Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Risk

9/20/2010
11:56 AM
Connect Directly
Twitter
LinkedIn
RSS
E-Mail
50%
50%

Piracy Activists Attack Entertainment Industry Sites

Distributed denial of service strikes hit Motion Picture Association of America, Recording Industry Association of America over the weekend.

19 Gadgets That Changed The World
19 Gadgets That Changed The World
(click image for larger view and for full photo gallery)
Piracy proponents created distributed denial of service (DDoS) attacks against music and film websites in the United States over the weekend, and threatened to launch a similar attack in the United Kingdom Monday.

The Motion Picture Association of America (MPAA) -- the major lobbying arm of the film industry and one of the most vocal foes of illicit file sharing of entertainment materials -- was down for most of the day on Saturday, according to piracy blog Torrentfreak. In addition, the website operated by the Recording Industry Association of America (RIAA), which combats music piracy, was offline for much of Sunday. Hackers have threatened to target the website of the British Phonographic Industry (BPI) today, although the site was operating normally Monday morning.

"We brought them down the same way they brought down The Pirate Bay, with a distributed denial of service," the group said in message posted on the web. "They struck first, we struck harder."

Hackers used the 4chan message boards to share plans of the attack, dubbed Operation Payback. In addition to the music and film sites, hackers also last week took down Aiplex Software, a provider of movie-piracy prevention services.

"While it's claimed that Aiplex was taken down by a single attacker, the ongoing assault on the MPAA.org website is definitely a group effort. The site was attacked on schedule (9pm eastern time yesterday) and taken down in minutes," said enigmax on Torrentfreak.

The attacks were allegedly started as retaliation for comments made by Aiplex in an Australian newspaper. On Sept. 8, Girish Kumar, managing director of Aiplex, told the Sydney Morning Herald that the film industry hired his company to launch cyber hitmen on sites that host pirated movies but didn't respond to copyright infringement notices.

If sites do not respond to Aiplex's requests to remove links or copies of pirated movies, Aiplex launches a denial of service attacks, Kumar told the Herald. Movie companies that use Aiplex's services include about 30 Bollywood studios and Fox STAR Studios, a joint venture between India's Star TV and 20th Century Fox, he said.

Earlier this month, three adult content providers filed lawsuits against hundreds of people, accusing them of pirating the companies' content using the BitTorrent peer-to-peer (P2P) network.

For Further Reading

Adult Content Producers Take On BitTorrent Traders

Prosecutors Reduce Charges Against The Pirate Bay

Pirate Bay's '$675,000 Mixtape' Irks RIAA

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
COVID-19: Latest Security News & Commentary
Dark Reading Staff 11/19/2020
New Proposed DNS Security Features Released
Kelly Jackson Higgins, Executive Editor at Dark Reading,  11/19/2020
How to Identify Cobalt Strike on Your Network
Zohar Buber, Security Analyst,  11/18/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win an Amazon Gift Card! Click Here
Latest Comment: A GONG is as good as a cyber attack.
Current Issue
2021 Top Enterprise IT Trends
We've identified the key trends that are poised to impact the IT landscape in 2021. Find out why they're important and how they will affect you today!
Flash Poll
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-26890
PUBLISHED: 2020-11-24
Matrix Synapse before 1.20.0 erroneously permits non-standard NaN, Infinity, and -Infinity JSON values in fields of m.room.member events, allowing remote attackers to execute a denial of service attack against the federation and common Matrix clients. If such a malformed event is accepted into the r...
CVE-2020-28348
PUBLISHED: 2020-11-24
HashiCorp Nomad and Nomad Enterprise 0.9.0 up to 0.12.7 client Docker file sandbox feature may be subverted when not explicitly disabled or when using a volume mount type. Fixed in 0.12.8, 0.11.7, and 0.10.8.
CVE-2020-15928
PUBLISHED: 2020-11-24
In Ortus TestBox 2.4.0 through 4.1.0, unvalidated query string parameters to test-browser/index.cfm allow directory traversal.
CVE-2020-15929
PUBLISHED: 2020-11-24
In Ortus TestBox 2.4.0 through 4.1.0, unvalidated query string parameters passed to system/runners/HTMLRunner.cfm allow an attacker to write an arbitrary CFM file (within the application's context) containing attacker-defined CFML tags, leading to Remote Code Execution.
CVE-2020-28991
PUBLISHED: 2020-11-24
Gitea 0.9.99 through 1.12.x before 1.12.6 does not prevent a git protocol path that specifies a TCP port number and also contains newlines (with URL encoding) in ParseRemoteAddr in modules/auth/repo_form.go.