Feeds

Cyber-jihad fails to materialise

Bruce Willis stood down

SANS - Survey on application security programs

A much hyped cyber-jihad by Islamist s'kiddie hackers on Western websites failed to materialise on Sunday.

The SANS Institute's Internet Storm Centre reports that 11 November passed off normally. So Bruce Willis, fresh from a cinematic outing battling cybergeddon in Die Hard 4pointless.0 can hang up his miraculous colour-changing singlet.

Rumours of the planned attack first surfaced in Israeli intelligence magazine DEBKAfile late last week. It reported that an Islamist website was calling on true believers to mount an attack on the forces of Western, Jewish, Israeli, Muslim apostate and Shiite Websites.

Rather than launching the supposed assault without notice and through a network of compromised machines, the Islamists are reportedly looking to rally recruits to download a package called Electronic Jihad Version 2.0. Instructions on how to use the malign version of Seti@Home for would-be cyber-jihadis will be made available across an impenetrable email network, the organisers of the effort reportedly claim.

Days later a revamped DIY DDoS package - dubbed Electronic Program of Jihad - surfaced online. Others tools also arrived on the scene.

Finnish anti-virus firm F-Secure downloaded one such a tool, a package called E-Jihad30.exe from a site named al-jinan.net (the site is now inactive).

"This tool creates a botnet using a server at jo-uf.net - a domain registered to Iraq," it reports. "However, we've been monitoring this server all day and its IP address continues to point to 127.0.0.1. So at least regarding this botnet, nothing's gonna happen."

It's not the first time rumours of a forthcoming cyber-jihad have surfaced. In December 2006, the US Department of Homeland Security warned banks and infrastructure firm of a possible electronic attack. Nothing much happened then either. The DHS might argue that the warning caused the attack to be aborted or defences to be put in place in time.

Rather than mass attacks that fail to materialise, the pattern of low-level attacks (often featuring web defacements) by Islamic hackers is real and has been ongoing for some time. Defacement activities tend to flare up when incidents like the depiction of the Prophet Mohammed by Danish newspapers hit the news, but they remain at a low level more or less constantly. ®

High performance access to file storage

More from The Register

next story
Obama allows NSA to exploit 0-days: report
If the spooks say they need it, they get it
Putin tells Snowden: Russia conducts no US-style mass surveillance
Gov't is too broke for that, Russian prez says
Snowden-inspired crypto-email service Lavaboom launches
German service pays tribute to Lavabit
Mounties always get their man: Heartbleed 'hacker', 19, CUFFED
Canadian teen accused of raiding tax computers using OpenSSL bug
One year on: diplomatic fail as Chinese APT gangs get back to work
Mandiant says past 12 months shows Beijing won't call off its hackers
Heartbleed exploit, inoculation, both released
File under 'this is going to hurt you more than it hurts me'
Arts and crafts store Michaels says 3 million credit cards exposed in breach
Meanwhile, Target investigators prepare for long process in nabbing hackers
prev story

Whitepapers

SANS - Survey on application security programs
In this whitepaper learn about the state of application security programs and practices of 488 surveyed respondents, and discover how mature and effective these programs are.
Combat fraud and increase customer satisfaction
Based on their experience using HP ArcSight Enterprise Security Manager for IT security operations, Finansbank moved to HP ArcSight ESM for fraud management.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Top three mobile application threats
Learn about three of the top mobile application security threats facing businesses today and recommendations on how to mitigate the risk.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.