Archive
March 2012 Cyber Attacks Timeline (Part I)
The first half of March is gone, and here it is the Timeline of the main Cyber Attacks for this period, a timeline which shows, once again, a month characterized by Hacktivism, and in particular by cyber attacks carried on in retaliation for the arrests of the LulzSec members, among which, particularly meaningful, is the one perpetrated against a Security Firm: Panda Security.
As far as hacktivism is concerned, March has also seen the rise of a new hacking collective called The Consortium, who hacked Digital Playground, an adult porn site, acquiring 72,000 user accounts.
Other remarkable events include the attacks to several Vatican Websites, the theft of Michael Jackson’s catalogue from Sony, and the Cyber attack to British Pregnancy Advisory Service which allowed the alleged attacker, to illegally obtain 10,000 records.
Last but not least, James Stavridis, the NATO Admiral, has fallen indirect victim of a Social Poisoning Cyber Attack allegedly perpetrated by chinese hackers, as also BBC has fallen victim of a sophisticated Cyber Attacks from Iran.
The references are after the jump and, as always, the timeline does not include the events related to Middle East Cyberwar, object of a dedicated timeline.
If you want to have an idea of how fragile our data are inside the cyberspace, have a look at the timelines of the main Cyber Attacks in 2011 and 2012 (regularly updated) and follow @pausparrows on Twitter for the latest updates.
- http://www.thehackersnetwork.in/2012/03/mozilla-firefox-official-website-blog.html
- http://www.cyberwarnews.info/2012/03/01/redhackers-hack-police-net-and-ankara-police-directorate/
- http://news.cnet.com/8301-1009_3-57389119-83/antisec-dumps-monsanto-data-on-the-web/
- http://hackmageddon.com/2011/07/12/monsanto-hack-info-of-2500-employees-leaked/
- http://www.cyberwarnews.info/2012/03/04/electronics-giant-epson-hacked-and-data-leaked-by-anonymous-hacker-anonyintra/
- http://thehackernews.com/2012/03/siemens-and-canons-databases-exploited.html
- http://www.cyberwarnews.info/2012/02/17/chinese-cpu-maker-loongson-hacked-and-data-leaked-by-muldaria48/
- http://www.cyberwarnews.info/2012/03/02/mypakistan-com-pk-hacked-and-accounts-leaked-by-xdev-b4lc4nh4ck/
- http://www.cyberwarnews.info/2012/03/02/1400-steam-user-accounts-leaked/
- http://www.cyberwarnews.info/2012/03/04/panama-film-website-hacked-and-accounts-dumped-for-acta/
- http://www.theregister.co.uk/2012/03/02/linode_bitcoin_heist/
- http://datalossdb.org/incidents/5787-17-715-user-profiles-incl-names-usernames-e-mail-addresses-and-unencrypted-passwords-for-pvsonline-and-ip-marketplace-dumped-on-the-internet
- http://it.slashdot.org/story/12/03/05/1243235/github-hacked
- http://www.ibtimes.com/articles/308264/20120302/anonymous-hackers-religion-website-proxy-twitter.htm
- http://www.cyberwarnews.info/2012/03/04/republic-of-trinidad-and-tobago-ministry-of-finance-hacked-and-data-leaked/
- http://www.guardian.co.uk/music/2012/mar/05/michael-jackson-back-catalogue-stolen?newsfeed=true
- http://thehackernews.com/2012/03/ddos-attack-on-limes-internet-system.html
- http://news.softpedia.com/news/Hackers-Hit-English-Defence-League-Site-Offline-256693.shtml
- http://www.cyberwarnews.info/2012/03/05/2700-saudi-based-accounts-leaked/
- http://datalossdb.org/incidents/5774-874-employers-and-job-seekers-e-mail-addresses-with-plaintext-passwords-dumped-on-the-internet
- http://www.cyberwarnews.info/2012/03/05/european-union-hacked-by-abluka-org/
- http://nakedsecurity.sophos.com/2012/03/12/digital-playground-passwords/
- http://www.ibtimes.com/articles/314162/20120314/anonymous-hackers-hacks-porn-conent-email-proxy.htm
- http://community.websense.com/blogs/securitylabs/archive/2012/03/05/mass-injection-of-wordpress-sites.aspx
- http://datalossdb.org/incidents/5789-admin-usernames-with-plaintext-passwords-as-well-as-250-e-mail-addresses-of-town-and-state-employees-and-contacts-some-with-postal-addresses-phone-numbers-and-or-plaintext-passwords-dumped-on-the-internet
- http://datalossdb.org/incidents/5790-30-names-e-mail-addresses-plaintext-passwords-and-telephone-numbers-dumped-on-the-internet
- http://news.softpedia.com/news/11-Romanian-Science-and-Research-Sites-Defaced-by-Anonymous-256564.shtml
- http://www.zdnet.com/blog/security/anonymous-hacks-panda-security-in-response-to-lulzsec-arrests/10542
- https://www.facebook.com/PandaUSA/posts/10150581593176701
- http://news.softpedia.com/news/RedHack-Leaks-Data-from-Turkish-National-Police-256902.shtml
- http://www.cyberwarnews.info/2012/03/07/turkish-police-station-hacked-and-accounts-leaked/
- http://www.scmagazine.com.au/News/292592,allphones-hacked-staff-passwords-exposed.aspx
- http://www.montrealgazette.com/story_print.html?id=6262311&sponsor=
- http://anonops.blogspot.in/2012/03/anonymouss-last-actions-vatican-website.html
- http://datalossdb.org/incidents/5745-1-755-e-mail-addresses-and-plaintext-passwords-including-admin-accounts-dumped-on-the-internet
- http://www.anonnews.org/press/item/1386/
- http://www.cyberwarnews.info/2012/03/10/1135-credit-cards-hacked-by-aadil-rana-j0e-r00t/
- www.securelist.com/en/blog/676/Elections_2012_and_DDoS_attacks_in_Russia
- http://news.softpedia.com/news/TeaMp0isoN-Leaks-Data-from-UCLA-Wayne-and-Hampshire-County-Sites-257100.shtml
- http://www.cyberwarnews.info/2012/03/09/anonymous-hack-police-equipment-supplier-new-york-iron-works-for-fff/
- http://www.guardian.co.uk/world/2012/mar/11/abortion-website-hacker-caught
- http://www.cyberwarnews.info/2012/03/09/athenscountygovernment-com-hacked-by-anonymous-in-the-name-of-fff/
- http://nakedsecurity.sophos.com/2012/03/08/super-tuesday-malware-attack-targets-us-voters/
- http://www.telegraph.co.uk/news/9130527/Europes-youngest-app-designer-expelled-after-hacking-school-computer-system.html
- http://www.cyberwarnews.info/2012/03/10/european-atomic-data-site-hacked-by-anonopsromania/
- http://www.cyberwarnews.info/2012/03/15/nepal-government-hacked-and-leaked-by-n4m3le55-crew-for-censorship/
- http://www.zdnet.com/blog/facebook/chinese-spies-used-fake-facebook-profile-to-friend-nato-officials/10389
- http://anonops.blogspot.in/2012/03/anonymous-releases-symantec-source-code.html
- http://anonops.blogspot.in/2012/03/anonymous-hacks-vatican-web-site-again.html
- http://blog.sucuri.net/2012/03/web-hosting-provider-serverpro-hacked-defaced-blacklisted-by-google.html
- http://thehackernews.com/2012/03/pop-star-keha-twitter-hacked.html
- http://www.databreaches.net/?p=23616
- http://labs.alienvault.com/labs/index.php/2012/targeted-attacks-against-tibet-organizations/
- http://www.cyberwarnews.info/2012/03/14/islamic-nasheed-bank-hacked-2600-accounts-leaked-by-xdev-b4lc4nh4c/
- http://www.cyberwarnews.info/2012/03/15/chinese-websites-hacked-and-defaced-by-poltergeisth4cker-for-operation-free-christians/
- http://thehackernews.com/2012/03/tunisian-islamist-website-hacked-by.html
- https://twitter.com/search?q=%23OpVatican
- http://uk.reuters.com/article/2012/03/14/us-iran-bbc-idUKBRE82D00820120314
- http://www.guardian.co.uk/world/2012/mar/14/assad-emails-lift-lid-inner-circle
- http://www.zdnet.co.uk/news/security-threats/2012/03/15/dawn-raids-net-14-suspects-in-1m-phishing-theft-40095276/
- http://pastebin.com/u/Pr3dat0r
- http://www.cyberwarnews.info/2012/03/04/pentagon-mexican-presidents-and-universitys-hacked-by-yei-zeta/
November 2011 Cyber Attacks Timeline (Part I)
Update 12/01/2011: November Cyber Attacks Timeline (Part II)
This first half of November has been very hard for Steam. The Valve Online Gaming Platform suffered a security breach putting at risk a potential sample of 37 million of users and hence wins the crown for the Major Breach of the First Half of November.
Also a sportswear giant like Adidas fell among the victims of cybercriminals, with a “sophisticated attack” targeting 500,000 users.
This month was also hot for the Cold Finland which has suffered two security breaches involving more than 30,000 users (a third breach also happened on November, the 16th, affecting 16,000 users but of course will be reported in the next report).
Two other CAs (KPN and Digicert Sdn Bhd Malaysia, not to be confused with Digicert US-based CA) were compromised. Also F-secure discovered a sample of malware signed with a valid certificate stolen from a Malasyan company.
On a larger scale, after 2 years of hunt, FBI uncovered a huge Botnet in Estonia, which stole $14 million from 4 million users worldwide, while on the other side of the Globe, Brazilian ISPS were targeted by a massive DNS Poisoning attack.
Not even Facebook was safe this month, whose (too) many users were targeted with a malware posting pornographic images on their wall exploiting an Internet Explorer Vulnerability.
As far as hactivism is concerned, the political events in the real world had a predictable echo in the Cyber space, with an attack to Palestine the day after the nation was admitted as a full member of UNESCO.
As a retaliation, some Israeli Government web sites were targeted with a wave of DDoS attacks by the infamous Anonymous hacking group. In any case the Anonymous were active also in other Cyberwar fronts acting a couple of defacements and DDoS (in one case they targeted the Muslim Brotherhood) and were also the authors to one of the two attacks in Finland (the one towards a right-wind party).
A group of Hackers called TeaMp0isoN claimed to have hacked more than 150 Email Id’s of International Foreign Governments even if this statement is controversial.
What is not controversial is the Cyberwar declared against Mexico which was targeted, in November, by a massive waves of Cyber Attacks.
Besides these noticeable events, the month was characterized by many other minor attacks and dumps among which, particularly noticeable are: the attacks to a couple of banks (DDoS and defacements) and Universities (UCLA and Standford hit by data breaches), and the Fox Business Twitter Account Hacking (Oops they did it again!).
The month ends with the first example of malware targeting ambulance.
Please notice that I decided henceforth not to insert attacks targeting a limited amount of users and most of all, claimed without clear evidence: in this month I discovered a claimed fake attack to Italian Police announced recycling old data.
- http://www.guardian.co.uk/world/2011/nov/01/palestinians-hit-cyber-attack-unesco
- http://www.cyberwarnews.info/2011/11/02/dump-of-steam-accounts/
- http://www.symantec.com/content/en/us/enterprise/media/security_response/whitepapers/the_nitro_attacks.pdf
- http://thehackernews.com/2011/11/fraud-communities-owned-and-exposed-by.html
- http://www.cyberwarnews.info/2011/11/03/opdarknet-official-and-last-release/
- http://www.cyberwarnews.info/2011/11/03/accounts-dumped-from-hiphopinstrumental-net/
- http://www.cyberwarnews.info/2011/11/03/peru-government-websites-defaced-by-challenges-hackers/
- http://nakedsecurity.sophos.com/2011/11/03/another-certificate-authority-issues-dangerous-certficates/
- http://www.cyberwarnews.info/2011/11/04/bayareaconnection-net-defaced/
- http://www.cyberwarnews.info/2011/11/04/yet-another-pointless-account-dump-hundreds-dumped-from-www-jjs2-com/
- http://threatpost.com/en_us/blogs/another-dutch-ca-kpn-stops-issuing-certificates-after-finding-ddos-tool-server-110411
- http://thehackernews.com/2011/11/capitalone-bank-taken-down-by-anonymous.html
- http://www.networkworld.com/news/2011/110411-hacker-selling-access-to-compromised-252771.html?source=nww_rss
- http://www.phiprivacy.net/?p=8227
- http://thehackernews.com/2011/11/anonymous-attack-on-israeli-government.html
- http://www.itworld.com/security/222033/fake-threat-against-facebook-dwarfs-anonymous-real-attacks-israel-finland-portugal
- http://pplware.sapo.pt/informacao/site-freeport-pt-foi-atacado-entre-outros/
- http://www.databreaches.net/?p=21359
- http://www.itworld.com/security/222033/fake-threat-against-facebook-dwarfs-anonymous-real-attacks-israel-finland-portugal
- http://www.yomiuri.co.jp/dy/national/T111105002386.htm
- http://www.cyberwarnews.info/2011/11/08/massive-amount-of-accounts-dumped-from-adidas-com/
- http://www.theregister.co.uk/2011/11/07/adidas_hack_attack/
- http://www.cyberwarnews.info/2011/11/08/massive-amount-of-accounts-dumped-from-adidas-com/
- http://thehackernews.com/2011/11/international-foreign-government-e.html
- http://www.theregister.co.uk/2011/11/09/teamp0ison_publishes_stupid_password_list/
- http://news.softpedia.com/news/16-000-Finns-Affected-by-Data-Breach-232851.shtml
- http://nakedsecurity.sophos.com/2011/11/08/anonymous-attacks-el-salvadoran-sites/
- http://www.smh.com.au/business/privacy-of-millions-at-mercy-of-a-usb-device-20111107-1n3wm.html
- http://thehackernews.com/2011/11/ump-french-political-party-got-hacked.html
- http://www.cyberwarnews.info/2011/11/08/premierleaguepool-co-uk-accounts-dumped-by-sen/
- http://www.cyberwarnews.info/2011/11/08/60k-accounts-dumped-from-ohmedia-by-teamswastika/
- http://www.cyberwarnews.info/2011/11/08/dump-of-accounts-from-beachvolley-se/
- http://www.cyberwarnews.info/2011/11/08/khadraglass-com-hacked-and-accounts-dumped-by-inj3ct0r/
- http://www.cyberwarnews.info/2011/11/09/scamming-email-account-dumpers-are-surfacing-50k-french-accounts-dumped/
- http://thehackernews.com/2011/11/possible-credit-card-theft-in-steam.html
- http://www.fbi.gov/news/stories/2011/november/malware_110911/malware_110911
- http://www.theregister.co.uk/2011/11/10/it_manager_charges/
- http://thehackernews.com/2011/11/bangladesh-supreme-court-website-hacked.html
- https://twitter.com/#!/igetroot/status/134865652543520768
- http://thehackernews.com/2011/11/operation-brotherhood-shutdown-by.html
- http://nakedsecurity.sophos.com/2011/11/14/ambulance-service-disrupted-by-computer-virus-infection/
- http://www.cyberwarnews.info/2011/11/12/ucla-department-of-psychology-hacked-by-inj3ct0r/
- http://www.ehackingnews.com/2011/11/social-network-site-findfriendzcom.html
- http://www.cyberwarnews.info/2011/11/13/dump-of-information-by-inj3ct0r/
- http://www.f-secure.com/weblog/archives/00002269.html
- http://www.cyberwarnews.info/2011/11/14/dump-of-accounts-from-congress-of-sonora/
- http://www.cyberwarnews.info/2011/11/14/2-more-government-dumps-by-metalsoft-team/
- http://www.cyberwarnews.info/2011/11/14/another-big-dump-of-accounts-from-sec404-mexican-hackers/
- http://www.cyberwarnews.info/2011/11/14/another-mexican-government-congress-hacked-canaldelcongreso-gob-mx/
- http://www.cyberwarnews.info/2011/11/14/dump-of-data-from-another-mexican-congress-sinaloa-state-congress/
- http://www.cyberwarnews.info/2011/11/14/ministry-of-economy-mexico-hacked-by-sec404/
- http://www.cyberwarnews.info/2011/11/14/unit-of-transparency-and-access-to-public-information-website-hacked/
- http://www.cyberwarnews.info/2011/11/14/national-commission-of-physical-culture-and-sport-hacked-and-accounts-leaked/
- http://nakedsecurity.sophos.com/2011/11/14/hacked-sky-news-twitter-account-james-murdoch-arrested/
- http://news.softpedia.com/news/Anonymous-Attacks-Anonymous-For-Being-Trolls-234949.shtml
- http://nakedsecurity.sophos.com/2011/11/16/facebook-explains-pornographic-shock-spam-hints-at-browser-vulnerability/
Stats
- 463,240 hits since November 2010
Interesting Links
News
08/13/2011 - My Post on Android Malware Mentioned on Engadget.
04/14/2011 - The Article Smart Grid: L'ultima Frontiera del Cybercrime published on ICT Security Magazine May 2011.
03/14/2011 - Security Summit 2011: Paolo Passeri guest at Round Table "Mobile Security: Rischi, Tecnologie, Mercato"
02/14/2011 - The Article Gears of Cyberwar published on ICT Security Magazine January 2011.
About This Blog
|
In this blog I express my personal opinion, which does not necessarily reflects the opinion of my organization, about events and news or interest, concerning information security, winking to mobile world and, why not, to some curious personal event. Every information is reported with its source. Anyone intending to use information contained in my post is free to do so, provided that mention my blog in your article. |
Archive
Tag
Recent Posts
Top Posts & Pages
- List Of Hacked Celebrities Who Had (Nude) Photos Leaked
- 2012 Cyber Attacks Statistics
- 2012 Cyber Attacks Timeline Master Index
- 2013 Cyber Attacks Timeline Master Index
- April 2013 Cyber Attacks Statistics
- 1-15 May 2013 Cyber Attacks Timeline
- March 2013 Cyber Attacks Statistics
- 16-30 April 2013 Cyber Attacks Timeline
- About Me
- Cyber Attacks Timeline Master Indexes
- 1-15 May 2013 Cyber Attacks Timeline hackmageddon.com/2013/05/23/1-1… #Infosec - 5 hours ago
- Apparently someone flags the Cisco Website as malicious... virustotal.com/en/url/fb74e6d… - 11 hours ago
- RT @marco_cova: IE8 0-day exploit (CVE-2013-1347) analyzed on Wepawet: bit.ly/13IZs2E - 1 day ago
- RT @jc_vazquez: Vista Equity Partners to Buy Websense #News #InfoSec on.wsj.com/13BfWaw via @WSJ - 3 days ago
- Pentagon OKs Androids, BlackBerrys for soldiers nakedsecurity.sophos.com/2013/05/07/pen… - 4 days ago
- April 2013 Cyber Attacks Statistics wp.me/p14J6X-2oX - 4 days ago
- RT @LastlineLabs: Marco Cova from Lastline talking about hacktivism on Italian TV ow.ly/l8Az6 - 5 days ago
- RT @lastlineinc: Malware can make itself invisible: in the case of RSA security's breach, malware went undetected for 1/2 year http://t.co/… - 6 days ago
- RT @gianlucaSB: SMS-based command and control protocols are here ow.ly/l47Ye - 1 week ago
- Skype with care Microsoft is reading everything you write h-online.com/security/news/… - 1 week ago



