Attacks/Breaches
2/6/2012
12:17 PM
50%
50%

Who Is Anonymous: 10 Key Facts

Anonymous 'hacktivists' aim to expose what they call government and establishment hypocrisy. Take a closer look at the group, its offshoots, and its infamous attacks.
Previous
3 of 10
Next


One of the most fascinating chapters in Anonymous history concerned Aaron Barr, the CEO of HBGary Federal, who'd bragged about how he'd infiltrated Anonymous, and was set to reveal the identities of its key leaders. Anonymous responded by hacking into HBGary's email server less than 24 hours later, and claimed that a 16-year-old girl had socially engineered the social-media-friendly Barr. Anonymous (including future LulzSec leader Sabu, the rumor goes) then released a slew of emails claiming that HBGary had been retained by Bank of America--on the recommendation of the Department of Justice--to help it wage an anti-WikiLeaks campaign, after the whistle-blowing website claimed to have damning emails about the bank's practices. Other emails, meanwhile, detailed secret cyber-warfare tool-building programs, as well as legally questionable activities. Barr, meanwhile, cancelled his appearance on a DefCon July 2011 panel titled "Whoever Fights Monsters: Aaron Barr, Anonymous, and Ourselves."

Photo: Day 9 Occupy Wall Street September 25 2011 by David Shankbone, Flickr. Used with permission via a Creative Commons license.

RECOMMENDED READING

Black Hat Pwnies Nominate LulzSec, Anonymous

LulzSec Hackers Retire: Time To Rethink Risk

Cracking Bin Laden's Hard Drives

14 Enterprise Security Tips From Anonymous Hacker

Twitter Must Turn Over Records In Wikileaks Case

Previous
3 of 10
Next
Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
rjones2818
50%
50%
rjones2818,
User Rank: Strategist
5/22/2012 | 7:05:52 PM
re: Who Is Anonymous: 10 Key Facts
Interesting article. The Guy Fawkes mask idea is from the graphic novel for 'V for Vendetta' by Alan Moore and David Lloyd.
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2012-2808
Published: 2015-04-01
The PRNG implementation in the DNS resolver in Bionic in Android before 4.1.1 incorrectly uses time and PID information during the generation of random numbers for query ID values and UDP source ports, which makes it easier for remote attackers to spoof DNS responses by guessing these numbers, a rel...

CVE-2014-9713
Published: 2015-04-01
The default slapd configuration in the Debian openldap package 2.4.23-3 through 2.4.39-1.1 allows remote authenticated users to modify the user's permissions and other user attributes via unspecified vectors.

CVE-2015-0259
Published: 2015-04-01
OpenStack Compute (Nova) before 2014.1.4, 2014.2.x before 2014.2.3, and kilo before kilo-3 does not validate the origin of websocket requests, which allows remote attackers to hijack the authentication of users for access to consoles via a crafted webpage.

CVE-2015-0800
Published: 2015-04-01
The PRNG implementation in the DNS resolver in Mozilla Firefox (aka Fennec) before 37.0 on Android does not properly generate random numbers for query ID values and UDP source ports, which makes it easier for remote attackers to spoof DNS responses by guessing these numbers, a related issue to CVE-2...

CVE-2015-0801
Published: 2015-04-01
Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 allow remote attackers to bypass the Same Origin Policy and execute arbitrary JavaScript code with chrome privileges via vectors involving anchor navigation, a similar issue to CVE-2015-0818.

Dark Reading Radio
Archived Dark Reading Radio
Good hackers--aka security researchers--are worried about the possible legal and professional ramifications of President Obama's new proposed crackdown on cyber criminals.