Anonymous intercepts confidential conference call between FBI and Scotland Yard
online.wsj.com
online.wsj.com
The question then becomes how did they get the conference call dial in information? Perhaps they managed to get into the email of one of the participants. That would seem to be even more worrying than the interception of this single call.
Also, on many conference systems I've used standing meetings use the same dial in information from week to week. If this is a regular meeting it's possible that Anonymous has been listening in every week.
This is the email http://pastebin.com/8G4jLha8 and at the beginning of the recorded call you can hear the conference call software asking for the access code. ( https://www.youtube.com/watch?v=pl3spwzUZfQ)
This is what makes the Anonymous movement so fascinating to me. In Anonymous culture, being "dox'd" is a big deal. That's kind of end-game stuff for hackers. Once you're outed, you're out. Coincidentally, the same rules apply for espionage.
What makes this doubly interesting is that Anonymous is made up of young, tech-savvy individuals. The establishment (government, large corporations, etc) increasingly rely on tools that are created, or at least well understood, by their attackers. It's a classical asymmetric battlefield problem. The attackers aren't big, but they have some very specific domain knowledge, and are increasing in sophistication over time.
That previous paragraph is probably way to generous in my evaluation of the skill level represented inside Anonymous, but that's a large part of the problem. We don't really know much about the insides of Anonymous by design. As the establishment pushes harder and harder (SOPA, PIPA, ACTA) to enforce the status quo, who will turn? There's a tipping point at which the establishment can no longer wage the battle. Acquiring the talent becomes too expensive and breaks their business model.
PS: Want to attack the FBI, just set them as your homepage. It costs them real money, and does not end up with you in jail. Thus the appeal. (Note: It also tells them who you are...)
First of all it's pennies, and second of all it's the taxpayer's money, it doesn't cost FBI a thing.
For someone living in the US direct attacks are largely meaningless activity. If you want to change the system start a movement, a mime, or even just a blog. People may notice something like 9/11, but it simply reinforces existing beliefs. Because change takes ideas not just loud noises and death.
(Else, he talks about disruption of the French status quo)
Actually, it costs us real money. They're financed from taxpayers just like every other federal agency :(
don't be an idiot.
There is a significant difference between "ideal pathway to terrorism" and "ideal pathway to terrorism analogy".
I am confident that I have nothing to fear from Anonymous. Do you?
Rather, the description (attackers aren't big...specific domain knowledge) sounds a hell of a lot more like classic guerrilla tactics. It's also worth noting that guerrilla tactics are most successful when used in defense of home territory, and I think that fits the analogy as well. The government, big media, and others are invading "the internet" which is, for all intents and purposes, anonymous's home territory.
"Political violence against civilians" isn't quite right, because "civilians" can nevertheless wage war. What happens when two nations fight against each other with the full backing of their "civilian" populations, who actively provide all of the funding and materiel to fight the war? Is it off-limits to attack civilians? Should that sort of warfare be lumped in with terrorism?
Unprovoked, unilateral attacks seem to be the more traditional form of terrorism (basically using fear to try and influence behavior), in particular when performed by groups not (officially) affiliated with a specific government.
I can understand being apprehensive about violence against non-combatants, but in the above situation what exactly is the justification for excluding attacking civilians?
So on the efficacy front, it didn't make sense, and on the honor front it's on some pretty shaky ground. Of course, it happened, so there's that.
But even hamburg was a major center for the support of U boats so you can see why the threat of the later Elektroboote Tpe XXI boats would put them on the target list.
Oh and my Fathers house was hit by a bomb - but they where going for the Largest Spitfire factory in the UK so it wasn't his house they were trying to hit.
Sure "Anonymous" has mostly remained nonviolent, but they regularly harm innocent people to attempt to acheive their goals.
Thanks to whoever was calling themselves "Anonymous" one particular day, my full name, physical and email address, and credit card number was posted publically on the Internet, merely for being a customer of a company who some misguided "Anon" thought was working for The Man (not even close by the way). This means that anyone I have ever given my address to will now be able to find out my precise address and full name. For me it is an annoyance, but I have been exceedingly careful not to associate anything controversial online with my real-life identity. Someone who had enemies, or even expressed opinions online that were controversial--to ANY segment of the population--would have a lot of reason to fear for their lives thanks to that irresponsible act.
"Anonymous" are criminals who directly target random civilians and use them as pawns to try to scare those who are in power. The people in power are sure that "Anonymous" will never tilt the balance of power away, but that doesn't stop them from trying, and leaving a devastating trail of identity theft in their wake.
Furthermore, the fact that they are so antisocial they won't show themselves means there can be no accountability for them, so the true good idealists among them are operating in an opaque cloud of others who have proven to have no insight, no judgment, and no sense of ethics or fairness (a phenomenon that anonymity often leads to in humans). These bad seeds use the public perception of "Anonymous" as a force for "Good" and "Openness" in order to commit petty crime such as charging things on other people's credit card for purely selfish reasons. We will probably see the same people exploiting "Anonymous" to commit more and more serious crimes.
Sorry for the novella. My point was just that the public has a great deal to fear from these people.
EDIT: I agree with a lot of things ascribed to that group -- I've marched with OWS before. However, their apparent mission that no one, no country, no company should have any privacy or confidentiality ever, coming from a group that refuses to identify themselves, is just making them look like hypocrites.
SEAL teams use OODA asymmetries to great effect to cause confusion which leads to the overwhelming force and structure of the opponent to become a disadvantage.
Terrorism is really independent of guerrilla / asymmetrical warfare as it can be used by large bureaucratic orgs (Manhattan Project) or smaller nimbler ones (IRA/Al Qaeda)
Huge bills where run up by phone preaks dialing in and then out again - I even got asked to post to alt.2600 as BT's official spokesman (the Met where claiming it was our fault) but BT Security stooped that.
worrying after the NI revelations I do wonder if its time for the UK to have a proper FBI style police force for serious crimes (and the Grunt end of CT work) and demote the Met to the same level as any other constabulary
That explains how they "intercepted" the call.
I find this to be one of the more beautifully hilarious things I have read in quite a while!
The idea that Anon has been slurping info from a regular conf call between two intelligence/LEO orgs is just downright amazing.
Imagine though if Anon had forgot to put themselves on mute at one point and were being addressed by others on the call:
"Whomever is working from home with the dog in the background, please mute. Thanks. Anyway - as I was saying, these Occupy Protesters need to go down...."
It would also be great if, at the end of these calls, when everyone is saying "thanks" and "bye" is Anon also said "thanks" and "bye" as they hung up :)
If they've gotten onto this phone call, one would imagine they can likely replicate this feat with regards to more detail-level meetings at one or more intelligence offices that were on the call.
And by exposing this call, they increase the level of doubt that any one agency IT team has that it was their network/phone system that was compromised. It's the ideal call to publicize.
Anonymous's MO is to spew their exploits to the world and move on. This minimizes the damage of their intrusions. If they kept quiet and spent time soaking up information or leveraging breaches to gain more and more access the things they could do would be jaw dropping.
Absent anything other than a common name, there's no reason to assume that the individuals compromising the "Anonymous" that recorded the FBI conference call has anything to do with the "Anonymous" who dumped Stratfor's credit card DB, or who leaked those Ron Paul emails.
You better believe that this is how spycraft works with the big boys too. You attack security measures at the weakest point, period. Doing it any other way is just making a hobby of it.
First time I see a news outlet describing Anonymous in a somewhat suitable fashion.
As far as I know most of them could well be within the former cateogory, but their most visible attacks were not enacted "just for the lulz"; rather, they were guerrilla tactics employed in response to perceived threats to their Internet homeland, as stated in above comments.
Indeed, this is the first time I actually read a proper description, and certainly didn't expect so from the WSJ! Kudos to the journalist, Evan Perez.
It was unclear how Anonymous had managed to obtain the
recording but a lawyer for one of the suspects discussed
told the BBC it appeared to have been taken as an audiofile
from an intercepted email, rather than having been
eavesdropped on.
So how did he interpret that from the video plus the email? Odd.1. Copy/paste the title into Google and hit search [1]
2. Click on the link from the SERP.
3. Profit?
[1] http://www.google.com/search?client=ubuntu&channel=fs...
[1] That's not to be interpreted as a claim on my part that they are. This sentence, however, may freely be interpreted as such.
(Firefox's spellcheck isn't working for me atm (nightly, so no surprise) - please accept my apologies for any embarrassing typos above.)
Strategically speaking, it would have been much better to just keep listening. Now involved parties will do their best to lock down, and it will be harder for Anons to eavesdrop... but hey, we got some LULz, right?
The FBI, DHS, TSA and so on /can/ be defeated through humiliation - you just have to keep at it until enough voters get the message for a few politicians to use "regulate XYZ" and "abolish the ABC" as mechanisms for political gain.
Having other people be scared of and by them is very obviously their goal based on their rhetoric. They pick random "missions" and make demands, but it's about obtaining compliance based on fear, not about a "philosophy" or "culture."
This is typical because since they were abused and made fun of, and constantly in fear as children, they think that's how you "win"--to be bigger and badder and stronger. Now they have found a way to be seen as big and scary without having to be attractive, strong, and popular like their former enemies--all this takes is...fingers, very rudimentary knowledge of technology (or at least the ability to read and follow directions). They also exploit the fact that so many people are clueless about technology--even the ones entrusted with securing access to systems.
So there are times when it works and times when it doesn't, but we can be pretty sure it won't work here.
That's what is so vitally important about the amorphous collective form of Anonymous and even later Occupy Wall Street. Without a clear head to cut off or discredit the movement can continue with its goals even if it loses a few people.
Is this really par for the course?
But that wouldn't have been a guarantee -- the message wasn't intercepted in transit, it was apparently intercepted by compromising the receiver's account. It's not clear how this was accomplished, but if it was by a trojan it could easily have end-run the message encryption, had it been in use.
Honestly, the security at most large organizations is so bad, they're not even at the level where their lack of email encryption presents the weakest link.
[1] Actually the only place I've ever seen a PGP key used in connection with a Federal agency, was by the NSA for reporting SELinux bugs / vulns. And that was a long time ago.
Using encryption and Ciphers is not a crime FBI..just ask Phil Zimmermann
sounds like an agenda to setup the stage to get censorship back on the table. The FBI wants these breaches, then they can point to it and say "we need censorship to take down these videos because we cant be bothered with any security precautions".
No.
Systems haven't been susceptible to that attack for years, and it doesn't matter anyways! They could have been using a fucking private satellite protected with three layers of the best ciphers known to man, it still would have been broken by them getting the conference number and password, like they did here.
There should be laws against people entitled to sensitive information sharing via indefensibly incompetent methods. That might make agents thing twice before doing something this stupid.