hacktivist Archives - IT Security Guru https://www.itsecurityguru.org/tag/hacktivist/ The Site for our Community Fri, 28 Oct 2022 13:50:33 +0000 en-US hourly 1 https://www.itsecurityguru.org/wp-content/uploads/2019/12/cropped-Guru_Transparent-PNG-1-32x32.png hacktivist Archives - IT Security Guru https://www.itsecurityguru.org/tag/hacktivist/ 32 32 Meet Guacamaya – a hacktivist’s supporting the indigenous people of Central America and tackling the drug cartels https://www.itsecurityguru.org/2022/10/28/meet-guacamaya-a-hacktivists-supporting-the-indigenous-people-of-central-america-and-tackling-the-drug-cartels/?utm_source=rss&utm_medium=rss&utm_campaign=meet-guacamaya-a-hacktivists-supporting-the-indigenous-people-of-central-america-and-tackling-the-drug-cartels Fri, 28 Oct 2022 13:32:23 +0000 https://www.itsecurityguru.org/?p=47088 Outpost24 has released a new threat intelligence blog on Guacamaya, a hacktivist group acting in defense of the abuse performed on the territory and against the indigenous people of Central America. Their main objective is exfiltrating information about companies or organisms performing unjust actions against the indigenous people or territory. Guacamaya have been acting in defense of the indigenous […]

The post Meet Guacamaya – a hacktivist’s supporting the indigenous people of Central America and tackling the drug cartels appeared first on IT Security Guru.

]]>
Outpost24 has released a new threat intelligence blog on Guacamaya, a hacktivist group acting in defense of the abuse performed on the territory and against the indigenous people of Central America.

Their main objective is exfiltrating information about companies or organisms performing unjust actions against the indigenous people or territory.

Guacamaya have been acting in defense of the indigenous people of Abya Yala territory. This is the name used by the Native American Guna people who inhabit the geographic region between what is now northwest Colombia and southeast Panama, to refer to the American continent since pre-Columbian times.

Guacamaya was first spotted on March 6, 2022, after sending a statement to the sharing platform “Enlace Hacktivista” with their presentation and the announcement of their first action against the company CGN-Pronico, which operates the Fenix mine in Guatemala with a history of human right abuses and environmental damage.

The group gain access to the networks with open-source tools, then establish persistence and exfiltrate sensible information. They try to exploit public-facing applications and compromise employees’ credentials with password spraying, phishing, or checking against known breaches, whose emails are often obtained through LinkedIn. Once compromised, the Guacamaya proceeds to download information, such as emails and files.

Guacamaya also has a destructive goal since they carry out sabotage actions. Exfiltrated information is publicly shared through Distributed Denial of Secrets, a non-profit whistleblower run by a collective of journalists devoted to enabling the free transmission of data in the public interest, or directly through links in the Enlace Hacktivista platform.

Their targets include Colombia’s Attorney General office, Armies of Mexico, Peru and El Salvador, and more recently the drug cartels in Yucatan.

Guacamaya’s Activity Map

*Guacamaya’s Activity Map from the Threat Context module

The post Meet Guacamaya – a hacktivist’s supporting the indigenous people of Central America and tackling the drug cartels appeared first on IT Security Guru.

]]>
Europe’s Hacktivists Set Sights on Political Entities https://www.itsecurityguru.org/2018/02/19/europes-hacktivists-set-sights-political-entities/?utm_source=rss&utm_medium=rss&utm_campaign=europes-hacktivists-set-sights-political-entities Mon, 19 Feb 2018 14:40:17 +0000 http://www.itsecurityguru.org/?p=25467 By Roman Sannikov, Director of European Research and Analysis, Flashpoint   The tumultuous state of global politics that defined 2017 continues to shape the motivations and schemes of a wide range of adversaries. In October, CNBC reported two Czech election websites were hacked and that, after Catalonia’s independence referendum was ruled illegal, the website for […]

The post Europe’s Hacktivists Set Sights on Political Entities appeared first on IT Security Guru.

]]>
By Roman Sannikov, Director of European Research and Analysis, Flashpoint

 

The tumultuous state of global politics that defined 2017 continues to shape the motivations and schemes of a wide range of adversaries. In October, CNBC reported two Czech election websites were hacked and that, after Catalonia’s independence referendum was ruled illegal, the website for Spain’s Constitutional Court was taken down by a DDoS attack. These are just two of many examples that align with a trend Flashpoint analysts have observed in recent months: the proliferation of hacktivist activity targeting European government and political entities.

In September 2017, Flashpoint analysts observed multiple hacktivist-fuelled DDoS attacks targeting several websites belonging to ministries and individual public officials in multiple European countries. Although these campaigns have been dispersed across central Europe, some actors have tended to concentrate their activity on certain countries. For example, Flashpoint analysts observed that one Turkish nationalist group appears to be focused on targeting the websites of Belgian and Austrian political entities. This group has also indicated its intent to retaliate against any perceived anti-Turkish or anti-Muslim sentiment emanating from European political entities. In one instance, the group posted screenshots of successful DDoS attacks against Danish government institutions, which they claim to have carried out due to perceived insults by Danish politicians against Islam.

More recently in January 2018, Fancy Bears’ Hack Team—a hacktivist group that is allegedly connected to Russian state sponsored activity—released updates to its #OpOlympics campaign. Targeting both the International Olympic Committee and the Norwegian Olympic Committee, the group released hacked E-mail messages that appear to imply a conspiracy to cover up doping. This activity follows previous releases in 2017 of confidential documents from the Swedish Olympic Committee. The releases appear to be an effort to embarrass Olympic organisers and member states in retaliation for the banning of Russian athletes.

While hacktivist groups are often considered less skilled than their cybercriminal and state-sponsored counterparts, the risks they present and resulting damages they can inflict are by no means novel. Typically motivated by fundamental differences of political opinion, hacktivists have been known to disrupt, deface, or otherwise take down targeted websites, web-based services, networks, and infrastructure. Unfortunately, these types of damages became a reality for many following the recent hacktivist-fuelled DDoS attacks that correlated with major 2017 elections in the United Kingdom, Germany, Russia, Czech Republic, and France. It appears that the polarizing effect of these elections continues to contribute to the heightened risks faced by various European political entities.

Flashpoint assesses with a moderate degree of confidence that hacktivist-fuelled DDoS attacks against European political entities will continue in the coming months. While addressing hacktivist activity can be complex and challenging, organisations—not just in Europe, but worldwide—that integrate Business Risk Intelligence (BRI) into their security and risk strategies can and do mitigate these types of risks more effectively. By providing proactive visibility into rising geopolitical tensions, emerging hacktivist threats, and upcoming schemes, BRI enables organisations across all sectors to gain a decision advantage over a broad spectrum of hacktivists and other adversaries.

The post Europe’s Hacktivists Set Sights on Political Entities appeared first on IT Security Guru.

]]>
British MPs Pledge Support for Lauri Love https://www.itsecurityguru.org/2017/11/21/british-mps-pledge-support-lauri-love/?utm_source=rss&utm_medium=rss&utm_campaign=british-mps-pledge-support-lauri-love Tue, 21 Nov 2017 12:03:25 +0000 http://www.itsecurityguru.org/?p=24650 More than 70 MPs in the UK have pledged their support for alleged hacker, Lauri Love, who is facing extradition to the US. Read Full Story  ORIGINAL SOURCE: IB Times

The post British MPs Pledge Support for Lauri Love appeared first on IT Security Guru.

]]>
More than 70 MPs in the UK have pledged their support for alleged hacker, Lauri Love, who is facing extradition to the US.
Read Full Story 
ORIGINAL SOURCE: IB Times

The post British MPs Pledge Support for Lauri Love appeared first on IT Security Guru.

]]>
Anonymous Hackers Shut Down Bank of England https://www.itsecurityguru.org/2016/05/16/anonymous-hackers-shut-down-bank-of-england/?utm_source=rss&utm_medium=rss&utm_campaign=anonymous-hackers-shut-down-bank-of-england Mon, 16 May 2016 10:03:47 +0000 http://www.itsecurityguru.org/?p=15728 Hacktivist collective Anonymous has launched cyber-attacks on major financial institutions across the world, including the Bank of England, in order to “start an online revolution.” Hackers claimed to have taken down the Bank of England’s internal email server as part of an operation dubbed ‘OpIcarus.’ Mail.bankofengland.co.uk was down for part of Friday. Hackers affiliated with […]

The post Anonymous Hackers Shut Down Bank of England appeared first on IT Security Guru.

]]>
Hacktivist collective Anonymous has launched cyber-attacks on major financial institutions across the world, including the Bank of England, in order to “start an online revolution.”
Hackers claimed to have taken down the Bank of England’s internal email server as part of an operation dubbed ‘OpIcarus.’
Mail.bankofengland.co.uk was down for part of Friday.
Hackers affiliated with Anonymous also claimed to have shut down several international banks over the past four days, including the National Reserve Bank of Tonga, the Federal Reserve Bank of Boston and the central banks of Sweden, Myanmar and Laos.
 
Original Source: Anon News
View the full story here

The post Anonymous Hackers Shut Down Bank of England appeared first on IT Security Guru.

]]>
#OpKKK – Anonymous begins revealing members' details https://www.itsecurityguru.org/2015/11/02/opkkk-anonymous-begins-revealing-members-details/?utm_source=rss&utm_medium=rss&utm_campaign=opkkk-anonymous-begins-revealing-members-details Mon, 02 Nov 2015 10:39:49 +0000 http://www.itsecurityguru.org/?p=13250 In three pasted posts on the @YouAnonNews Twitter account, hacktivist group Anonymous began revealing the personal details of KKK members. Posts have included phone numbers and email addresses, without names. It has included some 800- numbers and email addresses on the .ru domain. Not all the phone numbers are registered to individuals – however one […]

The post #OpKKK – Anonymous begins revealing members' details appeared first on IT Security Guru.

]]>
In three pasted posts on the @YouAnonNews Twitter account, hacktivist group Anonymous began revealing the personal details of KKK members.
Posts have included phone numbers and email addresses, without names. It has included some 800- numbers and email addresses on the .ru domain. Not all the phone numbers are registered to individuals – however one number used has been associated with the KKK by people making “threatening” calls from it.
Some of the data appears to have been leaked before – according to databreaches.net, the credit card details and full name of at least one number had been released prior to this data dump.
The most shocking revelation may be to come from a fourth post, that released the names of nine US politicians – 4 senators and 5 mayors – which were allegedly found the the KKK database that attackers claim to have hacked.
Original Source: Databreaches.net
Full story: http://www.databreaches.net/anonymous-starts-to-reveal-kkk-members-details-in-opkkk/

The post #OpKKK – Anonymous begins revealing members' details appeared first on IT Security Guru.

]]>
Anonymous Crashes the Mounties' Website https://www.itsecurityguru.org/2015/07/21/anonymous-crashes-the-mounties-website/?utm_source=rss&utm_medium=rss&utm_campaign=anonymous-crashes-the-mounties-website Tue, 21 Jul 2015 10:38:07 +0000 http://www.itsecurityguru.org/?p=11809 In today’s news: Anonymous takes their revenge after reports one of their members is shot dead by the Royal Canadian Mounted Police. More on this story at www.itsecurityguru.org @IT_SecGuru

The post Anonymous Crashes the Mounties' Website appeared first on IT Security Guru.

]]>
In today’s news: Anonymous takes their revenge after reports one of their members is shot dead by the Royal Canadian Mounted Police.
More on this story at www.itsecurityguru.org
@IT_SecGuru

The post Anonymous Crashes the Mounties' Website appeared first on IT Security Guru.

]]>
Team System DZ Attacks Wilmington School https://www.itsecurityguru.org/2015/04/30/team-system-dz-attacks-wilmington-school/?utm_source=rss&utm_medium=rss&utm_campaign=team-system-dz-attacks-wilmington-school Thu, 30 Apr 2015 09:17:49 +0000 http://www.itsecurityguru.org/?p=10739 A Wilmington school was attacked by a hacktivist group called Team System DZ – a pro-ISIS organization. The school’s webpages were defaced with messages praising terrorist groups. Officials for the school have said that no student of faculty information was compromised in the attack. The FBI characterized the attacks from this group as “unsophisticated methods to […]

The post Team System DZ Attacks Wilmington School appeared first on IT Security Guru.

]]>
A Wilmington school was attacked by a hacktivist group called Team System DZ – a pro-ISIS organization. The school’s webpages were defaced with messages praising terrorist groups. Officials for the school have said that no student of faculty information was compromised in the attack. The FBI characterized the attacks from this group as “unsophisticated methods to exploit technical vulnerabilities.”
View full story

The post Team System DZ Attacks Wilmington School appeared first on IT Security Guru.

]]>