"Freedom Hosting has long been notorious for allowing child porn to live on its servers. In 2011, the hactivist collective Anonymous singled out the service for denial-of-service attacks after allegedly finding the firm hosted 95 percent of the child porn hidden services on the Tor network. In the hearing yesterday, Donahue said the service hosted at least 100 child porn sites with thousands of users, and claimed Mar…
FBI Admits It Controlled Tor Servers Behind Mass Malware Attack
41–50 of 280 posts
Re: FBI Admits It Controlled Tor Servers Behind Mass Malware Attack
#42Misleading title - the FBI did not conduct a 'mass malware attack'
How is that not a 'mass malware attack'?
Re: FBI Admits It Controlled Tor Servers Behind Mass Malware Attack
#43"Freedom Hosting has long been notorious for allowing child porn to live on its servers. In 2011, the hactivist collective Anonymous singled out the service for denial-of-service attacks after allegedly finding the firm hosted 95 percent of the child porn hidden services on the Tor network. In the hearing yesterday, Donahue said the service hosted at least 100 child porn sites with thousands of users, and claimed Mar…
The reason the FBI and Anonymous seemed to join forces is because the FBI turned Anonymous's leader, Sabu. http://gawker.com/5890847/revered-anonymous-leader-rats-out-...
AFTER EDIT: Thanks for your link, which I think came as an edit to your comment. Here is a link to follow-up news:
http://www.theguardian.com/technology/2013/feb/22/lulzsec-sa...
Re: FBI Admits It Controlled Tor Servers Behind Mass Malware Attack
#44Earlier quoted context omitted.
Meanwhile the way Bruce Schneier is now using GPG is really only one conceptual leap away from full-blown Tinfoil Hat Linux usage: http://en.wikipedia.org/wiki/Tinfoil_Hat_Linux The difference between "tinfoil hatters" and reasonable people like Bruce Schneier now seems to be how concerned they are with their ability to destroy a harddrive, and TEMPEST.
the way Bruce Schneier is now using GPG Which way is that? Also, from your Tinfoil Hat Linux link, this idea is hilariously awesome: Keystroke monitoring — THL has gpggrid, a wrapper for GPG that lets you use a video game style character entry system instead of typing in your passphrase. Keystroke loggers get a set of grid points, not your passphrase. I wonder if it might be possible to implement that idea into other…
https://www.schneier.com/contact.html
All default settings, except the 4096-bit key length.
See: https://www.schneier.com/blog/archives/2013/09/my_new_gpgpgp...
Re: FBI Admits It Controlled Tor Servers Behind Mass Malware Attack
#45Misleading title - the FBI did not conduct a 'mass malware attack'
Re: FBI Admits It Controlled Tor Servers Behind Mass Malware Attack
#46FBI basically generated a shit-load of Tor nodes (https://blog.torproject.org/blog/how-to-handle-millions-new-...) for some while to increase their chances of intercepting traffic. Following the data collection and using statistic, they were able to pin-point the origin of most Freedom-hosting request/response, and then raided the place.
Think about it: if you own 9/10 of the node of the Tor network (and they did for a while) and simply analyze all the traffic, it's just a matter of time before you can find what you are looking for.
The second interesting thing is how they planned everything using the Firefox exploit to find out who was going on each Website. I'm pretty sure they got what they were looking for.
Even thought this is highly scary in term of government control, I think we can all learn a lot about it. Also, I'm wondering how much this attack cost.
Re: FBI Admits It Controlled Tor Servers Behind Mass Malware Attack
#47If this is the only manner that the FBI --or any law enforcement for that matter-- has for identifying TOR users, then wouldn't the best operational security just be to firewall yourself off completely except for Tor connections? Better yet, you could monitor what applications are trying to broadcast out even if they are designed or intended not to leak. Isn't this what the TAILS live-CD does? For this case, even if…
(Also, on the first machine, you could use iptables to only permit outgoing traffic from the uid that Tor is running as and to drop everything else, just as an extra precaution.)
Re: FBI Admits It Controlled Tor Servers Behind Mass Malware Attack
#48Earlier quoted context omitted.
The reason the FBI and Anonymous seemed to join forces is because the FBI turned Anonymous's leader, Sabu. http://gawker.com/5890847/revered-anonymous-leader-rats-out-...
Please tell me more background about that. (I recall mention of this before on HN, but I'm not recalling many details.) What's our best information on how leadership of Anonymous has changed over time? AFTER EDIT: Thanks for your link, which I think came as an edit to your comment. Here is a link to follow-up news: http://www.theguardian.com/technology/2013/feb/22/lulzsec-sa...
EDIT: Here it is: http://news.ycombinator.com/item?id=6154642
In order to be friendly to mobile users, I'll copy-paste the comment here (although the link is worth reading because of the informative replies):
---
redthrowaway 40 days ago | link | parent | flag
Interesting. Freedom Hosting had been a target of Anonymous' Operation Darknet from the beginning--they're well-known for refusing to take down exploitative sites. Operation Darknet is, itself, a pretty interesting phenomenon: Anonymous hacks onion sites, then hands over user information to the FBI for investigation. Anonymous does what the FBI legally can't, and in exchange they're not prosecuted for it. I can't find the article now, but I recall reading an interview with an FBI agent in Wired or Ars or some such where he described the anons as "Internet Superheroes". (sic)
That, in and of itself, is kind of curious. Curiouser? One of the original Op Darknet principals was Sabu. You may remember him as the hacker the FBI rolled and got to bust up LulzSec. Sabu was turned by the FBI on June 7th, 2011.[1] Operation Darknet began several months later, in October, 2011.[2]
The obvious question, then, is this: Did the FBI use Sabu to entice Anons into attacking child porn networks, thereby evading the laws against them doing it themselves? Did they use the fact they turned a well-known hacktivist to help them deal with criminals they lacked the legal tools to go after? Is this arrest the culmination of those efforts?
[1] https://en.wikipedia.org/wiki/Sabu_(hacktivist)
[2] http://www.informationweek.com/security/attacks/anonymous-at....
Re: FBI Admits It Controlled Tor Servers Behind Mass Malware Attack
#49What's worrisome is that if they were willing to burn this Firefox JavaScript exploit, then that probably means they know of at least one more.
Source: HBGary dumps, industry experience.