Bitcoin Forum
June 20, 2024, 10:51:21 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Leak Shows That Hacking Team Targeted Cryptocurrency  (Read 713 times)
tokeweed (OP)
Legendary
*
Offline Offline

Activity: 3990
Merit: 1431


Life, Love and Laughter...


View Profile
July 21, 2015, 04:52:52 AM
 #1

Quote

Leak Shows That Hacking Team Targeted Cryptocurrency

By hacking targets' systems, grabbing their wallet files and waiting for victims to enter passwords, Hacking Team eliminated the anonymity cryptocurrency users seek.

Hacking Team, the creator of a digital remote-access and surveillance platform, had specifically targeted Bitcoin and other cryptocurrencies to allow government officials and law-enforcement agencies (LEAs) to follow the money, according to email messages stolen from the company in a breach earlier this month.

The messages, posted publicly by Wikileaks, indicated that the company's platform for compromising and monitoring targets' computers, known as the Remote Control System, gained new functionality in 2014 to track the use of Bitcoin, LiteCoin, Feathercoin and Namecoin. The software update allowed the copying of the target's wallet, transaction history and contact information.

Hacking Team focused on Bitcoin and three other cryptocurrencies as tools criminals used to launder money, despite efforts to foster legitimate markets for the digital money.

"Cryptocurrencies are a way to make untraceable transactions, and we all know that criminals love to easily launder, move and invest black money," Daniele Milan, operations manager for Hacking Team, stated in one email hosted by Wikileaks. "LEAs, by using our Intelligence module combined with this new capability, can correlate the usage of cryptocurrencies, defeating the financial opacity they provide."
In early July, hackers took control of the Milan, Italy-based Hacking Team's Twitter feed, announcing that they had breached the company's network and stolen 400 gigabytes of sensitive business communications and email messages. The company decried the attack, calling it a criminal act.

"Make no mistake about it, what happened earlier this summer in the attack on our company was a reckless and vicious crime," David Vincenzetti, CEO of Hacking Team, said in a statement on July 14.  "We have reported it to Italian authorities who are investigating, and we expect the authorities of other nations to be involved as well."

The company developed a module, dubbed "Money," for its platform that could search for cryptocurrency data on a compromised system, according to emails. The inclusion of cryptocurrency tracking functionality in the software is unsurprising, given law enforcement's interest in Bitcoin, Andrew Conway, a research analyst with messaging security firm Cloudmark, told eWEEK.

"Drug purchases, illegal goods purchases, unlicensed gambling, and one we see all the time, ransomware, is facilitated by Bitcoin," he said. "Obviously, if you are in law enforcement, you are interested in these transactions, because Bitcoin is an annoyance and will end up being more than an annoyance."
The most interesting fallout from the Hacking Team breach is the sudden disclosure of a handful of highly critical vulnerabilities: three in Adobe Flash, one in Internet Explorer and another in Oracle's Java. The company that brokered the sale of one of the Adobe Flash vulnerabilities to Hacking Team shut down its program for buying and selling vulnerabilities following the revelation that Hacking Team had done business with Sudan and Egypt.

"The Hacking Team breach proved that we could not sufficiently vet the ethics and intentions of new buyers," Adriel Desautels, CEO of Netragard, said in a blog post. "Hacking Team unbeknownst to us until after their breach was clearly selling their technology to questionable parties, including but not limited to parties known for human rights violations."

Desautels argued that the market for zero-day vulnerabilities needs to be held to a legal standard in which each company that buys or sells the information is accountable for the use of the technology.
"It's important that the regulations do not target zero-days specifically but instead target those who acquire and use them," he said.


Source:  http://www.eweek.com/security/leak-shows-that-hacking-team-targeted-cryptocurrency.html

R


▀▀▀▀▀▀▀██████▄▄
████████████████
▀▀▀▀█████▀▀▀█████
████████▌███▐████
▄▄▄▄█████▄▄▄█████
████████████████
▄▄▄▄▄▄▄██████▀▀
LLBIT|
4,000+ GAMES
███████████████████
██████████▀▄▀▀▀████
████████▀▄▀██░░░███
██████▀▄███▄▀█▄▄▄██
███▀▀▀▀▀▀█▀▀▀▀▀▀███
██░░░░░░░░█░░░░░░██
██▄░░░░░░░█░░░░░▄██
███▄░░░░▄█▄▄▄▄▄████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
█████████
▀████████
░░▀██████
░░░░▀████
░░░░░░███
▄░░░░░███
▀█▄▄▄████
░░▀▀█████
▀▀▀▀▀▀▀▀▀
█████████
░░░▀▀████
██▄▄▀░███
█░░█▄░░██
░████▀▀██
█░░█▀░░██
██▀▀▄░███
░░░▄▄████
▀▀▀▀▀▀▀▀▀
|
██░░░░░░░░░░░░░░░░░░░░░░██
▀█▄░▄▄░░░░░░░░░░░░▄▄░▄█▀
▄▄███░░░░░░░░░░░░░░███▄▄
▀░▀▄▀▄░░░░░▄▄░░░░░▄▀▄▀░▀
▄▄▄▄▄▀▀▄▄▀▀▄▄▄▄▄
█░▄▄▄██████▄▄▄░█
█░▀▀████████▀▀░█
█░█▀▄▄▄▄▄▄▄▄██░█
█░█▀████████░█
█░█░██████░█
▀▄▀▄███▀▄▀
▄▀▄
▀▄▄▄▄▀▄▀▄
██▀░░░░░░░░▀██
||.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
░▀▄░▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄░▄▀
███▀▄▀█████████████████▀▄▀
█████▀▄░▄▄▄▄▄███░▄▄▄▄▄▄▀
███████▀▄▀██████░█▄▄▄▄▄▄▄▄
█████████▀▄▄░███▄▄▄▄▄▄░▄▀
███████████░███████▀▄▀
███████████░██▀▄▄▄▄▀
███████████░▀▄▀
████████████▄▀
███████████
▄▄███████▄▄
▄████▀▀▀▀▀▀▀████▄
▄███▀▄▄███████▄▄▀███▄
▄██▀▄█▀▀▀█████▀▀▀█▄▀██▄
▄██▄██████▀████░███▄██▄
███░████████▀██░████░███
███░████░█▄████▀░████░███
███░████░███▄████████░███
▀██▄▀███░█████▄█████▀▄██▀
▀██▄▀█▄▄▄██████▄██▀▄██▀
▀███▄▀▀███████▀▀▄███▀
▀████▄▄▄▄▄▄▄████▀
▀▀███████▀▀
OFFICIAL PARTNERSHIP
FAZE CLAN
SSC NAPOLI
|
AGD
Legendary
*
Offline Offline

Activity: 2070
Merit: 1164


Keeper of the Private Key


View Profile
July 21, 2015, 05:04:35 AM
 #2

https://bitcointalk.org/index.php?topic=1112290.0

Bitcoin is not a bubble, it's the pin!
+++ GPG Public key FFBD756C24B54962E6A772EA1C680D74DB714D40 +++ http://pgp.mit.edu/pks/lookup?op=get&search=0x1C680D74DB714D40
unent
Sr. Member
****
Offline Offline

Activity: 326
Merit: 250


View Profile
July 21, 2015, 05:05:36 AM
 #3

Quote
"Make no mistake about it, what happened earlier this summer in the attack on our company was a reckless and vicious crime," David Vincenzetti, CEO of Hacking Team, said in a statement on July 14.  "We have reported it to Italian authorities who are investigating, and we expect the authorities of other nations to be involved as well."

That's ironic, if their software uses zero day vulnerabilities to hack people's computers and Bitcoin wallets then isn't their software an illegal hacking tool? Selling their software sounds criminal, and anyone using it to hack Bitcoin wallets must be commuting a crime. Yes,the hackers who hacked Hacking Team committed a crime, but Hacking Team itself sounds like it's committing crimes.
Coinbanker
Full Member
***
Offline Offline

Activity: 154
Merit: 100


bitcoin supporter


View Profile
July 21, 2015, 06:00:21 AM
 #4

fact is AVG detects them long before leak. hacking team is BS  Grin

Donate: 167TvxJb6zSeyd5C921r5CR9Ht91ioZdQM
notlist3d
Legendary
*
Offline Offline

Activity: 1456
Merit: 1000



View Profile
July 21, 2015, 06:13:13 AM
 #5

fact is AVG detects them long before leak. hacking team is BS  Grin

It might be BS on that part.  But it is not BS that "bad guys" have started to target bitcoin wallets.

It is more reason why someone should use a cold wallet vs hot wallet.   Cold if done right... virus cannot touch.
RedDiamond
Sr. Member
****
Offline Offline

Activity: 294
Merit: 250


View Profile
July 21, 2015, 06:29:08 AM
 #6

Microsoft has now released a fix to one of  the zero-days used by Hacking Team. It can be downloaded from here: https://technet.microsoft.com/library/security/ms15-078

Amph
Legendary
*
Offline Offline

Activity: 3206
Merit: 1069



View Profile
July 21, 2015, 07:58:40 AM
 #7

fact is AVG detects them long before leak. hacking team is BS  Grin

It might be BS on that part.  But it is not BS that "bad guys" have started to target bitcoin wallets.

It is more reason why someone should use a cold wallet vs hot wallet.   Cold if done right... virus cannot touch.

i'm still using an hot wallet and none of my coins has been stolen ever, just down dowload anything that does not come without a digital sigh, problem solved

i'm not aware of any direct attack that can compromise your pc without the need for you to download or click on a link first
RedDiamond
Sr. Member
****
Offline Offline

Activity: 294
Merit: 250


View Profile
July 21, 2015, 08:25:46 AM
 #8

If you want to chek if  Hacking Team software has been installed into your computer the security company "Rook Security" has released a free tool called Milano utility for that: https://www.rooksecurity.com/hacking-team-malware-detection-utility/
bitcoinmasterlord
Legendary
*
Offline Offline

Activity: 1148
Merit: 1006


View Profile
July 23, 2015, 08:24:45 PM
 #9

Quote
"Make no mistake about it, what happened earlier this summer in the attack on our company was a reckless and vicious crime," David Vincenzetti, CEO of Hacking Team, said in a statement on July 14.  "We have reported it to Italian authorities who are investigating, and we expect the authorities of other nations to be involved as well."

That's ironic, if their software uses zero day vulnerabilities to hack people's computers and Bitcoin wallets then isn't their software an illegal hacking tool? Selling their software sounds criminal, and anyone using it to hack Bitcoin wallets must be commuting a crime. Yes,the hackers who hacked Hacking Team committed a crime, but Hacking Team itself sounds like it's committing crimes.

Didn't you know that agencies nowadays allow themselves to do everything they want? It's terror in the world, everything must be allowed now to prevent it... so they think.

They will do whatever is possible to do. They don't care about such small things like "hacking".
Mickeyb
Hero Member
*****
Offline Offline

Activity: 798
Merit: 1000

Move On !!!!!!


View Profile
July 23, 2015, 08:38:38 PM
 #10

If you want to chek if  Hacking Team software has been installed into your computer the security company "Rook Security" has released a free tool called Milano utility for that: https://www.rooksecurity.com/hacking-team-malware-detection-utility/

Is this safe to use?
Thanks
Za1n
Legendary
*
Offline Offline

Activity: 1078
Merit: 1011



View Profile
July 23, 2015, 09:23:00 PM
 #11

If you want to chek if  Hacking Team software has been installed into your computer the security company "Rook Security" has released a free tool called Milano utility for that: https://www.rooksecurity.com/hacking-team-malware-detection-utility/

Is this safe to use?
Thanks

This is my question as well. I would wait until more knowledgeable users report back before installing and using this.
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!