Skip to content or view screen version

Hidden Article

This posting has been hidden because it breaches the Indymedia UK (IMC UK) Editorial Guidelines.

IMC UK is an interactive site offering inclusive participation. All postings to the open publishing newswire are the responsibility of the individual authors and not of IMC UK. Although IMC UK volunteers attempt to ensure accuracy of the newswire, they take no responsibility legal or otherwise for the contents of the open publishing site. Mention of external web sites or services is for information purposes only and constitutes neither an endorsement nor a recommendation.

Hacker attempts thwarted

Kfir and Alan | 13.02.2006 13:33

A recent attack on a protest website was thwarted by excellent work by the commited team in charge....... you lose suckers !



In January 2006, Jeremy Hammond and the hacker group collectively known as the "Internet Liberation Front" gained illegal access to the ProtestWarrior server. Thousands of customer credit card numbers were then stolen for the purpose of making millions of dollars in donations to various leftwing organizations. In early February, ProtestWarrior discovered the illegal breach and the identity of the criminals responsible.

Using the hacker recruiting ground www.hackthissite.org, Jeremy Hammond put together and led a team of politically motivated "hacktivists" to probe the ProtestWarrior server for months until an exploit was found. When an obscure vulnerability was discovered in the PW server's newsletter subscription code, they managed to upload malicious files that gave them the ability to execute commands on the server.

Upon discovering the hack, we immediately began collecting information on the breach and managed to penetrate Jeremy's inner circle. We then collected evidence that more than 5,000 credit card numbers had been stolen by Jeremy and the "Internet Liberation Front" and that they were planning on doing the following:


*charge hundreds of dollars per stolen credit card number as donations to various left-wing organizations by using an automated donation submission script

*send the entire ProtestWarrior HQ database (complete with usernames, passwords, and operation details) to left-wing groups hostile to ProtestWarrior (including the entire contents of our mail server)

*upload all credit card numbers and other sensitive customer information to hundreds of anarchist and left-wing sites (specifically Indymedia) as a downloadable zip file

*anonymously send press releases and material to thousands of media contacts to boast of the malicious hack and the millions of dollars defrauded, and to publish any and all sensitive information regarding the ProtestWarrior organization

*erase the entire PW server

*launch simultaneous attacks on other conservative sites


Upon discovering their plans, we contacted the FBI and the Secret Service, who immediately launched an investigation. We were able to provide them with a tremendous amount of evidence regarding the breach, the criminals responsible, and their plans to commit massive credit card fraud. We also reported the incident to all credit card companies involved to make sure that ProtestWarrior's customers were protected. With our help, the FBI was able to thwart Jeremy and his army of "hacktivists".

After contacting the FBI, we immediately hired a security consultant and removed all sensitive information from the server. We eventually moved the server to a new box, where we blocked off the system and data files from the web server and changed the online store software to a super-secure system that stores zero sensitive customer information. In addition, we hired an internet security firm to run a series of vigorous vulnerability tests on our server, which our server all passed.

The reason we haven't made this announcement earlier is that our customers were already protected and we didn't want to jeopardize the ongoing FBI investigation of Jeremy and his "hacktivist" army.

The reason we're posting this now is that Jeremy, in a desperate move, is publicly appealing to the internet community regarding his pending FBI investigation. Using his site www.freejeremy.com, he is trying to solicit donations for his defense fund and generate public sympathy while spreading libelous disinformation regarding ProtestWarrior and the events leading up to the FBI investigation.

We will soon be releasing much more information and details regarding the incident. Rest assured, justice will be served.

www.protestwarrior.com

Kfir and Alan