The Operation Red October espionage campaign was exposed on Monday (1/14/13) by Russian anti-virus software maker Kaspersky Lab. The Red October network was found to target hundreds of diplomatic, governmental, and scientific organizations in at least 39 countries, including the Russian Federation (the most frequent target), Iran, Kazakhstan, Azerbaijan, Belgium, India, Afghanistan, Armenia, Turkmenistan, and…
Category: Computers & Programming
Java vulnerability said to be “massively exploited” and already present in most exploit kits
A previously unknown and currently unpatched vulnerability in the latest version of Java is being “massively exploited” according to researchers. Code that exploits the vulnerability has been added to Blackhole, Cool, Nuclear Pack, and Redkit exploit kits. The attack code is reportedly “highly obfuscated” meaning it’s likely getting past security checks. According to researchers, the…
Hollywood hacker sentenced to 10 years in prison for hacking personal accounts of celebrity stars
Signalling the conclusion of “Operation Hackerazzi”, a federal judge today sentenced Christopher Chaney, 35, of Jacksonville, Florida to 10 years in prison. Chaney had plead guilty to several counts including wiretapping and unauthorized access to a computer. Chaney allegedly accessed the personal email accounts of more than 50 people in the Hollywood entertainment industry between…
Expert unveils 25-GPU cluster that can crack any eight-char Windows password in less than 6 hours
This 25-GPU cluster can cycle through 350 billion guesses per second and brute force any eight-character Windows password containing upper- and lower-case letters, digits, and symbols in under 6 hours. That is a total of 958 combinations in less than six hours. The GPU cluster is Linux based and features 25 AMD Radeon graphics cards…
Spate of hotel breakins in Texas attributed to recent Brocious hotel keycard hack
In July 2012 at a Black Hat conference, Cody Brocious demonstrated how he could hack the keycard system used in hotels by spoofing the “portable programmer” device meant to be used for designating master keys and opening Onity brand locks whose batteries had died. With his $50 homemade device, he could insert the plug of…
For the third straight year, Feds swarm counterfeit websites taking 132 sites offline on Cyber Monday
For the third straight year, Feds have swarmed and seized websites selling counterfeit merchandise on Cyber Monday. The bust involved a coordinated and concerted effort between the United States, Belgium, Denmark, France, Romania, the United Kingdom. Federal law enforcement officials made undercover purchases on the suspected websites, purchasing items such as sports jerseys, DVD players,…
Cisco VP to employee who leaked embarrassing confidential memo to blog: “Finding you is now my hobby”
Network world ran an article last month in which they claimed that California State University was ousting Cisco and replacing their campus’ network equipment with thousands of Alcatel-Lucent OmniSwitches. The cost of the project is $22 million. With Cisco products the costs would have been $122 million – $100 million more expensive. Cisco followed up…
Israel building out its elite “cyber warrior” combat group – Aman’s Intelligence Corps Unit 8200
The Jewish state is currently searching for young cyber-warriors to staff its Intelligence Corps Unit 8200 group, an elite cyber-warrior combat group led by Major General Ben Israel, in what it deems a high-priority operation. The move is in response to Iran’s new cyber command group which was formed more than a year ago. Most…
As Guy Fawkes day begins, sites stop dropping like flies – multiple NBC sites hacked
As November 5 dawned in European countries, those celebrating Guy Fawkes day (ahem, Anonymous) began dropping webistes like flies. Multiple NBC websites were hacked including the NBC mobile landing page, Saturday Night Live, Jimmy Fallon’s page, Jay Leno pages, and NBC Sports Rotoworld. Pages were replaced with various incarnations including a nice red on black…
Thieves take advantage of bank software bug to steal $1 million from cash advance machines without overdrawing accounts
Citigroup software includes a mechanism intended to prevent the same “cash advance kiosk” withdrawal from being posted twice to an account. If near identical, near simultaneous transactions are submitted, the system is programmed to ignore all but one of the transactions. Thieves in California and Nevada discovered the flaw and took advantage of it.








