading guilty, but when will the government be made to answer for its crimes?”

The FBI memo about the Adobe Systems attacks, which was distributed on Thursday, described the attacks as “a widespread problem that should be addressed”. It said the breach affected the US army, Department of Energy, Department of Health and Human Services, and perhaps many more agencies.

Officials said the hacking was linked to the case of Lauri Love, a British resident indicted on 28 October for allegedly hacking into computers at the Department of Energy, army, Department of Health and Human Services, the US Sentencing Commission and elsewhere. Investigators believe the attacks began when Love and others took advantage of a security flaw in Adobe’s ColdFusion software, which is used to build websites.

Investigators are still gathering information on the scope of the cyber campaign, which the authorities believe is continuing. The FBI document tells system administrators what to look for to determine if their systems are compromised.

An FBI spokeswoman declined to elaborate.

According to an internal email from Kevin Knobloch, chief of staff to the energy secretary, Ernest Moniz, the stolen data included personal information on at least 104,000 employees, contractors, family members and others associated with the Department of Energy, along with information on almost 2,0000 bank accounts. The email, dated 11 October, said officials were “very concerned” that the loss of the banking information could lead to thieving attempts.

An Adobe spokeswoman, Heather Edell, said she was not familiar with the FBI report. She added that the company has found that the majority of attacks involving its software have exploited programs that were not updated with the latest security patches.

The Anonymous group is a collective that conducts multiple hacking campaigns at any time, some with a few participants and some with hundreds. Its members have disrupted eBay Inc’s PayPal after it stopped processing donations to the anti-secrecy site Wikileaks. Anonymous has also launched more sophisticated attacks against Sony Corp and the security firm HBGary Federal.

Some of the breaches and stolen data in the latest campaign had previously been publicised by people who identify with Anonymous, as part of what the group dubbed “Operation Last Resort”. Among other things, the campaigners said the operation was in retaliation for overzealous prosecution of hackers, including the lengthy penalties sought for Aaron Swartz, a well-known computer programmer and internet activist who killed himself before a trial over charges that he illegally downloaded academic journal articles from a digital library known as JSTOR.

Despite the earlier disclosures, “the majority of the intrusions have not yet been made publicly known,” the FBI wrote. “It is unknown exactly how many systems have been compromised, but it is a widespread problem that should be addressed.”

Share your thoughts

This site uses Akismet to reduce spam. Learn how your comment data is processed.