Live data from Hacker News

Phineas Fisher's account of how he took down HackingTeam

ghostbin.com

61–70 of 105 posts

Re: Phineas Fisher's account of how he took down HackingTeam

#61

The border between what is "right" and what is "wrong" is very thin. What he did is illegal but it was right. I think people should be grateful to the ones that as he did, fight against what is legal but definitely wrong.

Did you get a chance to vote on the law that made what he did illegal?

Better yet, when was the lat time you got to vote on a law that was passed in your country?

Re: Phineas Fisher's account of how he took down HackingTeam

#62
post #58
post #17

Earlier quoted context omitted.

He's likely to be identified as he gets more brazen. Even authoring this volume of text is risky, and there are other notes from the same author linked within. Spelling can be used to approximate region and phrases or errors such as "the hard of the business" ("heart of") and "passtime" ("pastime") are even stronger markers. Of course there's no way to tell if these are unintentional or planted errata. I'm grateful f…

You comment about spelling and phrases reminds me of the NYT's Dialect Quiz Map. I tried it and it was accurately able to guess where I was originally from. While not useful by itself, I could see it being handy as part of an overall investigation.

Hadn't seen it before and so looked it up -- pretty neat. Unfortunately the "results page" was broken, but the individual questions & associated heatmaps were still very interesting. Thanks!

http://www.nytimes.com/interactive/2013/12/20/sunday-review/...

Re: Phineas Fisher's account of how he took down HackingTeam

#64

Earlier quoted context omitted.

I've heard conflicting information as far as this goes. Thinking this through- an adversary who's watching the block chain probably knows some inputs and some outputs. As in, these addresses belong to an exchange, these addresses belong to a hosting company. Okay, fine. Now remember than any user can literally create wallets out of thin air, and in fact doing so is considered basic security hygiene. Let's say Joe Use…

Nobody that I can remember has been able to identify the large bitcoin thefts over the years by tracking the coins, those people cashed out somehow. However the SEC filing on Pirateat40's ponzi scheme was remarkably detailed, they were able to track every single coin he received and prove he spent it on himself. I would imagine others use JoinMarket to mix up the coins[1], use coin control[2] to exchange for other cr…

[deleted]

Re: Phineas Fisher's account of how he took down HackingTeam

#65

> I want to dedicate this guide to the victims of the assault on the Armando Diaz school, and to all those whose blood has been spilled at the hands of Italian fascism. For those who don't know, they are referring to the 2001 Armando Diaz school attack [1] (warning: graphic), where hundreds of G8 pacific protesters were brutalized and tortured by Italian police. Whilst the police has been found guilty of this, none o…

That was the one sentence that stood out to me as well. I can imagine this was an incident that had a high impact on "Fisher". I remember watching a live-stream of the incident broadcasted from the building on the other side of the road (which was thankfully the building where my friends stayed).

My friends went inside the school after the raid and took pictures that I can't get out of my head to this day. The whole building looked like a slaughterhouse with blood everywhere. Blood-stains on radiators indicating that peoples heads were repeatedly smashed against them. I also remember the screams you could hear on the live-stream. First it was people yelling "pacifisti" and then just screams for 20min until the screaming stopped and ambulances arrived.

That shit really paves the way for young activists continuous fight against facism of any kind.

Re: Phineas Fisher's account of how he took down HackingTeam

#66
post #50

> I want to dedicate this guide to the victims of the assault on the Armando Diaz school, and to all those whose blood has been spilled at the hands of Italian fascism. For those who don't know, they are referring to the 2001 Armando Diaz school attack [1] (warning: graphic), where hundreds of G8 pacific protesters were brutalized and tortured by Italian police. Whilst the police has been found guilty of this, none o…

>> "hundreds of G8 pacific protesters were brutalized and tortured by Italian police. Whilst the police has been found guilty of this, none of the policemen is serving any jail time." If police commit crimes, they must be held accountable.

Not in Italy.

Re: Phineas Fisher's account of how he took down HackingTeam

#68
post #30

I was curious why he was using domain names instead of tor hidden service or other p2p networks. Turns out that using domain names provides a backup communications channel (DNS) that gets through pretty much any firewall.

The other thing to remember is that Tor traffic is generally rare and few places have a business case for it so it's more likely to be monitored, just as in the past many places used to watch for IRC connections since it was infinitely more likely to be a botnet control channel than Fred in accounting seeing whether #quickbooks existed.

DNS, HTTPS to some random AWS/Azure/etc. endpoint, etc. are common as dirt and enough harder to monitor that many places either don't try or struggle to do do effectively.

Re: Phineas Fisher's account of how he took down HackingTeam

#69
post #17

For anyone who doesn't follow infosec: This guy is responsible for two of the most impressive hacks recently and still hasn't been doxed or arrested. And so the linked doc is awesome if only for the opsec tips it provides. And it provides much more than that. It really gives you some perspective on how much work an attacker will put into breaking into your network and the kind of structured approach they're taking. P…

He's likely to be identified as he gets more brazen. Even authoring this volume of text is risky, and there are other notes from the same author linked within. Spelling can be used to approximate region and phrases or errors such as "the hard of the business" ("heart of") and "passtime" ("pastime") are even stronger markers. Of course there's no way to tell if these are unintentional or planted errata. I'm grateful f…

Or even evaluating the frequencies of words, as well as the frequencies of juxtaposition of words.

Re: Phineas Fisher's account of how he took down HackingTeam

#70
post #65

> I want to dedicate this guide to the victims of the assault on the Armando Diaz school, and to all those whose blood has been spilled at the hands of Italian fascism. For those who don't know, they are referring to the 2001 Armando Diaz school attack [1] (warning: graphic), where hundreds of G8 pacific protesters were brutalized and tortured by Italian police. Whilst the police has been found guilty of this, none o…

That was the one sentence that stood out to me as well. I can imagine this was an incident that had a high impact on "Fisher". I remember watching a live-stream of the incident broadcasted from the building on the other side of the road (which was thankfully the building where my friends stayed). My friends went inside the school after the raid and took pictures that I can't get out of my head to this day. The whole…

Very possible that the reference is sunblock, that is a counter-measure to waste the time of anyone trying to track them down and burn them.

Fisher is experienced enough to know any information they leak will be used against them. My guess is that the event is either symbolic or meant build on a persona used to find people like them; post provides a means of contact.

Regardless of their intent, as made clear by my other comment, this was a tragic event, and the police should be held accountable.

Post reply on HN