Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Risk

11/16/2011
02:28 PM
Connect Directly
Twitter
RSS
E-Mail
50%
50%

Romanian Accused Of NASA Hacks

A 26-year-old Romanian man stands accused of hacking into NASA servers, modifying data, and restricting access to them last December.

NASA, Microsoft Reveal Mars In Pictures
(click image for larger view)
Slideshow: NASA, Microsoft Reveal Mars In Pictures
Romanian police have ordered the detention of a 26-year-old man accused of hacking into NASA servers last December and causing $500,000 worth of damage in the process, according to a statement by a Romanian law enforcement agency.

According to Romania's Directorate for Investigating Organized Crime and Terrorism (DIICOT), the man, Robert Butyka, hacked into several NASA servers on Dec. 12, 2010, modified and damage data on the servers and restricted access to them.

The authorities are detaining Butyka, a resident of Cluj-Napoca, Romania's fourth-largest city, on charges of circumvention of computer security measures and unauthorized disruption of the functioning of a computer, damage to computer data, and restriction of access to computer systems. Several computers were seized as evidence during a local police raid of Butyka's home.

[ The feds are moving to bust cyber criminals here and abroad. Read FBI Busts $14 Million Botnet Fraud Gang. ]

The Facebook page of Butyka, who reportedly goes by the online handle Iceman, is littered with notifications from Facebook apps, and links to a no longer working Website affiliated with his nom de guerre. A number of other websites associate the domain with malware.

Romania has been the source of a number of attacks, including a major international cybercrime ring that the Department of Justice helped bust up in 2008. In another major case, a Romanian hacker was convicted and imprisoned after repeatedly hacking into eBay in a series of actions that the auction website said resulted in millions of dollars of losses.

NASA has also been subject to Romanian hackers before. Victor Faur was charged in 2006 with 10 criminal counts for hacking into more than 150 government computers, including computers used for deep space research, and causing them to display messages indicating that they'd been hacked. He's now appealing the verdict against him. Earlier this year, a hacker with the online pseudonym TinKode exposed a security flaw in NASA Goddard Space Center's FTP site.

NASA did not respond to a request for comment in time for this article.

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
RBOOS000
50%
50%
RBOOS000,
User Rank: Apprentice
11/19/2011 | 4:56:14 PM
re: Romanian Accused Of NASA Hacks
If large organizations hadn't been so cheap in setting up the earliest computer systems, a lot of this crap would not be happening now. Banks, government agencies, stockbrokerage firms, etc. refused to incorporate effective encryption protection into their systems because they figured that the cost of doing that was greater than the costs they might incur if sued over breaches.
Data Leak Week: Billions of Sensitive Files Exposed Online
Kelly Jackson Higgins, Executive Editor at Dark Reading,  12/10/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment: Our Endpoint Protection system is a little outdated... 
Current Issue
The Year in Security: 2019
This Tech Digest provides a wrap up and overview of the year's top cybersecurity news stories. It was a year of new twists on old threats, with fears of another WannaCry-type worm and of a possible botnet army of Wi-Fi routers. But 2019 also underscored the risk of firmware and trusted security tools harboring dangerous holes that cybercriminals and nation-state hackers could readily abuse. Read more.
Flash Poll
Rethinking Enterprise Data Defense
Rethinking Enterprise Data Defense
Frustrated with recurring intrusions and breaches, cybersecurity professionals are questioning some of the industrys conventional wisdom. Heres a look at what theyre thinking about.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-19782
PUBLISHED: 2019-12-13
The FTP client in AceaXe Plus 1.0 allows a buffer overflow via a long EHLO response from an FTP server.
CVE-2019-19777
PUBLISHED: 2019-12-13
stb_image.h (aka the stb image loader) 2.23, as used in libsixel and other products, has a heap-based buffer over-read in stbi__load_main.
CVE-2019-19778
PUBLISHED: 2019-12-13
An issue was discovered in libsixel 1.8.2. There is a heap-based buffer over-read in the function load_sixel at loader.c.
CVE-2019-16777
PUBLISHED: 2019-12-13
Versions of the npm CLI prior to 6.13.4 are vulnerable to an Arbitrary File Overwrite. It fails to prevent existing globally-installed binaries to be overwritten by other package installations. For example, if a package was installed globally and created a serve binary, any subsequent installs of pa...
CVE-2019-16775
PUBLISHED: 2019-12-13
Versions of the npm CLI prior to 6.13.3 are vulnerable to an Arbitrary File Write. It is possible for packages to create symlinks to files outside of thenode_modules folder through the bin field upon installation. A properly constructed entry in the package.json bin field would allow a package publi...