Showing posts with label Hacked Team. Show all posts
Showing posts with label Hacked Team. Show all posts

Tuesday, 7 July 2015

Hacking Team Had Zero Day Vulnerabilities For Windows And Flash



The Italian developer of government spyware Hacking Team had zero day vulnerabilities for Windows and Adobe Flash Player, according to the files that were stolen from the company. Yesterday published attackers a file of about 400GB with all sorts of information that was captured by Hacking Team.

The files have now discovered two vulnerabilities for which no security update available yet, says security researcher The Grugq . It is a vulnerability in Windows that allows an attacker can increase his rights on the system. In this case, the attacker must already have access to the computer in order to use the leak. The second vulnerability is in Adobe Flash Player. Through this vulnerability, an attacker computers or completely take over, for example, when users visit a hacked or malicious website.

The embedded Flash Player in Google Chrome is vulnerable. According to security researcher Kevin Beaumont makes the leak is possible to escape from the sandbox of Chrome. Researcher Rik van Duijn of security Dear Bytes however, leaves know that a sandbox escape "through the published code is not possible and therefore a second exploit is required. Hacking Team, which develops spyware for government agencies, has in statement confirming that it has been hacked. "We think there are documents of the company have been stolen. We have launched an investigation to determine the extent of the attack and to determine what exactly is captured," said a spokesman. The company's website has been offline since yesterday.

Update

The National Cyber ​​Security Center (NCSC) government has a warning issued for the flaw in Flash Player. Through the leak, an attacker execute arbitrary code on the computer with the rights of the logged in user. The NCSC states that there is no update available for the leak yet.

Update 13:48

The attack on Hacking Team is claimed by the hacker who last year by spyware developer Gamma International managed to break in and there gigabytes of data was captured, says Vice Magazine . The hacker says soon come up with the details of how he managed to break into Hacking Team.

Update 15:09

Anti-virus company Symantec confirms that this is a zero-day vulnerability in the latest version of Flash Player. The virus firefighter expects that attackers will probably make use of the vulnerability.

Update 15:19

The CERT Coordination Center (CERT / CC) at Carnegie Mellon University warns also the vulnerability and says that users can protect themselves by installing Microsoft EMET unreliable or not Flash content to perform.

Hacking Team Gets Control Back Hacked Twitter Account


The Italian company Hacking Team spyware for governments to develop and victim of a very large hack became possible where all data was captured, has regained control over its own Twitter account after about 10 hours.

A group of attackers who "HackedTeam" named used the hijacked Twitter account to spread links to a torrent file containing the data that was captured at the break. It would go together to such a 400GB 500GB of data. How the attackers were able to gain access to the network is still unknown. The leaked documents would prove, however, that surveillance company weak passwords like "Passw0rd" used. In addition, should the software company SQL Injection vulnerabilities contain.

The burglary was also the source of all kinds of programs, as well as the software itself stolen. A number of the programs has now been on GitHub placed. Furthermore, it seems that the attackers hacked not only the company but also at least one employee of the company. The Gmail account of this employee would be hacked and his Twitter account. Meanwhile, the Gmail password changed and raised the Twitter account, so says a security engineer with the alias "bcrypt" via Twitter.Hacking Team's website is now also no longer accessible.

Monday, 6 July 2015

Italian Spyware Developer Hacked Hacking Team



Attackers have managed the controversial Italian surveillance operation and spyware developer Hacking Team to hack and thereby some have 400GB to 500GB of data captured, including financial data, software source code, e-mail and much more sensitive matters.

Hacking Team is a company that develops spyware for governments in recent years and was regularly in the news . The company's spyware would include being deployed by totalitarian regimes against activists. As Amnesty International showed a tool developed to detect the spyware Hacking Team. How the attackers, calling themselves Team Hacked call, access the data received is unknown. The stolen data is now distributed via .torrent files.

Evidenced by the now leaked information that the company customers in countries like Ethiopia, Sudan, Azerbaijan, Bahrain, Oman, Saudi Arabia has and the United Arab Emirates, but also Switzerland, Spain, Poland, Luxembourg, Germany and the United States found in the customer base, as on Hacker News reported, and would from a post on Pastebin appear. An anonymous source leaves in front of Vice Magazine that the attackers have managed to steal all company.

Last year was the German-British Gamma International, developer of the FinFisher spyware same. The website was hacked and then published attackers database, ultimately to parliamentary questions resulted in Netherlands. In an e-mail now to Hacking Team was captured late CEO and founder of the Italian surveillance company David Vincenzetti, bending over his rival hacked off. "A wannabe competitor of ours is severely compromised," he writes. Hacking Team has not yet responded to the burglary, which about nine days ago was announced.

Update

By now appear more and more details about the stolen data. There is an overview of the contents of the torrent file online appeared. Privacy activist Christopher Soghoian reports that the Italian company used illegal software, as there was a cracked version of a popular analysis tool found in the download. Another Twitter announced that the software Hacking Team vulnerable for SQL Injection.