Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Subscribe
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Subscribe
    Home Cybersecurity
    • Cybersecurity
    • Networking
    • Storage

    Anonymous, LulzSec Dump Data from 70 Sheriffs’ Offices

    Written by

    Fahmida Y. Rashid
    Published August 8, 2011
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      Under the banner of its “AntiSec” campaign, the so-called “hacktivist” collective Anonymous and its counterparts in the recently resurrected LulzSec struck again, this time going after multiple law enforcement agencies in the United States, Ecuador and Brazil. The group also defaced Websites belonging to the Syrian and Colombian governments.

      The attackers uploaded a 7.4GB file via BitTorrent on Aug. 6; the file contained more than 300 email boxes from 56 different law enforcement domains, personal details belonging to more than 7,000 sheriffs in Missouri, online police-training videos, and a list of 60 people who called in about Anonymous on the tips hotline. Dubbed “Shooting the Sheriffs,” the file contained personal details such as user names, passwords, home addresses, telephone numbers and Social Security numbers.

      All in all, 70 law enforcement agencies, mostly rural sheriffs, were hit in the latest AntiSec campaign. The stolen data came from 76 Websites in 11 states, including Arkansas, Louisiana, Kansas, Missouri and Mississippi, and was stolen during the July 31 attack. The current dump appears to be related to the sample of Social Security numbers belonging to 100 police officers that Anonymous leaked previously.

      “We are doing this in solidarity with Topiary and the Anonymous PayPal LOIC defendants as well as all other political prisoners who are facing the gun of the crooked court system,” the attackers wrote in the file’s summary on BitTorrent.

      Topiary refers to the spokesperson of LulzSec, who the British police arrested in Scotland last month and charged with five counts of computer misuse, including unauthorized access to a computer system, encouraging or assisting offenses, conspiracy to carry out distributed denial-of-service attacks, and conspiracy to commit computer misuse offenses. He is out on bail and is banned from using the Internet.

      The Federal Bureau of Investigation also arrested 16 individuals in July for participating in a distributed denial-of-service attack against PayPal earlier in the year using the Low Orbit Ion Cannon tool.

      Anonymous said the goal was to “embarrass, discredit and incriminate police officers across the U.S.,” in retaliation for the ongoing arrests of Anonymous members.

      Mountain Home, Ark.-based online marketing firm Brooks-Jeffrey Marketing hosted and managed Websites for the affected law enforcement agencies. The attackers discovered a vulnerability in BJM’s servers that allowed them access, according to the AntiSec press release. It appears that BJM discovered the data breach against several of its law enforcement Websites on its platform and took them offline, but failed to fix the underlying vulnerability or remove the backdoor code before adding new sites.

      “We were surprised and delighted to see that not only did they relaunch a few sites less than a week later, but that their ‘bigger, faster server that offers more security’ carried over our backdoors from their original box,” said the AntiSec statement. “This time, we were not going to hesitate to pull the trigger: In less than an hour, we rooted their new server and defaced all 70+ domains, while their root user was still logged in and active.”

      Application Security CTO Josh Shaul told eWEEK in the past that IT administrators often just close the security hole when a breach is detected, but neglect to perform a full audit to check for other vulnerabilities or changes the attackers made. This way, backdoor code and malware remains undiscovered and allows attackers to re-compromise the system repeatedly.

      The attackers also created a backdoor into BJM’s online store, captured credit card numbers and used them to make “involuntary donations” to varied organizations such as the American Civil Liberties Union, the Electronic Freedom Foundation and the Bradley Manning Support Network.

      “The fact that credit card numbers were stolen and used because they were stored in the clear just shows that companies need to understand how to protect sensitive data on servers exposed to the Internet,” Wasim Ahmad, vice-president of data security at Voltage Security, told eWEEK. Data-centric encryption techniques should have been used, Ahmad said.

      Anonymous members also defaced the Syrian ministry of defense Website to protest the government’s deadly crackdown against demonstrators; defaced Facebook and Twitter accounts belonging to German Vargas Lleras, Colombia’s minister of the interior, to protest a new copyright law; and released information about 45,000 Ecuadorian police officers after the government said it would prosecute Anonymous participants.

      On the Syrian Website, the group posted statements in Arabic and English, with the English statement expressing support for Syrian demonstrators: “The world stands with you against the brutal regime of [Syrian President] Bashar Al-Assad.”

      Hackers in Brazil leaked 8GB of data relating to Operation Satiagraha, a Federal Police investigation that resulted in a corruption conviction for a prominent banker recently. The dump included sensitive documents, audio files, telephone wiretap transcripts, video and photographs.

      Fahmida Y. Rashid
      Fahmida Y. Rashid

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.