Feeds

'Anonymous' to Reg hack: We know SEA leaders' names

Anonymous hacktivists say they've taken down Syrian Electronic Army hacktivists

Top three mobile application threats

Following the Syrian Electronic Army's (SEA's) attack on a Melbourne IT reseller which resulted in the temporary compromise of domain name records for targets as diverse as The New York Times and Twitter, a group claiming association with Anonymous now says it has compromised SEA databases and servers.

As first reported here (in French with NSFW images) and here by Brian Krebs, the attackers say they have compromised SEA servers, obtained members' names along with user IDs and passwords, and have copied gigabytes of SEA data.

The Twitter stream operated under the handle @blackplans includes screenshots which the operator of that account describes as showing the SEA's Parallels server, blog logins, and user credentials.

In an online chat with The Register, an “entity or person associated with Anonymous” confirmed the accuracy of the Krebs article, as well as the scale of the compromised data.

The @blackplans associate told El Reg Anonymous had already d0xed – that is, de-anoymised – “five core members” of the SEA.

While the SEA's Twitter account – @Official_SEA16 – has denied that it's been compromised and calls the screenshots fakes, the same signature is also used on a complaint posted at Pastebin, asserting that his story and others put individuals at risk of being “tracked and killed by the FSA” (Free Syrian Army).

The @blackplans associate said a group of individuals determined to attempt a breach on the SEA on the basis that the SEA works on behalf of the Syrian government. Performing the attack turned out to be relatively easy, he or she claimed. While unwilling to divulge specifics of techniques, “they left trails, nicknames, email addresses, modus operandi” and were therefore “easy to trace”.

Moreover, “they reuse passwords as well” – something that would considerably simplify breaching systems. Active members of the SEA are not restricted to Syria, @blackplans claimed, but also in Kuwait, Saudi Arabia and Indonesia. The breach also gave access to an account called @eagles_syrian which @blackplans described as associated with the SEA.

@Blackplans said it was decided not to leak all of the data obtained, to avoid the risk that some individuals in the databases would be killed.

Since Brian Krebs' article was published, leaks against the SEA include copies of banking scam phishing e-mails allegedly held in its systems. ®

Combat fraud and increase customer satisfaction

More from The Register

next story
Obama allows NSA to exploit 0-days: report
If the spooks say they need it, they get it
Heartbleed exploit, inoculation, both released
File under 'this is going to hurt you more than it hurts me'
Canadian taxman says hundreds pierced by Heartbleed SSL skewer
900 social insurance numbers nicked, says revenue watchman
German space centre endures cyber attack
Chinese code retrieved but NSA hack not ruled out
Burnt out on patches this month? Oracle's got 104 MORE fixes for you
Mass patch for issues across its software catalog
Reddit users discover iOS malware threat
'Unflod Baby Panda' looks to snatch Apple IDs
Oracle working on at least 13 Heartbleed fixes
Big Red's cloud is safe and Oracle Linux 6 has been patched, but Java has some issues
prev story

Whitepapers

Mainstay ROI - Does application security pay?
In this whitepaper learn how you and your enterprise might benefit from better software security.
Combat fraud and increase customer satisfaction
Based on their experience using HP ArcSight Enterprise Security Manager for IT security operations, Finansbank moved to HP ArcSight ESM for fraud management.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Top three mobile application threats
Learn about three of the top mobile application security threats facing businesses today and recommendations on how to mitigate the risk.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.