<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Hackmageddon.com</title>
	<atom:link href="http://hackmageddon.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://hackmageddon.com</link>
	<description>I know with what weapons World War III will be fought...</description>
	<lastBuildDate>Sat, 26 May 2012 04:53:14 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='hackmageddon.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Hackmageddon.com</title>
		<link>http://hackmageddon.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://hackmageddon.com/osd.xml" title="Hackmageddon.com" />
	<atom:link rel='hub' href='http://hackmageddon.com/?pushpress=hub'/>
		<item>
		<title>Botnets, ISPs, and The Role of The Cloud</title>
		<link>http://hackmageddon.com/2012/05/24/botnets-isps-and-the-role-of-the-cloud/</link>
		<comments>http://hackmageddon.com/2012/05/24/botnets-isps-and-the-role-of-the-cloud/#comments</comments>
		<pubDate>Thu, 24 May 2012 21:49:12 +0000</pubDate>
		<dc:creator>Paolo Passeri</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Anti Botnet Conduct Code]]></category>
		<category><![CDATA[Bot]]></category>
		<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Cloud computing]]></category>
		<category><![CDATA[Data center]]></category>
		<category><![CDATA[Denial-of-service attack]]></category>
		<category><![CDATA[Federal Communication Commission]]></category>
		<category><![CDATA[Internet service provider]]></category>
		<category><![CDATA[IP address]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[NAT]]></category>

		<guid isPermaLink="false">http://hackmageddon.com/?p=7272</guid>
		<description><![CDATA[One interesting comment on my previous post on Botnets, gave me a cue for another consideration concerning the role of the cloud inside the fight against botnets. The fact that ISPs are evaluating an Anti Botnet Conduct Code means  their are feeling responsible for what resides inside (and leaves) their networks, and hence are supposed [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7272&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:justify;"><a href="http://www.flickr.com/photos/8767123@N06/3877534599" target="_blank"><img class="zemanta-img-inserted zemanta-img-configured alignright" title="Data Center" src="http://farm4.static.flickr.com/3459/3877534599_3c83d9570d_m.jpg" alt="Data Center" width="240" height="180" /></a>One <a title="Interesting Comment" href="http://hackmageddon.com/2012/05/22/i-bot-coming-to-a-cc-server-near-you/#comment-2173" target="_blank">interesting comment</a> on my <a title="I, BOT (Coming To A C&amp;C Server Near You)" href="http://hackmageddon.com/2012/05/22/i-bot-coming-to-a-cc-server-near-you/" target="_blank">previous post on Botnets</a>, gave me a cue for another consideration concerning the role of the cloud inside the fight against botnets.</p>
<p style="text-align:justify;">The fact that ISPs are evaluating an <a title="Anti Botnet Conduct Code" href="http://www.maawg.org/system/files/20120322%20WG7%20Final%20Report%20for%20CSRIC%20III_3.pdf" target="_blank">Anti Botnet Conduct Code</a> means  their are feeling responsible for what resides inside (and leaves) their networks, and hence are supposed to take technical, organizational and educational countermeasures.</p>
<p style="text-align:justify;">Anyway, in order to be effective, anti-bot controls should be enforced inside the customers&#8217; networks, or at least before any source NAT is performed, otherwise IP addresses of the infected machines would be hidden, making impossible to detect and block them directly. A huge task for an ISP unless one were able to centralize the security enforcement point where the traffic is monitored and compromised endpoints members of a bot detected.</p>
<p style="text-align:justify;">Said in few words I believe that ISPs will soon offer advanced anti-malware (read anti-bot) services in the cloud by routing (or better switching) the customer’s traffic on their data centers where it is checked and the customers notifyed in real time about the presence of bots inside their networks. You may think to the same approach used for URL filtering services on the cloud with the difference that in this scenario the clients should arrive to the ISP’s Data Center with their original IP Address or a statically NATed address so that it could always be possible to recognize the original source. Another difference is also that in this scenario the purpose in not only to protect the customers&#8217; networks from the external world but also (and maybe most of all) to protect the external world from the customers&#8217; (dirty) networks.</p>
<p style="text-align:justify;">Another contribution of the cloud against Botnets that I forgot to mention in the original post.</p>
<h6 class="zemanta-related-title" style="font-size:1em;">Related articles</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://hackmageddon.com/2012/05/22/i-bot-coming-to-a-cc-server-near-you/" target="_blank">I, BOT (Coming To A C&amp;C Server Near You)</a> (hackmageddon.com)</li>
</ul>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/paulsparrows.wordpress.com/7272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/paulsparrows.wordpress.com/7272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/paulsparrows.wordpress.com/7272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/paulsparrows.wordpress.com/7272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/paulsparrows.wordpress.com/7272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/paulsparrows.wordpress.com/7272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/paulsparrows.wordpress.com/7272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/paulsparrows.wordpress.com/7272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/paulsparrows.wordpress.com/7272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/paulsparrows.wordpress.com/7272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/paulsparrows.wordpress.com/7272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/paulsparrows.wordpress.com/7272/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/paulsparrows.wordpress.com/7272/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/paulsparrows.wordpress.com/7272/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7272&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackmageddon.com/2012/05/24/botnets-isps-and-the-role-of-the-cloud/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e40339b2368a611b6699fd5b50507a7b?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">paulsparrows</media:title>
		</media:content>

		<media:content url="http://farm4.static.flickr.com/3459/3877534599_3c83d9570d_m.jpg" medium="image">
			<media:title type="html">Data Center</media:title>
		</media:content>
	</item>
		<item>
		<title>I, BOT (Coming To A C&amp;C Server Near You)</title>
		<link>http://hackmageddon.com/2012/05/22/i-bot-coming-to-a-cc-server-near-you/</link>
		<comments>http://hackmageddon.com/2012/05/22/i-bot-coming-to-a-cc-server-near-you/#comments</comments>
		<pubDate>Tue, 22 May 2012 21:15:42 +0000</pubDate>
		<dc:creator>Paolo Passeri</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Bot]]></category>
		<category><![CDATA[Botnet]]></category>
		<category><![CDATA[C&C Server]]></category>
		<category><![CDATA[Denial-of-service attack]]></category>
		<category><![CDATA[Federal Communication Commission]]></category>
		<category><![CDATA[Internet service provider]]></category>
		<category><![CDATA[Zeus]]></category>

		<guid isPermaLink="false">http://hackmageddon.com/?p=7258</guid>
		<description><![CDATA[Few days ago I have discovered that the City I leave in (Rome), ranks at number two in the World for the number of BOT infections, at least according to Symantec Internet Security Threat Report Edition XVII. Of course reports must be taken with caution, but it is undoubted that Bot infections are becoming a [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7258&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/bot.png"><img class="alignleft size-medium wp-image-7259" style="margin-top:10px;margin-bottom:10px;" title="Bot" src="http://paulsparrows.files.wordpress.com/2012/05/bot.png?w=205&h=300" alt="" width="205" height="300" /></a>Few days ago I have discovered that the City I leave in (Rome), ranks at <a href="http://www.symantec.com/it/it/about/news/release/article.jsp?prid=20120502_03" target="_blank">number two</a> in the World for the number of BOT infections, at least according to <a href="http://www.symantec.com/threatreport/">Symantec Internet Security Threat Report</a> Edition XVII.</p>
<p style="text-align:justify;">Of course reports must be taken with caution, but it is undoubted that Bot infections are becoming a huge problem for the Information Security Community (a modern Biblical Plague), so huge to deserve the attentions of The <a class="zem_slink" title="Federal Communications Commission" href="http://www.fcc.gov/" rel="homepage" target="_blank">Federal Communication Commission</a>. As a matter of fact, on March 2012, FCC, working with communications companies including Verizon, Cox, and Comcast, has passed a <a title="ABC Anti Botnet Conduct Code" href="http://www.maawg.org/system/files/20120322%20WG7%20Final%20Report%20for%20CSRIC%20III_3.pdf" target="_blank">voluntary code</a> that delineates the steps that ISPs must take to combat botnets. As you will probably know, botnets may be used by cybercrookers for making money with different criminal purposes ranging from information theft to the execution of DDoS Attacks: have a look to <a href="http://www.reddit.com/r/IAmA/comments/sq7cy/iama_a_malware_coder_and_botnet_operator_ama/" target="_blank">this interview</a> to a botnet operator to have an idea (and to discover that botnets are used also to counterfeit virtual currency).</p>
<p style="text-align:justify;">Such a similar plague is pushing a major change to the traditional security paradigm, a change that can be summarized in few words: if yesterday the refrain for system administrators was &#8220;<strong>Beware of what enters your network</strong>&#8221; (so all the security warfare was focused in checking the ingress traffic), today it is becoming: &#8220;<strong>Beware of what leaves your network</strong>&#8220;.</p>
<p style="text-align:justify;">This is nothing else than a consequence of the fact that traditional endpoints technologies are proving not to be so effective against Bots, so a new approach, which aims to control the egress traffic generated by compromised endpoints and leaving the organization, is needed. The effectiveness of traditional endpoint technologies is not optimal since new variants (capable of evading antivirus controls) come out much faster than the related signatures developed by vendors: try to have a look at the <a title="Zeus Tracker" href="https://zeustracker.abuse.ch/statistic.php" target="_blank">average antivirus detection rate</a> against Zeus (the god of bots), and you will probably be disappointed in noticing that it is stable at a poor 38%). On the other hand, recognizing the communication patterns at the perimeter is a more profitable strategy, since the different variants generally do not change deeply the communication protocols with the C&amp;C Server (unless a P2P protocol is used, see below).</p>
<p style="text-align:justify;">The strategy to mitigate botnets relies on the fact that each botnet has (in theory) a single point of failure: it is the C&amp;C Server to which Cyber Hunters and Law Enforcement Agencies address their takeover attempts to take them down definitively or to turn them into sinkholes for studying the exact morphology and extension of the infection). Depending on the botnet configuration, each infected endpoint polls the C&amp;C server for new instructions at a given time interval and that is the point of the process in which good guys may act: detecting (and blocking) that traffic allows to identify infected machines (and my experience indicate that too often those machines are equipped with an updated and blind antivirus).</p>
<p style="text-align:justify;">For the chronicle the C&amp;C Server is only a theoretical single point of failure since C&amp;C Servers are generally highly volatile and dynamic so it is not so easy to intercept and block them (the only way to take down a botnet), hence in my opinion, it should be more correct to say that a botnet has has many single points of failure (an information security oxymoron!).</p>
<p style="text-align:justify;">As if not enough, in order to make life harder for good guys, the next generation botnets are deploying <a href="http://www.theregister.co.uk/2012/02/27/p2p_zeus/" target="_blank">P2P protocols</a> for decentralizing the C&amp;C function and make their takedown even tougher.</p>
<p style="text-align:justify;">But good guys have a further weapon in this cat and mouse game: the cloud intelligence. Even if I am not a cloud enthusiast, I must confess that this technology is proving to be a crucial element to thwart botnets since it allows to collect real time information about new threats and to centralize the &#8220;intelligence&#8221; needed to dynamically (and quickly) classify them. Real time information is collected directly from the enforcement points placed at the perimeter, which analyze the egress traffic from an organization containing compromised machines. Of course after the successful analysis and classification, the new patterns may be shared among the enforcement points all over the five continents in order to provide real time detection (and hence protection) against new threats. This approach is clearly much more efficient than an endpoint based enforcement (which would need to share the information among a larger amount of devices), provided the enforcement point are positioned adequately, that is they are capable to monitor all the egress traffic.</p>
<p style="text-align:justify;">The combination of the analysis of egress traffic and cloud intelligence is a good starting points for mitigating the botnet effects (for sure it is necessary to identify infected machines) but, as usual, do not forget that the user is the first barrier so a good level of education is a key factor together with consolidated processes and procedures to handle the infections.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/paulsparrows.wordpress.com/7258/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/paulsparrows.wordpress.com/7258/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/paulsparrows.wordpress.com/7258/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/paulsparrows.wordpress.com/7258/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/paulsparrows.wordpress.com/7258/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/paulsparrows.wordpress.com/7258/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/paulsparrows.wordpress.com/7258/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/paulsparrows.wordpress.com/7258/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/paulsparrows.wordpress.com/7258/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/paulsparrows.wordpress.com/7258/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/paulsparrows.wordpress.com/7258/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/paulsparrows.wordpress.com/7258/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/paulsparrows.wordpress.com/7258/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/paulsparrows.wordpress.com/7258/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7258&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackmageddon.com/2012/05/22/i-bot-coming-to-a-cc-server-near-you/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e40339b2368a611b6699fd5b50507a7b?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">paulsparrows</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/bot.png?w=205" medium="image">
			<media:title type="html">Bot</media:title>
		</media:content>
	</item>
		<item>
		<title>1-15 May 2012 Cyber Attacks Statistics</title>
		<link>http://hackmageddon.com/2012/05/20/1-15-may-2012-cyber-attacks-statistics/</link>
		<comments>http://hackmageddon.com/2012/05/20/1-15-may-2012-cyber-attacks-statistics/#comments</comments>
		<pubDate>Sun, 20 May 2012 14:14:37 +0000</pubDate>
		<dc:creator>Paolo Passeri</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[2012]]></category>
		<category><![CDATA[Cyber Attacks]]></category>
		<category><![CDATA[Cyber Attacks Timeline]]></category>
		<category><![CDATA[Cyber Crime]]></category>
		<category><![CDATA[Cyber Espionage]]></category>
		<category><![CDATA[Cyberwarfare]]></category>
		<category><![CDATA[Denial-of-service attack]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Hacktivism]]></category>
		<category><![CDATA[May]]></category>
		<category><![CDATA[SQL Injection]]></category>
		<category><![CDATA[Statistics]]></category>
		<category><![CDATA[Twitter]]></category>

		<guid isPermaLink="false">http://hackmageddon.com/?p=7228</guid>
		<description><![CDATA[As I did in the last month, I have summarized the data collected in my Cyber Attacks Sample for the first half of May, (whose thumbnail is on the right), in order to provide some aggregated statistics. Collected Data have been summarized in three charts representing: Motivations Behind Attacks, Distribution of Targets and Distribution of [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7228&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/may-2012-cyber-attack-timeline-part-i.png"><img class="alignright  wp-image-7200" title="May 2012 Cyber Attack Timeline Part I" src="http://paulsparrows.files.wordpress.com/2012/05/may-2012-cyber-attack-timeline-part-i.png?w=51&h=150" alt="" width="51" height="150" /></a>As I did <a title="April 2012 Cyber Attacks Statistics" href="http://hackmageddon.com/2012/05/06/april-2012-cyber-attacks-statistics/" target="_blank">in the last month</a>, I have summarized the data collected in my <a title="May 2012 Cyber Attacks Timeline (Part I)" href="http://hackmageddon.com/2012/05/17/may-2012-cyber-attacks-timeline-part-i/" target="_blank">Cyber Attacks Sample</a> for the first half of May, (whose thumbnail is on the right), in order to provide some aggregated statistics. Collected Data have been summarized in three<strong> </strong>charts representing: <strong>Motivations</strong><strong> Behind Attacks</strong>, <strong>Distribution of Targets</strong> and <strong>Distribution </strong><strong>of Attack Techniques</strong>. Although the 60 attacks sample does not intend to be comprehensive (and hence the results must be taken with caution), the charts provide a quick overview, which in turn might be useful to identify trends and hopefully to address countermeasures. Apparently the trend is quite (un)stable with Cyber Crime, ranking at number one as the primary motivation for the attacks, and Governments that continue to be the preferred targets for cybercrookers.</p>
<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/motivations-behind-attacks-firt-half-may-2012.png"><img class="alignleft  wp-image-7240" title="Motivations Behind Attacks Firt Half May 2012" src="http://paulsparrows.files.wordpress.com/2012/05/motivations-behind-attacks-firt-half-may-2012.png?w=326&h=171" alt="" width="326" height="171" /></a>As far as <strong>Motivations </strong> Behind Attacks are concerned, once again Cyber Crime ranks at number one with nearly the 70% of occurrences. Hacktivism is well behind with &#8220;only&#8221; the 23% followed by Cyber Warfare and Cyber Espionage that triggered singularly the 10% of attacks. If compared with <a title="April 2012 Cyber Attacks Statistics" href="http://hackmageddon.com/2012/05/06/april-2012-cyber-attacks-statistics/" target="_blank">April</a>, the trend shows a growth of Cyber Crime and a corresponding reduction of hacktivism. As far as Cyber Espionage is concerned, particularly interesting om this month have been the Attack to U.K. Ministry Of Defence and to some undisclosed U.S. Natural Gas Companies.</p>
<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/distribution-of-targets-firt-half-may-2012.png"><img class="alignright  wp-image-7245" title="Distribution Of Targets Firt Half May 2012" src="http://paulsparrows.files.wordpress.com/2012/05/distribution-of-targets-firt-half-may-2012.png?w=325&h=169" alt="" width="325" height="169" /></a>The <strong>Distribution of Targets </strong>chart confirms that Governments continue to be the preferred targets for Cyber Criminals and Hacktivists with nearly one third (30%) of occurrences. With respect to April, targets belonging to educational sector have gained one position ranking at number two with the 15% of occurrences and before the LEAs which shifted at the third place with the 7% of occurrences. If we sum up military targets to LEAs we have the 12%. In any case the trend is in line with the previous month.</p>
<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/distribution-attack-techniques-first-half-may-2012.png"><img class="wp-image-7250 alignleft" title="Distribution Attack Techniques First Half May 2012" src="http://paulsparrows.files.wordpress.com/2012/05/distribution-attack-techniques-first-half-may-2012.png?w=326&h=170" alt="" width="326" height="170" /></a>SQL Injection is the number one among <strong>Attack Techniques<em>,</em> </strong>with the 36% of occurrences taking over, at least in the first two weeks of may, Distributed Denial Of Service, that ranks at number two with the 18%. Summing up the &#8220;conclamated&#8221; SQLi Attacks with the &#8220;uncertain&#8221; SQLi Attacks, leads to the surprising result that nearly one attack on two (46%) has been performed exploiting this kind of vulnerability. So definitively run and patch your applications!</p>
<p style="text-align:justify;"><em>If you want to have an idea of how fragile our data are inside the cyberspace, have a look at the timelines of the main Cyber Attacks in <a title="2011 Cyber Attacks Timeline Master Index" href="http://hackmageddon.com/2011-cyber-attacks-timeline-master-index/" target="_blank">2011</a> and <a title="2012 Cyber Attacks Timeline Master Index" href="http://hackmageddon.com/2012-cyber-attacks-timeline-master-index/" target="_blank">2012</a> (regularly updated), and follow <a title="Paolo Passeri Twitter Profile" href="https://twitter.com/#%21/paulsparrows" target="_blank">@paulsparrows</a> on Twitter for the latest updates. <strong>Also feel free to submit at <a title="Send Me A Cyber Attack Detail via Email" href="mailto:ppasseri@gmail.com" target="_blank">ppasseri@gmail.com</a> details about Cyber attacks in order to make the timelines even more detailed and meaningful.</strong><br />
</em></p>
<h6 class="zemanta-related-title" style="font-size:1em;">Related articles</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://hackmageddon.com/2012/05/06/april-2012-cyber-attacks-statistics/" target="_blank">April 2012 Cyber Attacks Statistics</a> (hackmageddon.com)</li>
<li class="zemanta-article-ul-li"><a href="http://hackmageddon.com/2012/05/17/may-2012-cyber-attacks-timeline-part-i/" target="_blank">May 2012 Cyber Attacks Timeline (Part I)</a> (hackmageddon.com)</li>
</ul>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/paulsparrows.wordpress.com/7228/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/paulsparrows.wordpress.com/7228/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/paulsparrows.wordpress.com/7228/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/paulsparrows.wordpress.com/7228/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/paulsparrows.wordpress.com/7228/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/paulsparrows.wordpress.com/7228/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/paulsparrows.wordpress.com/7228/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/paulsparrows.wordpress.com/7228/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/paulsparrows.wordpress.com/7228/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/paulsparrows.wordpress.com/7228/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/paulsparrows.wordpress.com/7228/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/paulsparrows.wordpress.com/7228/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/paulsparrows.wordpress.com/7228/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/paulsparrows.wordpress.com/7228/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7228&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackmageddon.com/2012/05/20/1-15-may-2012-cyber-attacks-statistics/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e40339b2368a611b6699fd5b50507a7b?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">paulsparrows</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/may-2012-cyber-attack-timeline-part-i.png?w=30" medium="image">
			<media:title type="html">May 2012 Cyber Attack Timeline Part I</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/motivations-behind-attacks-firt-half-may-2012.png" medium="image">
			<media:title type="html">Motivations Behind Attacks Firt Half May 2012</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/distribution-of-targets-firt-half-may-2012.png" medium="image">
			<media:title type="html">Distribution Of Targets Firt Half May 2012</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/distribution-attack-techniques-first-half-may-2012.png" medium="image">
			<media:title type="html">Distribution Attack Techniques First Half May 2012</media:title>
		</media:content>
	</item>
		<item>
		<title>May 2012 Cyber Attacks Timeline (Part I)</title>
		<link>http://hackmageddon.com/2012/05/17/may-2012-cyber-attacks-timeline-part-i/</link>
		<comments>http://hackmageddon.com/2012/05/17/may-2012-cyber-attacks-timeline-part-i/#comments</comments>
		<pubDate>Thu, 17 May 2012 12:24:32 +0000</pubDate>
		<dc:creator>Paolo Passeri</dc:creator>
				<category><![CDATA[Cyber Attacks Timeline]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[#AnonymousNepal]]></category>
		<category><![CDATA[#OpTrialAtHome]]></category>
		<category><![CDATA[#TeamGhostShell]]></category>
		<category><![CDATA[@DeadMellox]]></category>
		<category><![CDATA[@Reckz0r]]></category>
		<category><![CDATA[@s3rverexe]]></category>
		<category><![CDATA[@_Echel0n]]></category>
		<category><![CDATA[Account Hacking]]></category>
		<category><![CDATA[Albanian Office for Copyright]]></category>
		<category><![CDATA[Amnesty International]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[APT]]></category>
		<category><![CDATA[Arizona State Legislature]]></category>
		<category><![CDATA[Atlanta]]></category>
		<category><![CDATA[Australian Government]]></category>
		<category><![CDATA[Bahrain]]></category>
		<category><![CDATA[Bitcoin]]></category>
		<category><![CDATA[Bitcoinica]]></category>
		<category><![CDATA[Central Intelligence Agency]]></category>
		<category><![CDATA[Christian Science Monitor]]></category>
		<category><![CDATA[CIA]]></category>
		<category><![CDATA[Computer crime]]></category>
		<category><![CDATA[Cyber Espionage]]></category>
		<category><![CDATA[Cyberwarfare]]></category>
		<category><![CDATA[DAMT]]></category>
		<category><![CDATA[DDoS]]></category>
		<category><![CDATA[Denial-of-service attack]]></category>
		<category><![CDATA[Department of Education]]></category>
		<category><![CDATA[Distributed Denial Of Service]]></category>
		<category><![CDATA[DMT]]></category>
		<category><![CDATA[президент.рф]]></category>
		<category><![CDATA[ed.gov]]></category>
		<category><![CDATA[Elantis]]></category>
		<category><![CDATA[ESA]]></category>
		<category><![CDATA[eUKHost]]></category>
		<category><![CDATA[French ministry of Defense]]></category>
		<category><![CDATA[friendping.com]]></category>
		<category><![CDATA[fxtraders.eu]]></category>
		<category><![CDATA[Gh0st]]></category>
		<category><![CDATA[Gobernacion del Huila]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[GoSt]]></category>
		<category><![CDATA[Hangzhou Dianzi University]]></category>
		<category><![CDATA[Harvard]]></category>
		<category><![CDATA[INSS]]></category>
		<category><![CDATA[ISL Incorporating Services]]></category>
		<category><![CDATA[isWinker]]></category>
		<category><![CDATA[joinnlvpd.com]]></category>
		<category><![CDATA[Jonathan Shaw]]></category>
		<category><![CDATA[Kosova Hacker’s Security]]></category>
		<category><![CDATA[kremlin.ru]]></category>
		<category><![CDATA[Le4ky]]></category>
		<category><![CDATA[Malsec]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Mark Ruffalo]]></category>
		<category><![CDATA[MI6]]></category>
		<category><![CDATA[Ministry of Education Lifelong Learning and Religion]]></category>
		<category><![CDATA[mod.uk]]></category>
		<category><![CDATA[NASA]]></category>
		<category><![CDATA[National Film Board of Canada]]></category>
		<category><![CDATA[North Las Vegas Police Department]]></category>
		<category><![CDATA[Opening Ceremony]]></category>
		<category><![CDATA[OTE]]></category>
		<category><![CDATA[Panasonic]]></category>
		<category><![CDATA[Panpacific University]]></category>
		<category><![CDATA[Pastebin]]></category>
		<category><![CDATA[Plaxo]]></category>
		<category><![CDATA[Poison Ivy]]></category>
		<category><![CDATA[RAT]]></category>
		<category><![CDATA[Redhack]]></category>
		<category><![CDATA[Renault]]></category>
		<category><![CDATA[Sempra.com]]></category>
		<category><![CDATA[SOCA]]></category>
		<category><![CDATA[Solgryn.org]]></category>
		<category><![CDATA[Sony]]></category>
		<category><![CDATA[SQL Injection]]></category>
		<category><![CDATA[SQLi]]></category>
		<category><![CDATA[Supreme Court]]></category>
		<category><![CDATA[Team Dig7ta]]></category>
		<category><![CDATA[TeaMp0isoN]]></category>
		<category><![CDATA[Thai Royal Navy]]></category>
		<category><![CDATA[The Avengers]]></category>
		<category><![CDATA[The Best YoVille Hackers]]></category>
		<category><![CDATA[The Pirate Bay]]></category>
		<category><![CDATA[The Unknowns]]></category>
		<category><![CDATA[The Unknows]]></category>
		<category><![CDATA[Theresa May]]></category>
		<category><![CDATA[Twitter]]></category>
		<category><![CDATA[U.K. Ministry of Defence]]></category>
		<category><![CDATA[U.K. Supreme Court]]></category>
		<category><![CDATA[UGNazi]]></category>
		<category><![CDATA[unb.ca]]></category>
		<category><![CDATA[United Nations World Health Organization]]></category>
		<category><![CDATA[University of Arkansas]]></category>
		<category><![CDATA[University of Maine]]></category>
		<category><![CDATA[University of New Brunswick]]></category>
		<category><![CDATA[University Of New Mexico]]></category>
		<category><![CDATA[UrduHack]]></category>
		<category><![CDATA[Virgin Media]]></category>
		<category><![CDATA[Washington Military Department]]></category>
		<category><![CDATA[Websense]]></category>
		<category><![CDATA[York County]]></category>
		<category><![CDATA[YoVille]]></category>
		<category><![CDATA[Zynga]]></category>

		<guid isPermaLink="false">http://hackmageddon.com/?p=7199</guid>
		<description><![CDATA[As usual here it is the timeline of the Main Cyber Attacks occurred in May (at least according to my evaluation criteria). This first half of the month has seen the arrival of a new hacking collective, &#8220;The Unknowns&#8221;, who has performed an impressive trail of attacks during the first days of May, targeting Space [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7199&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:justify;">As usual here it is the timeline of the Main Cyber Attacks occurred in May (at least according to my evaluation criteria).</p>
<p style="text-align:justify;">This first half of the month has seen the arrival of a new hacking collective, &#8220;The Unknowns&#8221;, who has performed an impressive trail of attacks during the first days of May, targeting Space Agencies, Universities, and several other organizations. Although these events appear to be closer to cyber crime actions rather than hactivistim-driven attacks, they have not been the most remarkable ones of these days: as a matter of fact chronicles report of a massive breach at the Hangzhou Dianzi University, targeting approximately 150.000 acccounts.</p>
<p style="text-align:justify;">As far as hacktivism is concerned, this first half of May has confirmed the constant trend of DDoS attacks targeting high profile websites such as SOCA and CIA (once again) and the Supreme Court in retaliation for the U.K. extradition laws.</p>
<p style="text-align:justify;">Interesting to mention is also an alleged Cyber Espionage campaign targeting networks belonging to US natural gas pipeline companies.</p>
<p style="text-align:justify;"><em>If you want to have an idea of how fragile our data are inside the cyberspace, have a look at the timelines of the main Cyber Attacks in <a title="2011 Cyber Attacks Timeline Master Index" href="http://hackmageddon.com/2011-cyber-attacks-timeline-master-index/" target="_blank">2011</a> and <a title="2012 Cyber Attacks Timeline Master Index" href="http://hackmageddon.com/2012-cyber-attacks-timeline-master-index/" target="_blank">2012</a> (regularly updated), and follow <a title="Paolo Passeri Twitter Profile" href="https://twitter.com/#%21/paulsparrows" target="_blank">@paulsparrows</a> on Twitter for the latest updates.</em></p>
<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/may-2012-cyber-attack-timeline-part-i.png"><img class="aligncenter size-full wp-image-7200" title="May 2012 Cyber Attack Timeline Part I" src="http://paulsparrows.files.wordpress.com/2012/05/may-2012-cyber-attack-timeline-part-i.png?w=600&h=2933" alt="" width="600" height="2933" /></a><span id="more-7199"></span></p>
<ol>
<li><a href="http://thehackernews.com/2012/05/hacker-claims-to-hack-european-space.html">http://thehackernews.com/2012/05/hacker-claims-to-hack-european-space.html</a></li>
<li><a href="http://news.softpedia.com/news/Kosova-Hacker-s-Security-Leak-10-000-Credential-Sets-from-Greek-OTE-267250.shtml">http://news.softpedia.com/news/Kosova-Hacker-s-Security-Leak-10-000-Credential-Sets-from-Greek-OTE-267250.shtml</a></li>
<li><a href="http://www.theregister.co.uk/2012/04/30/eukhost_billing_system_compromise/">http://www.theregister.co.uk/2012/04/30/eukhost_billing_system_compromise/</a></li>
<li><a href="http://news.softpedia.com/news/National-Film-Board-of-Canada-Breached-by-DTM-267302.shtml">http://news.softpedia.com/news/National-Film-Board-of-Canada-Breached-by-DTM-267302.shtml</a></li>
<li><a href="http://www.11alive.com/news/article/240276/40/Atlanta-students-accused-of-hacking-school-computers-altering-attendance">http://www.11alive.com/news/article/240276/40/Atlanta-students-accused-of-hacking-school-computers-altering-http://www.guardian.co.uk/technology/2012/may/03/hackers-breached-secret-mod-systems</a></li>
<li><a href="http://news.softpedia.com/news/Israeli-Institute-for-National-Security-Studies-Serves-Visitors-Poison-Ivy-RAT-267388.shtml">http://news.softpedia.com/news/Israeli-Institute-for-National-Security-Studies-Serves-Visitors-Poison-Ivy-RAT-267388.shtml</a></li>
<li><a href="http://datalossdb.org/incidents/6406-malware-compromised-hosted-server-ssn-credit-card-payment-info-including-expiry-date-and-cvv-and-or-or-ach-payment-info-compromised-different-info-for-different-individuals">http://datalossdb.org/incidents/6406-malware-compromised-hosted-server-ssn-credit-card-payment-info-including-expiry-date-and-cvv-and-or-or-ach-payment-info-compromised-different-info-for-different-individuals</a></li>
<li><a href="http://www.pcworld.com/businesscenter/article/254908/hackers_blackmail_belgian_bank_with_threats_to_publish_customer_data.html">http://www.pcworld.com/businesscenter/article/254908/hackers_blackmail_belgian_bank_with_threats_to_publish_customer_data.html</a></li>
<li><a href="http://threatpost.com/en_us/blogs/ddos-attack-knocks-soca-website-offline-050312">http://threatpost.com/en_us/blogs/ddos-attack-knocks-soca-website-offline-050312</a></li>
<li><a href="http://news.softpedia.com/news/Anonymous-Attacks-Mexican-TV-for-Refusing-to-Broadcast-Presidential-Debate-267638.shtml">http://news.softpedia.com/news/Anonymous-Attacks-Mexican-TV-for-Refusing-to-Broadcast-Presidential-Debate-267638.shtml</a></li>
<li><a href="http://pastebin.com/biK5tjc4">http://pastebin.com/biK5tjc4</a></li>
<li><a href="http://www.techweekeurope.co.uk/news/anonymous-claims-supreme-court-and-cia-takedowns-76653">http://www.techweekeurope.co.uk/news/anonymous-claims-supreme-court-and-cia-takedowns-76653</a></li>
<li><a href="http://news.softpedia.com/news/Panasonic-United-Nations-and-Australian-Government-Hacked-by-TeaMp0isoN-267729.shtml">http://news.softpedia.com/news/Panasonic-United-Nations-and-Australian-Government-Hacked-by-TeaMp0isoN-267729.shtml</a></li>
<li><a href="http://www.csmonitor.com/USA/2012/0505/Alert-Major-cyber-attack-aimed-at-natural-gas-pipeline-companies">http://www.csmonitor.com/USA/2012/0505/Alert-Major-cyber-attack-aimed-at-natural-gas-pipeline-companies</a></li>
<li><a href="http://abcnews.go.com/Blotter/dhs-hackers-mounting-organized-cyber-attack-us-gas/story?id=16304818#.T7E-olKL7YR">http://abcnews.go.com/Blotter/dhs-hackers-mounting-organized-cyber-attack-us-gas/story?id=16304818#.T7E-olKL7YR</a></li>
<li><a href="http://datalossdb.org/incidents/6468-305-email-addresses-passwords-usernames-and-ip-addresses-dumped-on-the-internet">http://datalossdb.org/incidents/6468-305-email-addresses-passwords-usernames-and-ip-addresses-dumped-on-the-internet</a></li>
<li><a href="http://www.cyberwarnews.info/2012/05/08/the-european-forex-traders-hacked-by-teamghostshell/">http://www.cyberwarnews.info/2012/05/08/the-european-forex-traders-hacked-by-teamghostshell/</a></li>
<li><a href="http://www.forbes.com/sites/rogerfriedman/2012/05/06/avengers-the-hulk-gets-hacked-mark-ruffalos-twitter-account-hijacked/">http://www.forbes.com/sites/rogerfriedman/2012/05/06/avengers-the-hulk-gets-hacked-mark-ruffalos-twitter-account-hijacked/</a></li>
<li><a href="http://datalossdb.org/incidents/6641-647-passwords-and-email-addresses-dumped-on-the-internet">http://datalossdb.org/incidents/6641-647-passwords-and-email-addresses-dumped-on-the-internet</a></li>
<li><a href="http://datalossdb.org/incidents/6517-645-government-employees-names-email-addresses-and-passwords-plus-almost-300-other-names-usernames-email-addresses-and-passwords-dumped-on-the-internet">http://datalossdb.org/incidents/6517-645-government-employees-names-email-addresses-and-passwords-plus-almost-300-other-names-usernames-email-addresses-and-passwords-dumped-on-the-internet</a></li>
<li><a href="http://www.scmagazine.com.au/News/299830,chinese-uni-hacked-150000-accounts-dumped.aspx">http://www.scmagazine.com.au/News/299830,chinese-uni-hacked-150000-accounts-dumped.aspx</a></li>
<li><a href="http://www.theregister.co.uk/2012/05/09/virgin_media_website_anonymous/">http://www.theregister.co.uk/2012/05/09/virgin_media_website_anonymous/</a></li>
<li><a href="http://news.softpedia.com/news/Hackers-Steal-Digital-Goods-from-Zynga-YoVille-Users-268213.shtml">http://news.softpedia.com/news/Hackers-Steal-Digital-Goods-from-Zynga-YoVille-Users-268213.shtml</a></li>
<li><a href="http://blog.plaxo.com/2012/05/google-account-%E2%80%9Csuspicious-activity%E2%80%9D-next-steps/">http://blog.plaxo.com/2012/05/google-account-%E2%80%9Csuspicious-activity%E2%80%9D-next-steps/</a></li>
<li><a href="http://www.globalpost.com/dispatches/globalpost-blogs/the-grid/anonymous-un-palestinian-hunger-strike-israel-prisons">http://www.globalpost.com/dispatches/globalpost-blogs/the-grid/anonymous-un-palestinian-hunger-strike-israel-prisons</a></li>
<li><a href="http://rt.com/news/anonymous-hacked-kremlin-website-834/">http://rt.com/news/anonymous-hacked-kremlin-website-834/</a></li>
<li><a href="http://blogs.artinfo.com/silhouettes/2012/05/09/hackers-infiltrate-opening-ceremonys-online-boutique/">http://blogs.artinfo.com/silhouettes/2012/05/09/hackers-infiltrate-opening-ceremonys-online-boutique/</a></li>
<li><a href="http://www.mainebiz.biz/apps/pbcs.dll/article?AID=/20120511/NEWS0101/120519993">http://www.mainebiz.biz/apps/pbcs.dll/article?AID=/20120511/NEWS0101/120519993</a></li>
<li><a href="http://news.softpedia.com/news/UGNazi-Hackers-Attack-Edu-Gov-After-Being-Released-Exclusive-268997.shtml">http://news.softpedia.com/news/UGNazi-Hackers-Attack-Edu-Gov-After-Being-Released-Exclusive-268997.shtml</a></li>
<li><a href="http://community.websense.com/blogs/securitylabs/archive/2012/05/11/amnesty-international-uk-compromised.aspx">http://community.websense.com/blogs/securitylabs/archive/2012/05/11/amnesty-international-uk-compromised.aspx</a></li>
<li><a href="http://www.yorkcountygov.com/Departments/DepartmentsFP/MIS/Notification.aspx">http://www.yorkcountygov.com/Departments/DepartmentsFP/MIS/Notification.aspx</a></li>
<li><a href="http://www.cyberwarnews.info/2012/05/12/sony-in-the-sight-yet-again-emails-and-hosts-dumped-by-reckz0r/">http://www.cyberwarnews.info/2012/05/12/sony-in-the-sight-yet-again-emails-and-hosts-dumped-by-reckz0r/</a></li>
<li><a href="http://arstechnica.com/uncategorized/2012/05/bitcoins-worth-87000-plundered/">http://arstechnica.com/uncategorized/2012/05/bitcoins-worth-87000-plundered/</a></li>
<li><a href="http://www.cyberwarnews.info/2012/05/12/washington-military-department-hacked-data-leaked-by-le4ky/">http://www.cyberwarnews.info/2012/05/12/washington-military-department-hacked-data-leaked-by-le4ky/</a></li>
<li><a href="http://www.cyberwarnews.info/2012/05/12/south-australian-department-of-education-hacked-data-leaked-by-s3rverexe/">http://www.cyberwarnews.info/2012/05/12/south-australian-department-of-education-hacked-data-leaked-by-s3rverexe/</a></li>
<li><a href="http://www.cyberwarnews.info/2012/05/13/albanian-office-for-copyright-breached-by-s3rverexe/">http://www.cyberwarnews.info/2012/05/13/albanian-office-for-copyright-breached-by-s3rverexe/</a></li>
<li><a href="http://www.cyberwarnews.info/2012/05/13/44000-email-accounts-dumped-by-reckz0r/">http://www.cyberwarnews.info/2012/05/13/44000-email-accounts-dumped-by-reckz0r/</a></li>
<li><a href="http://news.softpedia.com/news/North-Las-Vegas-Police-Department-Recruitment-Site-Defaced-269311.shtml">http://news.softpedia.com/news/North-Las-Vegas-Police-Department-Recruitment-Site-Defaced-269311.shtml</a></li>
<li><a href="http://www.cyberwarnews.info/2012/05/13/turkey-ministry-of-family-and-social-policy-hacked-and-defaced-by-redhack/">http://www.cyberwarnews.info/2012/05/13/turkey-ministry-of-family-and-social-policy-hacked-and-defaced-by-redhack/</a></li>
<li><a href="http://www.cyberwarnews.info/2012/05/13/unm-electrical-and-computer-engineering-department-hacked-by-s3rverexe/">http://www.cyberwarnews.info/2012/05/13/unm-electrical-and-computer-engineering-department-hacked-by-s3rverexe/</a></li>
<li><a href="https://twitter.com/#%21/Reckz0r/statuses/202093357940490240">https://twitter.com/#!/Reckz0r/statuses/202093357940490240</a></li>
<li><a href="http://news.softpedia.com/news/University-of-New-Brunswick-Hacked-Login-Data-Leaked-269256.shtml">http://news.softpedia.com/news/University-of-New-Brunswick-Hacked-Login-Data-Leaked-269256.shtml</a></li>
<li><a href="http://www.techweekeurope.co.uk/news/anonymous-strikes-down-theresa-may-website-in-extradition-protest-77894">http://www.techweekeurope.co.uk/news/anonymous-strikes-down-theresa-may-website-in-extradition-protest-77894</a></li>
<li><a href="http://www.cyberwarnews.info/2012/05/16/sempra-energy-hacked-personal-information-leaked/">http://www.cyberwarnews.info/2012/05/16/sempra-energy-hacked-personal-information-leaked/</a></li>
<li><a href="http://www.cyberwarnews.info/2012/05/16/arizona-state-legislature-hacked-data-leaked-by-malsec/">http://www.cyberwarnews.info/2012/05/16/arizona-state-legislature-hacked-data-leaked-by-malsec/</a></li>
<li><a href="http://www.cyberwarnews.info/2012/05/16/panpacific-university-north-philippines-hacked-accounts-leaked/">http://www.cyberwarnews.info/2012/05/16/panpacific-university-north-philippines-hacked-accounts-leaked/</a></li>
</ol>
<h6 class="zemanta-related-title" style="font-size:1em;">Related articles</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://hackmageddon.com/2012/05/03/april-cyber-attacks-timeline-part-ii/" target="_blank">April Cyber Attacks Timeline (Part II)</a> (hackmageddon.com)</li>
<li class="zemanta-article-ul-li"><a href="http://hackmageddon.com/2012/05/06/april-2012-cyber-attacks-statistics/" target="_blank">April 2012 Cyber Attacks Statistics</a> (hackmageddon.com)</li>
<li class="zemanta-article-ul-li"><a href="http://hackmageddon.com/2012/04/16/april-2012-cyber-attacks-timeline-part-i/" target="_blank">April 2012 Cyber Attacks Timeline (Part I)</a> (hackmageddon.com)</li>
</ul>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/paulsparrows.wordpress.com/7199/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/paulsparrows.wordpress.com/7199/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/paulsparrows.wordpress.com/7199/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/paulsparrows.wordpress.com/7199/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/paulsparrows.wordpress.com/7199/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/paulsparrows.wordpress.com/7199/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/paulsparrows.wordpress.com/7199/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/paulsparrows.wordpress.com/7199/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/paulsparrows.wordpress.com/7199/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/paulsparrows.wordpress.com/7199/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/paulsparrows.wordpress.com/7199/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/paulsparrows.wordpress.com/7199/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/paulsparrows.wordpress.com/7199/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/paulsparrows.wordpress.com/7199/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7199&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackmageddon.com/2012/05/17/may-2012-cyber-attacks-timeline-part-i/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e40339b2368a611b6699fd5b50507a7b?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">paulsparrows</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/may-2012-cyber-attack-timeline-part-i.png" medium="image">
			<media:title type="html">May 2012 Cyber Attack Timeline Part I</media:title>
		</media:content>
	</item>
		<item>
		<title>A New Beginning For The Middle East Cyberwar?</title>
		<link>http://hackmageddon.com/2012/05/17/a-new-beginning-for-the-middle-east-cyberwar/</link>
		<comments>http://hackmageddon.com/2012/05/17/a-new-beginning-for-the-middle-east-cyberwar/#comments</comments>
		<pubDate>Thu, 17 May 2012 07:19:46 +0000</pubDate>
		<dc:creator>Paolo Passeri</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[ActiveDirectory]]></category>
		<category><![CDATA[Cyberwarfare]]></category>
		<category><![CDATA[Iran]]></category>
		<category><![CDATA[Iranian Meteorological Organization]]></category>
		<category><![CDATA[irimo.ir]]></category>
		<category><![CDATA[Israel]]></category>
		<category><![CDATA[Middle East]]></category>
		<category><![CDATA[Middle East Cyber War]]></category>
		<category><![CDATA[you-r!-k@n]]></category>

		<guid isPermaLink="false">http://hackmageddon.com/?p=7205</guid>
		<description><![CDATA[After several months of silence, a new resounding dump in Middle East. I have just received an email message from you-r!-k@n, one of the early pro-Israeli contenders of the Middle East Cyber War, advising me of a new huge dump against an Iranian Server (irimo.ir, Iranian Meteorological Organization), which is currently unavailable. He claims to [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7205&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:justify;">After several months of silence, a new resounding dump in Middle East.</p>
<p style="text-align:justify;">I have just received an email message from <a title="you-r!-k@n Tag" href="http://hackmageddon.com/tag/you-r-kn/" target="_blank">you-r!-k@n</a>, one of the early pro-Israeli contenders of the Middle East Cyber War, advising me of a new huge dump against an Iranian Server (irimo.ir, Iranian Meteorological Organization), which is currently unavailable. He claims to have acquired administrator privileges for the domain (1500 computers and server, 400 users), and has posted some screenshot as evidence, and the list of 400 Active Directory Users.</p>
<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/irimo-mail.png"><img class="aligncenter size-full wp-image-7207" title="irimo mail" src="http://paulsparrows.files.wordpress.com/2012/05/irimo-mail.png?w=600&h=263" alt="" width="600" height="263" /></a></p>
<p style="text-align:justify;">Of course I have decided not to publish the list except a small sample (which appears to come from a Windows 2000 Server), but cannot help but notice that, after a couple of months of silence, this is the first new event that closely resembles the resounding dumps which characterized the very first stage of the <a title="Middle East Cyber War Timeline Master Index" href="http://hackmageddon.com/middle-east-cyber-war-timeline/" target="_blank">Middle East Cyber War</a>.</p>
<p><a href="http://paulsparrows.files.wordpress.com/2012/05/irimoir.jpg"><img class="aligncenter size-medium wp-image-7209" title="irimoir" src="http://paulsparrows.files.wordpress.com/2012/05/irimoir.jpg?w=300&h=203" alt="" width="300" height="203" /></a></p>
<p style="text-align:justify;">Will this be an isolated episode or a brand new precursor of a new wave of attacks in the Middle East?</p>
<p style="text-align:justify;"><strong>Update:</strong> Irimo.ir is currently unavailable, however, I was given a screenshot of the site before it was taken down. Looking at the messages left on the devastated site (which announced the erase of the Active Directory), it is interesting to notice that the reference to the Nuclerar as to reaffirm that the standoff between Israel and Iran about the Nuclear Strategy of Tehran, is influencing also the Cyber Space.</p>
<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/irimo.jpg"><img class="aligncenter size-full wp-image-7223" title="irimo" src="http://paulsparrows.files.wordpress.com/2012/05/irimo.jpg?w=600&h=450" alt="" width="600" height="450" /></a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/paulsparrows.wordpress.com/7205/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/paulsparrows.wordpress.com/7205/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/paulsparrows.wordpress.com/7205/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/paulsparrows.wordpress.com/7205/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/paulsparrows.wordpress.com/7205/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/paulsparrows.wordpress.com/7205/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/paulsparrows.wordpress.com/7205/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/paulsparrows.wordpress.com/7205/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/paulsparrows.wordpress.com/7205/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/paulsparrows.wordpress.com/7205/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/paulsparrows.wordpress.com/7205/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/paulsparrows.wordpress.com/7205/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/paulsparrows.wordpress.com/7205/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/paulsparrows.wordpress.com/7205/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7205&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackmageddon.com/2012/05/17/a-new-beginning-for-the-middle-east-cyberwar/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e40339b2368a611b6699fd5b50507a7b?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">paulsparrows</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/irimo-mail.png" medium="image">
			<media:title type="html">irimo mail</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/irimoir.jpg?w=300" medium="image">
			<media:title type="html">irimoir</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/irimo.jpg" medium="image">
			<media:title type="html">irimo</media:title>
		</media:content>
	</item>
		<item>
		<title>Beware Of Linkedin Scams</title>
		<link>http://hackmageddon.com/2012/05/11/beware-of-linkedin-scams/</link>
		<comments>http://hackmageddon.com/2012/05/11/beware-of-linkedin-scams/#comments</comments>
		<pubDate>Fri, 11 May 2012 11:52:55 +0000</pubDate>
		<dc:creator>Paolo Passeri</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Email]]></category>
		<category><![CDATA[Email address]]></category>
		<category><![CDATA[LinkedIn]]></category>
		<category><![CDATA[LinkedIn Profile]]></category>
		<category><![CDATA[Scam]]></category>
		<category><![CDATA[Social media]]></category>
		<category><![CDATA[Social Network]]></category>
		<category><![CDATA[Spam]]></category>
		<category><![CDATA[Twitter]]></category>

		<guid isPermaLink="false">http://hackmageddon.com/?p=7183</guid>
		<description><![CDATA[You know, social media have become the last fronteer of spam and and scam. Yesterday I received a strange message from an unkown (i.e. non-existant, at least when I checked) LinkedIn Profile, inviting me to message my email address for a purpotred &#8220;undervalued $tock bid&#8221;. In this hard times the perpsective of easy money sounds [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7183&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:justify;">You know, social media have become the last fronteer of spam and and scam. Yesterday I received a strange message from an unkown (i.e. non-existant, at least when I checked) LinkedIn Profile, inviting me to message my email address for a purpotred &#8220;undervalued $tock bid&#8221;. In this hard times the perpsective of easy money sounds appealing but&#8230;</p>
<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/linkedin-scam.png"><img class="aligncenter size-full wp-image-7185" title="LinkedIn Scam" src="http://paulsparrows.files.wordpress.com/2012/05/linkedin-scam.png?w=600&h=233" alt="" width="600" height="233" /></a>&#8230;Always remember that LinkedIn is particularly attractive for cybercrookers since contacts have a bigger level of trust and confidence and the victims are lead to  lower the barreers of mistrust (the human firewall).</p>
<p style="text-align:justify;">Anyway, in case of suspect messages from LinkedIn always check the LinkedIn Checkbox (in this case, needless to say, the message was not listed, nor was the linkedin profile existant).</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/paulsparrows.wordpress.com/7183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/paulsparrows.wordpress.com/7183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/paulsparrows.wordpress.com/7183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/paulsparrows.wordpress.com/7183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/paulsparrows.wordpress.com/7183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/paulsparrows.wordpress.com/7183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/paulsparrows.wordpress.com/7183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/paulsparrows.wordpress.com/7183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/paulsparrows.wordpress.com/7183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/paulsparrows.wordpress.com/7183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/paulsparrows.wordpress.com/7183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/paulsparrows.wordpress.com/7183/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/paulsparrows.wordpress.com/7183/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/paulsparrows.wordpress.com/7183/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7183&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackmageddon.com/2012/05/11/beware-of-linkedin-scams/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e40339b2368a611b6699fd5b50507a7b?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">paulsparrows</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/linkedin-scam.png" medium="image">
			<media:title type="html">LinkedIn Scam</media:title>
		</media:content>
	</item>
		<item>
		<title>April 2012 Cyber Attacks Statistics</title>
		<link>http://hackmageddon.com/2012/05/06/april-2012-cyber-attacks-statistics/</link>
		<comments>http://hackmageddon.com/2012/05/06/april-2012-cyber-attacks-statistics/#comments</comments>
		<pubDate>Sun, 06 May 2012 14:58:27 +0000</pubDate>
		<dc:creator>Paolo Passeri</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[April]]></category>
		<category><![CDATA[Cyber Attacks]]></category>
		<category><![CDATA[Cyber Attacks Timeline]]></category>
		<category><![CDATA[Cybercrime]]></category>
		<category><![CDATA[Cyberwarfare]]></category>
		<category><![CDATA[DDoS]]></category>
		<category><![CDATA[Defacement]]></category>
		<category><![CDATA[Denial-of-service attack]]></category>
		<category><![CDATA[Hacktivism]]></category>
		<category><![CDATA[Law enforcement agency]]></category>
		<category><![CDATA[SQL Injection]]></category>
		<category><![CDATA[SQLi]]></category>
		<category><![CDATA[Statistics]]></category>

		<guid isPermaLink="false">http://hackmageddon.com/?p=7146</guid>
		<description><![CDATA[I have aggregated the data collected related to cyber attacks occurred in April 2012 (that you may find in the links on the right) in order to provide a consolidated view for the month. The statistics have been taken according to three parameters: Motivations Behind Attacks, Distribution of Targets and Distribution of Attack Techniques. Of [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7146&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/04/april-2012-cyber-attacks-timeline-part-i2.png"><img class="alignright  wp-image-7006" title="April 2012 Cyber Attacks Timeline Part I" src="http://paulsparrows.files.wordpress.com/2012/04/april-2012-cyber-attacks-timeline-part-i2.png?w=48&h=100" alt="" width="48" height="100" /></a><a href="http://paulsparrows.files.wordpress.com/2012/05/april-2012-cyber-attacks-timeline-part-ii1.png"><img class="alignright  wp-image-7134" title="April 2012 Cyber Attacks Timeline Part II" src="http://paulsparrows.files.wordpress.com/2012/05/april-2012-cyber-attacks-timeline-part-ii1.png?w=45&h=100" alt="" width="45" height="100" /></a>I have aggregated the data collected related to cyber attacks occurred in April 2012 (that you may find in the links on the right) in order to provide a consolidated view for the month. The statistics have been taken according to three parameters: <strong>Motivat</strong><strong>ions Behind Attacks</strong>, <strong>Distribution of Targets</strong> and <strong>Distribution </strong><strong>of Attack Techniques</strong>. Of course the information does not pretend to be exhaustive, in any case it is useful to provide a snapshot on the cyber landscape of the last month.</p>
<p><a href="http://paulsparrows.files.wordpress.com/2012/05/motivations-behind-attacks-cumulative-april2.png"><img class="alignleft  wp-image-7152" title="Motivations behind attacks cumulative April" src="http://paulsparrows.files.wordpress.com/2012/05/motivations-behind-attacks-cumulative-april2.png?w=325&h=185" alt="" width="325" height="185" /></a></p>
<p style="text-align:justify;">As far as the <strong>Motivations Behind Attacks</strong> are concerned, Cyber Crime ranks undoubtedly at number one with the 51% of the occurrences. Hacktivism is at number two with &#8220;only&#8221; the 39% of the occurrences. Other motivations such as Cyber Warfare or Cyber Espionage are far behind with respectively the 7 and 2 percent. This is not a surprise since attacks motivated by Cyber Espionage should be supposed to be subtle and hidden and this explains their rank (unlike the attacks motivated by hacktivism that use to attract the greatest attention by media).</p>
<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/distribution-of-targets-cumulative-april.png"><img class="alignright  wp-image-7157" title="Distribution Of Targets Cumulative April" src="http://paulsparrows.files.wordpress.com/2012/05/distribution-of-targets-cumulative-april.png?w=326&h=187" alt="" width="326" height="187" /></a>As far as the <strong>Distribution Of Targets</strong> is concerned, Governements keep on to be preferred targets, with nearly one third of the occurrences. Law Enforcement Agencies rank at number two with 9% immediately followed by Educational Institutions with 7%. Online Platforms such as Online Games or other kind of platforms (such as email services) are behind with the 6% of occurrences for both of them. Of course the high position for governments and LEAs is quite simple to explain: both categories are the preferred targets for hactkivists.</p>
<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/distribution-of-attack-techniques-cumulative-april.png"><img class="alignleft  wp-image-7161" title="Distribution Of Attack Techniques Cumulative April" src="http://paulsparrows.files.wordpress.com/2012/05/distribution-of-attack-techniques-cumulative-april.png?w=325&h=186" alt="" width="325" height="186" /></a></p>
<p style="text-align:justify;">A month characterized by Distributed Denial of Service, at least according to the <strong>Distribution of Attack Techniques</strong> chart. SQL Injection ranks at number two, immediately followed by Defacement. If we sum up also the indirect occurrences of SQLi (that is those cases whose symptoms seem the ones proper of SQLi but no direct evidences were found) the distribution of the two techniques is nearly the same (respectively 29% for DDoS and 27% for SQLi). Of course DDoS is the preferedd <a title="What is a Cyber Weapon?" href="http://hackmageddon.com/2012/04/22/what-is-a-cyber-weapon/" target="_blank">cyber weapon</a> for hacktivists and this explain its dominion on this unwelcomed chart.</p>
<p style="text-align:justify;"><em>If you want to have an idea of how fragile our data are inside the cyberspace, have a look at the timelines of the main Cyber Attacks in <a title="2011 Cyber Attacks Timeline Master Index" href="http://hackmageddon.com/2011-cyber-attacks-timeline-master-index/" target="_blank">2011</a> and <a title="2012 Cyber Attacks Timeline Master Index" href="http://hackmageddon.com/2012-cyber-attacks-timeline-master-index/" target="_blank">2012</a> (regularly updated), and follow <a title="Paolo Passeri Twitter Profile" href="https://twitter.com/#%21/paulsparrows" target="_blank">@paulsparrows</a> on Twitter for the latest updates.</em></p>
<h6 class="zemanta-related-title" style="font-size:1em;">Related articles</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://hackmageddon.com/2012/05/03/april-cyber-attacks-timeline-part-ii/" target="_blank">April Cyber Attacks Timeline (Part II)</a> (hackmageddon.com)</li>
<li class="zemanta-article-ul-li"><a title="April 2012 Cyber Attacks Timeline (Part I)" href="http://hackmageddon.com/2012/04/16/april-2012-cyber-attacks-timeline-part-i/" target="_blank">April Cyber Attacks Timenile (Part I)</a> (hackmageddon.com)</li>
</ul>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/paulsparrows.wordpress.com/7146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/paulsparrows.wordpress.com/7146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/paulsparrows.wordpress.com/7146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/paulsparrows.wordpress.com/7146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/paulsparrows.wordpress.com/7146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/paulsparrows.wordpress.com/7146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/paulsparrows.wordpress.com/7146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/paulsparrows.wordpress.com/7146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/paulsparrows.wordpress.com/7146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/paulsparrows.wordpress.com/7146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/paulsparrows.wordpress.com/7146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/paulsparrows.wordpress.com/7146/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/paulsparrows.wordpress.com/7146/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/paulsparrows.wordpress.com/7146/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7146&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackmageddon.com/2012/05/06/april-2012-cyber-attacks-statistics/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e40339b2368a611b6699fd5b50507a7b?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">paulsparrows</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/04/april-2012-cyber-attacks-timeline-part-i2.png?w=48" medium="image">
			<media:title type="html">April 2012 Cyber Attacks Timeline Part I</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/april-2012-cyber-attacks-timeline-part-ii1.png?w=45" medium="image">
			<media:title type="html">April 2012 Cyber Attacks Timeline Part II</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/motivations-behind-attacks-cumulative-april2.png" medium="image">
			<media:title type="html">Motivations behind attacks cumulative April</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/distribution-of-targets-cumulative-april.png" medium="image">
			<media:title type="html">Distribution Of Targets Cumulative April</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/distribution-of-attack-techniques-cumulative-april.png" medium="image">
			<media:title type="html">Distribution Of Attack Techniques Cumulative April</media:title>
		</media:content>
	</item>
		<item>
		<title>April 2012 Cyber Attacks Timeline (Part II)</title>
		<link>http://hackmageddon.com/2012/05/03/april-cyber-attacks-timeline-part-ii/</link>
		<comments>http://hackmageddon.com/2012/05/03/april-cyber-attacks-timeline-part-ii/#comments</comments>
		<pubDate>Thu, 03 May 2012 13:34:41 +0000</pubDate>
		<dc:creator>Paolo Passeri</dc:creator>
				<category><![CDATA[Cyber Attacks Timeline]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[#OpAap]]></category>
		<category><![CDATA[#OpBahrain]]></category>
		<category><![CDATA[#OpTrialAtHome]]></category>
		<category><![CDATA[@5orrow]]></category>
		<category><![CDATA[@EvilSecurity]]></category>
		<category><![CDATA[@Havittaja]]></category>
		<category><![CDATA[Account Hijacking]]></category>
		<category><![CDATA[Al Arabiya]]></category>
		<category><![CDATA[AlQaedaSec]]></category>
		<category><![CDATA[Andy Palmer]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[AOL Mail]]></category>
		<category><![CDATA[Bahrain]]></category>
		<category><![CDATA[Berrien County Sheriff's Department]]></category>
		<category><![CDATA[boxun.com]]></category>
		<category><![CDATA[California State University San Marcos]]></category>
		<category><![CDATA[CIA]]></category>
		<category><![CDATA[CoD3X]]></category>
		<category><![CDATA[Cryptic Studios]]></category>
		<category><![CDATA[CsGameServers]]></category>
		<category><![CDATA[Cyber Crime]]></category>
		<category><![CDATA[Cyberwarfare]]></category>
		<category><![CDATA[dc.gov]]></category>
		<category><![CDATA[Defacement]]></category>
		<category><![CDATA[Denial-of-service attack]]></category>
		<category><![CDATA[Department of Justice]]></category>
		<category><![CDATA[District of Columbia]]></category>
		<category><![CDATA[DOJ]]></category>
		<category><![CDATA[El Emara]]></category>
		<category><![CDATA[f1-racers.net]]></category>
		<category><![CDATA[Formula 1]]></category>
		<category><![CDATA[French Minister of Budget]]></category>
		<category><![CDATA[Government]]></category>
		<category><![CDATA[Greece's Finance Ministry]]></category>
		<category><![CDATA[Hacksoft]]></category>
		<category><![CDATA[Hotmail]]></category>
		<category><![CDATA[International Police Association]]></category>
		<category><![CDATA[IPA]]></category>
		<category><![CDATA[Iran]]></category>
		<category><![CDATA[Khosrow Zarefarid]]></category>
		<category><![CDATA[La Nueva Casa de Amigos Eye Clinic]]></category>
		<category><![CDATA[Lake County Sheriff's Office]]></category>
		<category><![CDATA[Law enforcement agency]]></category>
		<category><![CDATA[LCSO.org]]></category>
		<category><![CDATA[LEA]]></category>
		<category><![CDATA[Lebanon]]></category>
		<category><![CDATA[live-timing.formula1.com]]></category>
		<category><![CDATA[LulzSec Peru]]></category>
		<category><![CDATA[Matt Weaver]]></category>
		<category><![CDATA[MI6]]></category>
		<category><![CDATA[NASA]]></category>
		<category><![CDATA[Nasdaq]]></category>
		<category><![CDATA[Nissan]]></category>
		<category><![CDATA[Noticaribe]]></category>
		<category><![CDATA[nyc.gov]]></category>
		<category><![CDATA[palermo.edu]]></category>
		<category><![CDATA[Pastie.org]]></category>
		<category><![CDATA[Political Economy Research Institute]]></category>
		<category><![CDATA[Raise Your Voice]]></category>
		<category><![CDATA[SQL Injection]]></category>
		<category><![CDATA[SQLi]]></category>
		<category><![CDATA[Stichting Brein]]></category>
		<category><![CDATA[Stuxnet]]></category>
		<category><![CDATA[SweDreamz.com]]></category>
		<category><![CDATA[Team Dig7tal]]></category>
		<category><![CDATA[Team GhostShell]]></category>
		<category><![CDATA[Texas Department of Transportation]]></category>
		<category><![CDATA[Three Rivers Park District]]></category>
		<category><![CDATA[Trinidad and Tobago]]></category>
		<category><![CDATA[Twitter]]></category>
		<category><![CDATA[Two Plus Two]]></category>
		<category><![CDATA[UGNazi]]></category>
		<category><![CDATA[UK2.NET]]></category>
		<category><![CDATA[University of Arkansas]]></category>
		<category><![CDATA[University of Houston College of Optometry]]></category>
		<category><![CDATA[University of Massachusetts]]></category>
		<category><![CDATA[University of Palermo]]></category>
		<category><![CDATA[wa.gov]]></category>
		<category><![CDATA[Yahoo!]]></category>
		<category><![CDATA[Zscaler]]></category>

		<guid isPermaLink="false">http://hackmageddon.com/?p=7130</guid>
		<description><![CDATA[Here the first part covering the cyber attacks from 1 to 15 April. April is over and here it is the second half of the Cyber Attacks Timeline covering the time period spanning from 16 to 30 april 2012. The last two weeks of this month have been characterized by several remarkable events (at least [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7130&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:justify;"><strong><a title="April 2012 Cyber Attacks Timeline (Part I)" href="http://hackmageddon.com/2012/04/16/april-2012-cyber-attacks-timeline-part-i/" target="_blank">Here</a> the first part covering the cyber attacks from 1 to 15 April.</strong></p>
<p style="text-align:justify;">April is over and here it is the second half of the Cyber Attacks Timeline covering the time period spanning from 16 to 30 april 2012.</p>
<p style="text-align:justify;">The last two weeks of this month have been characterized by several remarkable events (at least for the newspapers), such as the #OpBahrain which unleashed a trail of attacks from the Anonymous against websites related to the Formula 1 GP in Bahrain. Other noticeable events triggered by hacktivism include several DDoS attacks against CIA, MI6, Department of Justice, and a couple of <a title="Law Enforcement Agencies Under Attack… Again" href="http://hackmageddon.com/2012/04/28/law-enforcement-agencies-under-attack-again/" target="_blank">Law Enforcement Agencies</a> which continue to be a preferred target for hackers.</p>
<p style="text-align:justify;">On the Cyber Crime front (still the major apparent motivation for the attacks) this month reports, among the events, a breach to Nissan and other DDoS attacks against the District of Columbia, the State of Washington and Nasdaq (I would not define them just motivated by hacktivism). Other events include a couple of 0-day vulnerabilities targeting popular e-mail services and affecting potentially million of users.</p>
<p style="text-align:justify;">Last but not least, April has brought a new cyber attack to Iran crude oil industry, despite, so far, there are no clear evidences of a new Stuxnet-like Cyber Attack. This is not the only episode targeting Iran which also suffered 3 million of banks accounts compromised.</p>
<p style="text-align:justify;">For the chronicle I decided to insert in the timeline also the breach to the game publisher Cryptic Studios. Although it happened in 2010 (sic) it was discovered only few days ago&#8230;</p>
<p style="text-align:justify;"><em>If you want to have an idea of how fragile our data are inside the cyberspace, have a look at the timelines of the main Cyber Attacks in <a title="2011 Cyber Attacks Timeline Master Index" href="http://hackmageddon.com/2011-cyber-attacks-timeline-master-index/" target="_blank">2011</a> and <a title="2012 Cyber Attacks Timeline Master Index" href="http://hackmageddon.com/2012-cyber-attacks-timeline-master-index/" target="_blank">2012</a> (regularly updated), and follow <a title="Paolo Passeri Twitter Profile" href="https://twitter.com/#%21/paulsparrows" target="_blank">@paulsparrows</a> on Twitter for the latest updates.</em></p>
<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2012/05/april-2012-cyber-attacks-timeline-part-ii1.png"><img class="aligncenter  wp-image-7134" title="April 2012 Cyber Attacks Timeline Part II" src="http://paulsparrows.files.wordpress.com/2012/05/april-2012-cyber-attacks-timeline-part-ii1.png?w=599&h=1954" alt="" width="599" height="1954" /></a><span id="more-7130"></span></p>
<ol>
<li style="text-align:justify;"><a href="http://datalossdb.org/incidents/6290-databases-with-usernames-and-plain-text-passwords-e-mail-addresses-and-ip-addresses-dumped-on-the-internet-zipped-archive-includes-a-marriage-license-database-and-e-mail-correspondence">http://datalossdb.org/incidents/6290-databases-with-usernames-and-plain-text-passwords-e-mail-addresses-and-ip-addresses-dumped-on-the-internet-zipped-archive-includes-a-marriage-license-database-and-e-mail-correspondence</a></li>
<li style="text-align:justify;"><a href="http://rt.com/news/cia-ddos-attacks-usa-120/">http://rt.com/news/cia-ddos-attacks-usa-120/</a></li>
<li style="text-align:justify;"><a href="http://www.itproportal.com/2012/04/17/anonymous-claims-multiple-government-sites-downed/">http://www.itproportal.com/2012/04/17/anonymous-claims-multiple-government-sites-downed/</a></li>
<li style="text-align:justify;"><a href="http://www.zdnet.com/blog/security/3-million-bank-accounts-hacked-in-iran/11577">http://www.zdnet.com/blog/security/3-million-bank-accounts-hacked-in-iran/11577</a></li>
<li style="text-align:justify;"><a href="http://news.softpedia.com/news/Team-GhostShell-Hacks-University-of-Arkansas-Computer-Store-264675.shtml">http://news.softpedia.com/news/Team-GhostShell-Hacks-University-of-Arkansas-Computer-Store-264675.shtml</a></li>
<li style="text-align:justify;"><a href="http://www.reuters.com/article/2012/04/17/lebanon-hackers-idUSL6E8FH1P320120417">http://www.reuters.com/article/2012/04/17/lebanon-hackers-idUSL6E8FH1P320120417</a></li>
<li style="text-align:justify;"><a href="http://www.pastebay.net/520203">http://www.pastebay.net/520203</a></li>
<li style="text-align:justify;"><a href="http://research.zscaler.com/2012/04/french-budget-minister-website-hijacked.html">http://research.zscaler.com/2012/04/french-budget-minister-website-hijacked.html</a></li>
<li style="text-align:justify;"><a href="http://news.softpedia.com/news/AlQaedaSec-Launch-DDOS-Attack-on-New-York-City-Website-264960.shtml">http://news.softpedia.com/news/AlQaedaSec-Launch-DDOS-Attack-on-New-York-City-Website-264960.shtml</a></li>
<li style="text-align:justify;"><a href="http://www.nctimes.com/news/local/san-marcos/san-marcos-fbi-looking-into-csusm-election-tampering-allegations/article_bf181132-7707-537e-b380-ca33c67c4a8b.html">http://www.nctimes.com/news/local/san-marcos/san-marcos-fbi-looking-into-csusm-election-tampering-allegations/article_bf181132-7707-537e-b380-ca33c67c4a8b.html</a></li>
<li style="text-align:justify;"><a href="http://www.statesman.com/news/local/cyberattack-hits-1-600-txtag-customers-2315464.html">http://www.statesman.com/news/local/cyberattack-hits-1-600-txtag-customers-2315464.html</a></li>
<li style="text-align:justify;"><a href="http://news.softpedia.com/news/Hackers-Attack-Heart-of-US-District-of-Columbia-Site-Down-265228.shtml">http://news.softpedia.com/news/Hackers-Attack-Heart-of-US-District-of-Columbia-Site-Down-265228.shtml</a></li>
<li style="text-align:justify;"><a href="http://news.softpedia.com/news/LulzSec-Peru-Breach-Site-of-The-Hacker-Security-Firm-265251.shtml">http://news.softpedia.com/news/LulzSec-Peru-Breach-Site-of-The-Hacker-Security-Firm-265251.shtml</a></li>
<li style="text-align:justify;"><a href="http://news.softpedia.com/news/NASDAQ-Site-Taken-Down-by-UGNazi-Hackers-265473.shtml">http://news.softpedia.com/news/NASDAQ-Site-Taken-Down-by-UGNazi-Hackers-265473.shtml</a></li>
<li style="text-align:justify;"><a href="http://www.zdnet.com/blog/security/anonymous-hacks-formula-1/11661">http://www.zdnet.com/blog/security/anonymous-hacks-formula-1/11661</a></li>
<li style="text-align:justify;"><a href="http://nissannews.com/en-US/nissan/usa/releases/statement-nissan-is-taking-actions-to-protect-and-inform-employees-and-customers-following-an-intrusion-into-the-company-s-global-network-systems">http://nissannews.com/en-US/nissan/usa/releases/statement-nissan-is-taking-actions-to-protect-and-inform-employees-and-customers-following-an-intrusion-into-the-company-s-global-network-systems</a></li>
<li style="text-align:justify;"><a href="http://www.opt.uh.edu/news/casa-english.cfm">http://www.opt.uh.edu/news/casa-english.cfm</a></li>
<li style="text-align:justify;"><a href="http://knightcenter.utexas.edu/blog/00-9806-mexican-digital-newspaper-disabled-frequent-cyberattacks">http://knightcenter.utexas.edu/blog/00-9806-mexican-digital-newspaper-disabled-frequent-cyberattacks</a></li>
<li style="text-align:justify;"><a href="http://businesstech.co.za/news/internet/10558/internets-role-in-chinese-hacking-scandal/">http://businesstech.co.za/news/internet/10558/internets-role-in-chinese-hacking-scandal/</a></li>
<li style="text-align:justify;"><a href="http://news.softpedia.com/news/DDOS-Attack-Launched-on-State-of-Washington-Site-265721.shtml">http://news.softpedia.com/news/DDOS-Attack-Launched-on-State-of-Washington-Site-265721.shtml</a></li>
<li style="text-align:justify;"><a href="http://datalossdb.org/incidents/6352-72-redacted-names-e-mail-addresses-and-passport-numbers-dumped-on-the-internet">http://datalossdb.org/incidents/6352-72-redacted-names-e-mail-addresses-and-passport-numbers-dumped-on-the-internet</a></li>
<li style="text-align:justify;"><a href="http://www.bloomberg.com/news/2012-04-23/iran-detects-computer-worm-targeting-oil-ministry-mehr-says.html">http://www.bloomberg.com/news/2012-04-23/iran-detects-computer-worm-targeting-oil-ministry-mehr-says.html</a></li>
<li style="text-align:justify;"><a href="http://news.softpedia.com/news/Rails-Machine-Pulls-Plug-on-Pastie-org-After-2-DDOS-Attacks-266397.shtml">http://news.softpedia.com/news/Rails-Machine-Pulls-Plug-on-Pastie-org-After-2-DDOS-Attacks-266397.shtml</a></li>
<li style="text-align:justify;"><a href="http://thehackernews.com/2012/04/hacker-deface-t-parliament-website-to.html">http://thehackernews.com/2012/04/hacker-deface-t-parliament-website-to.html</a></li>
<li style="text-align:justify;"><a href="http://www.reuters.com/article/2012/04/24/greece-hackers-idUSL5E8FO2XA20120424">http://www.reuters.com/article/2012/04/24/greece-hackers-idUSL5E8FO2XA20120424</a></li>
<li style="text-align:justify;"><a href="http://english.alarabiya.net/articles/2012/04/24/209946.html">http://english.alarabiya.net/articles/2012/04/24/209946.html</a></li>
<li style="text-align:justify;"><a href="http://www.crypticstudios.com/securitynotice">http://www.crypticstudios.com/securitynotice</a></li>
<li style="text-align:justify;"><a href="http://datalossdb.org/incidents/6374-e-mail-addresses-and-encrypted-passwords-may-have-been-acquired-by-hacker-who-indicated-ability-to-decrypt-passwords">http://datalossdb.org/incidents/6374-e-mail-addresses-and-encrypted-passwords-may-have-been-acquired-by-hacker-who-indicated-ability-to-decrypt-passwords</a></li>
<li style="text-align:justify;"><a href="http://www.theregister.co.uk/2012/04/26/uk2net_outage_in_ddos_attack/">http://www.theregister.co.uk/2012/04/26/uk2net_outage_in_ddos_attack/</a></li>
<li style="text-align:justify;"><a href="http://www.huffingtonpost.com/2012/04/27/taliban-website-hacked_n_1458061.html">http://www.huffingtonpost.com/2012/04/27/taliban-website-hacked_n_1458061.html</a></li>
<li style="text-align:justify;"><a href="http://thehackernews.com/2012/04/10-lebanese-government-websites-taken.html">http://thehackernews.com/2012/04/10-lebanese-government-websites-taken.html</a></li>
<li style="text-align:justify;"><a href="http://news.softpedia.com/news/Hackers-Leak-Admin-Credentials-from-University-of-Massachusetts-Site-266511.shtml">http://news.softpedia.com/news/Hackers-Leak-Admin-Credentials-from-University-of-Massachusetts-Site-266511.shtml</a></li>
<li style="text-align:justify;"><a href="http://nakedsecurity.sophos.com/2012/04/27/microsoft-rushes-out-fix-after-hackers-change-passwords-to-hack-hotmail-accounts/">http://nakedsecurity.sophos.com/2012/04/27/microsoft-rushes-out-fix-after-hackers-change-passwords-to-hack-hotmail-accounts/</a></li>
<li style="text-align:justify;"><a href="http://thehackernews.com/2012/04/international-police-association.html">http://thehackernews.com/2012/04/international-police-association.html</a></li>
<li style="text-align:justify;"><a href="http://minnetonka.patch.com/articles/three-rivers-park-district-reports-security-breach">http://minnetonka.patch.com/articles/three-rivers-park-district-reports-security-breach</a></li>
<li style="text-align:justify;"><a href="http://news.softpedia.com/news/AntiSec-Hackers-Leak-40-GB-of-Data-from-Lake-County-Sheriff-s-Office-266784.shtml">http://news.softpedia.com/news/AntiSec-Hackers-Leak-40-GB-of-Data-from-Lake-County-Sheriff-s-Office-266784.shtml</a></li>
<li style="text-align:justify;"><a href="http://pastebin.com/Ue1vJwxP">http://pastebin.com/Ue1vJwxP</a></li>
<li style="text-align:justify;"><a href="http://thehackernews.com/2012/04/yet-another-hotmail-aol-and-yahoo.html">http://thehackernews.com/2012/04/yet-another-hotmail-aol-and-yahoo.html</a></li>
<li style="text-align:justify;"><a href="http://news.softpedia.com/news/University-of-Palermo-Hacked-SSHA-Password-Hashes-Leaked-267053.shtml">http://news.softpedia.com/news/University-of-Palermo-Hacked-SSHA-Password-Hashes-Leaked-267053.shtml</a></li>
<li style="text-align:justify;"><a href="http://pastebin.com/zz7RcGS0">http://pastebin.com/zz7RcGS0</a></li>
</ol>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/paulsparrows.wordpress.com/7130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/paulsparrows.wordpress.com/7130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/paulsparrows.wordpress.com/7130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/paulsparrows.wordpress.com/7130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/paulsparrows.wordpress.com/7130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/paulsparrows.wordpress.com/7130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/paulsparrows.wordpress.com/7130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/paulsparrows.wordpress.com/7130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/paulsparrows.wordpress.com/7130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/paulsparrows.wordpress.com/7130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/paulsparrows.wordpress.com/7130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/paulsparrows.wordpress.com/7130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/paulsparrows.wordpress.com/7130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/paulsparrows.wordpress.com/7130/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7130&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackmageddon.com/2012/05/03/april-cyber-attacks-timeline-part-ii/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e40339b2368a611b6699fd5b50507a7b?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">paulsparrows</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/april-2012-cyber-attacks-timeline-part-ii1.png" medium="image">
			<media:title type="html">April 2012 Cyber Attacks Timeline Part II</media:title>
		</media:content>
	</item>
		<item>
		<title>Philippines and China, on The Edge of a New Cyber Conflict?</title>
		<link>http://hackmageddon.com/2012/05/01/philippines-and-china-on-the-edge-of-a-new-cyber-conflict/</link>
		<comments>http://hackmageddon.com/2012/05/01/philippines-and-china-on-the-edge-of-a-new-cyber-conflict/#comments</comments>
		<pubDate>Tue, 01 May 2012 17:10:29 +0000</pubDate>
		<dc:creator>Paolo Passeri</dc:creator>
				<category><![CDATA[Cyberwar]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[#OpChinaDown]]></category>
		<category><![CDATA[Anonymous #OccupyPhilippines]]></category>
		<category><![CDATA[Anonymous Butuan]]></category>
		<category><![CDATA[China]]></category>
		<category><![CDATA[Cyber War]]></category>
		<category><![CDATA[DDoS]]></category>
		<category><![CDATA[Defacement]]></category>
		<category><![CDATA[Distributed Denial Of Service]]></category>
		<category><![CDATA[Hacktivism]]></category>
		<category><![CDATA[Malacanang]]></category>
		<category><![CDATA[Manila]]></category>
		<category><![CDATA[Philippine]]></category>
		<category><![CDATA[PrivateX]]></category>
		<category><![CDATA[Scarborough Shoal]]></category>
		<category><![CDATA[Spratly Islands]]></category>
		<category><![CDATA[University of the Philippines]]></category>

		<guid isPermaLink="false">http://hackmageddon.com/?p=7119</guid>
		<description><![CDATA[05/11/12: Updated timeline. The tension between Philippines and China escalates and new cyber attacks target both sides. The month of April has suddenly revealed a new unexpected Cyber Conflict between two very different countries: Philippines and China. Of course the Chinese Cyber Activity is not that surprising, differently from the Philippines which had not shown [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7119&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:justify;"><strong>05/11/12: Updated timeline. The tension between Philippines and China escalates and new cyber attacks target both sides.</strong></p>
<p style="text-align:justify;">The month of April has suddenly revealed a new unexpected Cyber Conflict between two very different countries: Philippines and China.</p>
<p style="text-align:justify;">Of course the <a title="The China Cyber Attacks Syndrome" href="http://hackmageddon.com/2011/11/11/the-china-cyber-attacks-syndrome/" target="_blank">Chinese Cyber Activity</a> is not that surprising, differently from the Philippines which had not shown any bellicose intention in the Cyber Domain. At least until these days when the cyber peace between the two countries has been broken because of a dispute concerning the sovereignty on the <a class="zem_slink" title="Scarborough Shoal" href="http://en.wikipedia.org/wiki/Scarborough_Shoal" rel="wikipedia" target="_blank">Scarborough Shoal</a> and the <a class="zem_slink" title="Spratly Islands" href="http://en.wikipedia.org/wiki/Spratly_Islands" rel="wikipedia" target="_blank">Spratly Islands</a> claimed from both countries. As often happens, the dispute has crossed the boundaries between the real and the cyber worlds and has hence unleashed an endless and unexpected trail of mutual cyber attacks.</p>
<p style="text-align:justify;">According to Roy Espiritu, spokesman of the government&#8217;s information technology office, all the attacks came <a href="http://www.google.com/hostednews/afp/article/ALeqM5gRku9jc_m_4kVgCyaE2UUQA5gu9Q?docId=CNG.97faeb0d290d24ff91c7fcf28bb4e37e.5f1" target="_blank">after Philippine ships faced off with Chinese patrol vessels</a> in April 8 in the disputed Scarborough Shoal in the South China Sea. Before that, there had been no such eventsm at least until April 2o, when some hackers, identifying  themselves as Chinese, attacked to the University of the Philippines. In that circumstance they defaced the UP website (up.edu.ph) with a map, labeled with Chinese characters, showing the Scarborough Shoal (Panatag as called by the Philippines and Huangyan by China).</p>
<p style="text-align:justify;">Needless to say, the latter episode has started an endless line of mutual attacks that are still continuing despite the calls to end the attacks from Manila.</p>
<p style="text-align:justify;">Will the cyber conflict be limited to &#8220;simple&#8221; defacements, or will it take the shape of the first phase of the <a title="Middle East Cyber War Timeline Master Index" href="http://hackmageddon.com/middle-east-cyber-war-timeline/" target="_blank">Middle East Cyber War</a> when both parties faced themselves leaking credit card details of innocent individuals? Moreover, are critical infrastructure really in danger as <a href="http://www.abs-cbnnews.com/business/04/23/12/ph-china-hacker-wars-could-affect-banks-telcos" target="_blank">suggested </a>by Filipino IT professionals?</p>
<p style="text-align:justify;">Based on the current events, maybe this latter scenario is exaggerated, in any case once again, the upsetting evidence shows that the Cyber World has become a consolidated further battlefield for the disputes inflicting the real world.</p>
<p style="text-align:justify;"><em>If you want to have an idea of how fragile is the equlibrium inside the cyberspace, have a look at the timelines of the main Cyber Attacks in <a title="2011 Cyber Attacks Timeline Master Index" href="http://hackmageddon.com/2011-cyber-attacks-timeline-master-index/" target="_blank">2011</a> and <a title="2012 Cyber Attacks Timeline Master Index" href="http://hackmageddon.com/2012-cyber-attacks-timeline-master-index/" target="_blank">2012</a> (regularly updated), and follow <a title="Paolo Passeri Twitter Profile" href="https://twitter.com/#%21/paulsparrows" target="_blank">@paulsparrows</a> on Twitter for the latest updates.</em></p>
<p style="text-align:center;"><a href="http://paulsparrows.files.wordpress.com/2012/05/china-philippines-update.png"><img class="aligncenter size-full wp-image-7195" title="China Philippines Update" src="http://paulsparrows.files.wordpress.com/2012/05/china-philippines-update.png?w=600&h=1900" alt="" width="600" height="1900" /></a></p>
<p style="text-align:justify;"><span id="more-7119"></span></p>
<div>1.<a href="http://www.philstar.com/nation/article.aspx?publicationsubcategoryid=200&amp;articleid=798961" target="_blank">http://www.philstar.com/nation/article.aspx?publicationsubcategoryid=200&amp;articleid=798961</a></div>
<div>2.<a href="http://www.gmanetwork.com/news/story/255765/scitech/technology/pinoy-hackers-strike-back-at-china-websites-up-site-restored" target="_blank">http://www.gmanetwork.com/news/story/255765/scitech/technology/pinoy-hackers-strike-back-at-china-websites-up-site-restored</a></div>
<div>3.<a href="http://www.abs-cbnnews.com/nation/04/22/12/palace-calls-restraint-amid-cyber-attacks-between-ph-china" target="_blank">http://www.abs-cbnnews.com/nation/04/22/12/palace-calls-restraint-amid-cyber-attacks-between-ph-china</a></div>
<div>4.<a href="http://www.gmanetwork.com/news/story/255935/scitech/technology/palace-websites-targeted-by-suspected-chinese-hackers" target="_blank">http://www.gmanetwork.com/news/story/255935/scitech/technology/palace-websites-targeted-by-suspected-chinese-hackers</a></div>
<div>5.<a href="http://www.abs-cbnnews.com/-depth/04/24/12/pinoy-hackers-strike-back-china-websites" target="_blank">http://www.abs-cbnnews.com/-depth/04/24/12/pinoy-hackers-strike-back-china-websites</a></div>
<div>6.<a href="http://www.abs-cbnnews.com/-depth/04/25/12/chinese-hackers-target-more-ph-websites" target="_blank">http://www.abs-cbnnews.com/-depth/04/25/12/chinese-hackers-target-more-ph-websites</a></div>
<div>7.<a href="http://www.gmanetwork.com/news/story/256173/scitech/technology/dbm-site-defaced-other-govt-sites-down" target="_blank">http://www.gmanetwork.com/news/story/256173/scitech/technology/dbm-site-defaced-other-govt-sites-down</a></div>
<div>8.<a href="http://www.gmanetwork.com/news/story/256140/scitech/technology/phl-govt-doesnt-condone-hacking-of-chinese-websites-says-dost" target="_blank">http://www.gmanetwork.com/news/story/256140/scitech/technology/phl-govt-doesnt-condone-hacking-of-chinese-websites-says-dost</a></div>
<div>9.<a href="http://www.abs-cbnnews.com/nation/04/26/12/more-chinese-websites-hacked" target="_blank">http://www.abs-cbnnews.com/nation/04/26/12/more-chinese-websites-hacked</a></div>
<div>10.<a href="http://www.abs-cbnnews.com/-depth/04/30/12/hackers-continue-attacks-china-websites" target="_blank">http://www.abs-cbnnews.com/-depth/04/30/12/hackers-continue-attacks-china-websites</a></div>
<div>
<div>11.<a href="http://www.abs-cbnnews.com/-depth/05/03/12/pentagon-help-philippines-vs-hackers" target="_blank">http://www.abs-cbnnews.com/-depth/05/03/12/pentagon-help-philippines-vs-hackers</a></div>
<div>12.<a href="http://www.abs-cbnnews.com/nation/05/04/12/philippine-stars-website-hacked" target="_blank">http://www.abs-cbnnews.com/nation/05/04/12/philippine-stars-website-hacked</a></div>
</div>
<div>13.<a href="http://www.journal.com.ph/index.php/news/top-stories/29326-end-to-cyber-attacks-called" target="_blank">http://www.journal.com.ph/index.php/news/top-stories/29326-end-to-cyber-attacks-called</a></div>
<div>14.<a href="http://www.abs-cbnnews.com/-depth/05/10/12/hackers-join-may-11-protests-against-china" target="_blank">http://www.abs-cbnnews.com/-depth/05/10/12/hackers-join-may-11-protests-against-china</a></div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/paulsparrows.wordpress.com/7119/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/paulsparrows.wordpress.com/7119/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/paulsparrows.wordpress.com/7119/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/paulsparrows.wordpress.com/7119/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/paulsparrows.wordpress.com/7119/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/paulsparrows.wordpress.com/7119/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/paulsparrows.wordpress.com/7119/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/paulsparrows.wordpress.com/7119/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/paulsparrows.wordpress.com/7119/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/paulsparrows.wordpress.com/7119/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/paulsparrows.wordpress.com/7119/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/paulsparrows.wordpress.com/7119/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/paulsparrows.wordpress.com/7119/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/paulsparrows.wordpress.com/7119/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7119&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackmageddon.com/2012/05/01/philippines-and-china-on-the-edge-of-a-new-cyber-conflict/feed/</wfw:commentRss>
		<slash:comments>5</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e40339b2368a611b6699fd5b50507a7b?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">paulsparrows</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2012/05/china-philippines-update.png" medium="image">
			<media:title type="html">China Philippines Update</media:title>
		</media:content>
	</item>
		<item>
		<title>Law Enforcement Agencies Under Attack&#8230; Again</title>
		<link>http://hackmageddon.com/2012/04/28/law-enforcement-agencies-under-attack-again/</link>
		<comments>http://hackmageddon.com/2012/04/28/law-enforcement-agencies-under-attack-again/#comments</comments>
		<pubDate>Sat, 28 Apr 2012 17:26:18 +0000</pubDate>
		<dc:creator>Paolo Passeri</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[@ItsKahuna]]></category>
		<category><![CDATA[Anonymous]]></category>
		<category><![CDATA[CabinCr3w]]></category>
		<category><![CDATA[Defacement]]></category>
		<category><![CDATA[Friday]]></category>
		<category><![CDATA[International Police Association]]></category>
		<category><![CDATA[IPA]]></category>
		<category><![CDATA[Lake County Sheriff's Office]]></category>
		<category><![CDATA[Law Enforcement Agencies]]></category>
		<category><![CDATA[LCSO.org]]></category>

		<guid isPermaLink="false">http://hackmageddon.com/?p=7108</guid>
		<description><![CDATA[A Friday back in time&#8230; The last weekend of April has reserved a bitter surprise for two Law Enforcement Agencies which suffered an equal number of attacks from Hackers affiliated to Anonymous. For a moment I was believing to have gone a couple of months back in time, with the calendar set in the first [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7108&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p style="text-align:justify;"><a href="http://paulsparrows.files.wordpress.com/2011/10/anonpolice.png"><img class="alignleft  wp-image-5218" title="Anonpolice" src="http://paulsparrows.files.wordpress.com/2011/10/anonpolice.png?w=215&h=210" alt="" width="215" height="210" /></a>A Friday back in time&#8230; The last weekend of April has reserved a bitter surprise for two Law Enforcement Agencies which suffered an equal number of attacks from Hackers affiliated to Anonymous.</p>
<p style="text-align:justify;">For a moment I was believing to have gone a couple of months back in time, with the calendar set in the first half of February when @ItsKahuna and @CabinCr3w put in place a <a href="http://www.databreaches.net/?p=23227" target="_blank">long</a> <a href="http://www.databreaches.net/?p=23257" target="_blank">trail</a> of attacks against Law Enforcement Agencies. (Un)Fortunately they left <a title="Imperfect Cybercrimes" href="http://hackmageddon.com/2012/04/19/imperfect-cybercrimes/" target="_blank">several cyber fingerprints</a> in the crime scene which allowed the LEAs to take their revenge and stop the long line of attacks.</p>
<p style="text-align:justify;">Today, nearly in contemporary, the IPA, International Police Association (ipa-iac.org) <a href="http://thehackernews.com/2012/04/international-police-association.html" target="_blank">has been defaced</a> &#8220;for the lulz&#8221; and the same fate, with more serious consequences, <a href="https://twitter.com/#!/EvilSecurity/status/196032812288192513" target="_blank">has happened to Lake County Sheriff&#8217;s Office</a> (LCSO.org). In the latter circumstance it looks like the attackers were able to leak 40 Gigabytes of internal files.</p>
<p style="text-align:justify;">Despite the number of attacks suffered (and the consequent arrests made) Law Enforcement Agencies continue to be vulnerable and, even worse, the techniques used and the exploited vulnerabilities are apparently always the same.</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/paulsparrows.wordpress.com/7108/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/paulsparrows.wordpress.com/7108/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/paulsparrows.wordpress.com/7108/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/paulsparrows.wordpress.com/7108/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/paulsparrows.wordpress.com/7108/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/paulsparrows.wordpress.com/7108/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/paulsparrows.wordpress.com/7108/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/paulsparrows.wordpress.com/7108/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/paulsparrows.wordpress.com/7108/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/paulsparrows.wordpress.com/7108/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/paulsparrows.wordpress.com/7108/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/paulsparrows.wordpress.com/7108/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/paulsparrows.wordpress.com/7108/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/paulsparrows.wordpress.com/7108/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=hackmageddon.com&#038;blog=15903059&#038;post=7108&#038;subd=paulsparrows&#038;ref=&#038;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://hackmageddon.com/2012/04/28/law-enforcement-agencies-under-attack-again/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/e40339b2368a611b6699fd5b50507a7b?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">paulsparrows</media:title>
		</media:content>

		<media:content url="http://paulsparrows.files.wordpress.com/2011/10/anonpolice.png" medium="image">
			<media:title type="html">Anonpolice</media:title>
		</media:content>
	</item>
	</channel>
</rss>
