MasterSearch

AddThis

Showing posts with label spying. Show all posts
Showing posts with label spying. Show all posts

June 30, 2020

People Around The World Are Already Being Judged Based On Their #SocialMedia Data— AND THEY DON’T EVEN REALIZE IT.

PEOPLE AROUND THE WORLD ARE ALREADY BEING JUDGED AND DENIED ACCESS TO FINANCIAL SERVICES BECAUSE OF THEIR SOCIAL MEDIA DATA — AND THEY DON'T EVEN REALIZE IT.

Kaspersky surveyed more than 10,000 people from 21 countries and found that 18 percent of those polled had issues accessing financial services because of assessments of their social media data. 

Social Credit Scores Are Already Here 




April 18, 2015

'Arab #hackers believed to have breached Israeli military networks' @JPost

The affair shows how the Middle East continues to be a hotbed for cyber espionage.

Cyber hackers [illustrative]. (photo credit:REUTERS)

Hackers have managed to penetrate computer networks associated with the
Israeli military in an espionage campaign that skillfully packages
existing attack software with trick emails, according to private
security researchers.

The four-month-old effort, most likely by
Arabic-speaking programmers, shows how the Middle East continues to be a
hotbed for cyber espionage and how widely the ability to carry off such
an attack has spread, the researchers said.

Waylon Grange, a
researcher with security firm Blue Coat Systems Inc who discovered the
campaign, said the vast majority of the software was cobbled together
from widely available tools, such as the remote-access Trojan called
Poison Ivy.

The hackers were likely working on a budget and had no
need to spend much on tailored code, Grange said, adding that most of
their work appears to have gone into so-called social engineering, or
human trickery.

The hackers sent emails to various military
addresses that purported to show breaking military news, or, in some
cases, a clip featuring "Girls of the Israel Defense Forces." Some of
the emails included attachments that established "back doors" for future
access by the hackers and modules that could download and run
additional programs, according to Blue Coat.

Using standard
obfuscation techniques, the software was able to avoid detection by most
antivirus engines, Blue Coat said. At least some software lodged inside
government computers, because Blue Coat detected it "beaconing," or
sending signals to the hackers that it was in place.



Read the rest of the story online here:  'Arab hackers believed to have breached Israeli military networks' - Arab-Israeli Conflict - Jerusalem Post

September 06, 2011

Spy vs Spy: Cyber Crime, Surveillance on Rise in Latin America

Spy vs Spy: Cyber Crime, Surveillance on Rise in Latin America
Written by  Southern Pulse

Phone tapping, data theft, and secret recordings have made headlines across Latin America in recent weeks, reflecting the growth of cyber crime and information trafficking in the region, as Southern Pulse explains.

Domestic spying is in the news this month in the Western Hemisphere. A subject that is often not discussed in formal settings has made its way to the front pages of at least a dozen countries in Latin America and the Caribbean over the past few weeks. The news includes phone taps, hacked emails, covert video surveillance and legislative debates over privacy online and offline. A confluence of events around the region and the globe as well as improved spying technology has pushed this trend into the open and could change how the spy vs spy, police vs crime and government vs opposition scenarios play out in several countries.

Certainly, there have been phone taps and secret recordings for decades in Latin America. Perhaps the most famous examples were the “Vlad-videos” in Peru under the administration of President Fujimori and National Intelligence Service chief Montesinos. What makes 2011 different is the surge in surveillance by governments across the political spectrum and the media providing increased coverage of the situation.

The technology and techniques are a mixture of old and new. Phone taps and illegal recordings are old technologies that have become more sophisticated while data mining of social networks is a new field that all governments around the globe are just beginning to understand. Private hacking gangs appear to have surpassed the capabilities of government intelligence agencies in terms of the ability to hack email and computers, creating a new black market for information trafficking.

It’s worth noting that the technology to encrypt data has also become cheaper and easier to use, but has not yet caught on in much of Latin America. However, the increased public nature of government and private sector surveillance should push an increased demand for privacy technologies in the coming year, both by criminal groups and civilians who want greater privacy from the government.

Some examples from recent weeks follow:

A New York Times article described enhanced intelligence cooperation between the U.S. and Mexico that includes phone tapping technologies. The U.S. has assisted in the creation of intelligence fusion cells in Mexico and is providing information to a vetted group of Mexican authorities so that they can conduct operations against criminal organizations.

In Honduras, an investigation revealed that the email servers at the presidential palace had been hacked, giving one or multiple organizations access to email, the president's schedule and budget documents. Foreign government involvement does appear likely at this point. An Israeli firm has been hired by the government to provide increased cybersecurity protection.

Even as officials from the government of former President Uribe are being investigated for phone taps and domestic spying on judges and political opponents, the Colombian government showed off some new surveillance capabilities. Police utilized new online forensic capabilities and arrested a hacker who broke into the account of a journalist. The government, under attack by a local branch of the hacking group Anonymous, has announced they plan to have a new CERT agency online before the end of the year that can counter and investigate attacks.

In Venezuela, phone calls by opposition candidates have been recorded and played on state television as a way of embarrassing those politicians. It appears state intelligence is behind the tapping of the phones. This news comes just months after other sources indicated that Venezuela’s intelligence services, with the assistance of Cuban intelligence and private hacking groups inside Venezuela and Colombia, have hacked into the private email accounts of journalists and politicians and have stolen their messages for at least the past five years.

In Bolivia, the government tapped the phones of indigenous protesters and U.S. embassy officials. President Morales then revealed phone calls made between the two groups as a way of showing a plot against his government. In the process, he showed that his government is tapping the phones of political opponents and foreigners living in the country.

In Argentina, a number of private emails by Kirchner government officials recently appeared on a website “Leakymails.” There are three aspects to this scandal worth considering. First, the content of the emails contains personal information about key political officials. Though most of the emails released are rather boring, one set of emails does appear to link a government-backed candidate to organized crime. Second, the question of how the emails were obtained may point to the state intelligence service or former officials within the intelligence service committing domestic espionage. There are indications outside non-state groups hacking into government officials’ email account. Third, an Argentine judge ordered local ISPs to block the Leakymails websites. This opens a new chapter in web censorship in Argentina and the region and places the question of how private ISPs filter Internet content directly onto the policy agenda.

The government of Brazil fined Google for failing to reveal identifying information about an Internet user. According to Google, Brazil is the top country in the world for making requests to obtain user information or to block search results through legal actions. Part of this is due to Brazil’s speech laws that give public officials broad sway on any issue that could be considered libel or slander.

Similarly, the government of Ecuador is considering passing a law that would require Facebook and Twitter to provide information about anonymous postings based out of that country. Though President Correa has backtracked on his initial request, draft versions of the law suggest an expanded government authority to track the identity of users online.

The governments of Chile and Brazil have said they are starting to monitor social media sites as a way of detecting criminal activity as well as potential social unrest. For Brazil, this operation has included a military unit dedicated to cyberwarfare and cyberdefense. This unit is also receiving training from Israeli and U.S. firms in offensive operations in the cyber-domain, the first Latin American government to admit that publicly. For Chile, the monitoring of social media has made the government a target for the international hacking group Anonymous, which is also attacking government websites as a way of supporting recent protests by student groups. Chile’s domestic cybersecurity units, particularly those within the police, are now forced to increase their capacity to handle the incidents.

The issues reported only hint at some of the issues that remain hidden from public view. Police and intelligence organizations across the region have expanded their capacity for surveillance in recent years and a number of foreign firms from the U.S., Europe and Israel are assisting them in that effort. Meanwhile, criminal groups have banded together with hackers from Eastern Europe and Russia to enhance their technological capabilities to steal government and corporate information.

Back at the regional level, Latin American intelligence agencies are running into the same problem as their developed world counterparts: how do they analyze all the data they collect? The ability to collect and store data is moving more quickly than the ability to process, analyze and utilize it. For Presidents Chavez and Morales, who have very specific political targets for their intelligence collection campaigns, this has not been much of a problem. However, for Mexico, Brazil and Colombia, whose intelligence efforts do focus on organized crime (in spite of some high profile scandals in which they don’t), they cannot keep up with the data in a timely fashion. All three countries are known to have missed arrest opportunities in which they had data about a relevant target but did not filter it out of their mounds of data quickly enough to operationalize it.

Lurking among all of these government-related surveillance and privacy issues is an increase in private sector and corporate espionage in the region. Much less reported, companies have had gigabytes of data stolen by local private hacking groups and foreign governments from Eastern Europe and East Asia. In various surveys, over half of corporations in the region report being victim of cyberattacks and theft of data. These corporations, when they manage to detect the problem, generally do not report the problems to the governments. While it is apparent from the above examples that governments have plenty of surveillance issues on their plate, this private sector surveillance challenge cannot be ignored. The threat that some corporations and criminal groups may surpass local police and intelligence agencies in their surveillance and spying capabilities can be a problem for the future security of these states and the civil rights of their populations.

Reprinted with permission from Southern Pulse. See original article here.
_______________________________________
Check it out on The MasterTech Blog

May 13, 2011

Another day, Another Security Leak: Facebook this time

Today it's Facebook.  
" ... Over the years, hundreds of thousands of applications may have inadvertently leaked millions of access tokens to third parties,"
  Symantec had to get them to come out and tell you...


And yet it amazes people continue to put things online that they wouldn't want the whole world to see...

Story from Reuters below:

Facebook may have leaked your personal information: Symantec
Photo
12:46am EDT
(Reuters) - Facebook users' personal information could have been accidentally leaked to third parties, in particular advertisers, over the past few years, Symantec Corp said in its official blog.
Third-parties would have had access to personal information such as profiles, photographs and chat, and could have had the ability to post messages, the security software maker said.
"We estimate that as of April 2011, close to 100,000 applications were enabling this leakage," the blog post said.
" ... Over the years, hundreds of thousands of applications may have inadvertently leaked millions of access tokens to third parties," posing a security threat, the blog post said.
The third-parties may not have realized their ability to access the information, it said.
Facebook, the world's largest social networking website, was notified of this issue and confirmed the leakage, the blog post said.
It said Facebook has taken steps to resolve the issue.
"Unfortunately, their (Symantec's) resulting report has a few inaccuracies. Specifically, we have conducted a thorough investigation which revealed no evidence of this issue resulting in a user's private information being shared with unauthorized third parties," Facebook spokeswoman Malorie Lucich said in a statement.
Lucich said the report also ignores the contractual obligations of advertisers and developers which prohibit them from obtaining or sharing user information in a way that "violates our policies."
She also confirmed that the company removed the outdated API (Application Programing Interface) referred to in Symantec's report.
Facebook has more than 500 million users and is challenging Google Inc and Yahoo Inc for users' time online and for advertising dollars.
(Reporting by Thyagaraju Adinarayan and Sakthi Prasad in Bangalore; Editing by Bernard Orrand Anshuman Daga)
© Thomson Reuters 2011. All rights reserved.
Facebook may have leaked your personal information: Symantec | Reuters

Share
-- The MasterFeeds

February 03, 2011

Zuckerberg's Facebook Page Hacked

Zuckerberg's Facebook Page Hacked - Technorati Technology


It happened to Julian Assange when someone got into his personal dating records in December. So why should it be so strange that someone hacked into Facebook founder Mark Zuckerberg's Facebook account?


Maybe it has something to do with the fact that Zuckerberg is so busy telling the rest of us how safe and secure our private information is in Facebook. Just a little ironic.

At some point Tuesday, someone hacked onto Zuckerberg's fan page on Facebook and left this message:

"Let the hacking begin. If facebook (sic) needs money, instead of going to the banks, why doesn't Facebook let its users invest in Facebook in a social way? Why not transform Facebook into a 'social business' the way Nobel Prize winner Muhammad Yunus described it? [Link] What do you think? #hackercup2011"

Zuckerberg's Facebook Page Hacked - Technorati Technology
Facebook, hackers, News, Security, SocialNetworks, spying, Tech
_______________________________________
Check it out on The MasterTech Blog

August 25, 2010

Apple Mac Security Update Plugs 13 Vulnerabilities - eWeek

Apple Mac Security Update Plugs 13 Vulnerabilities - eWeek: "

Macworld UK


Apple Mac Security Update Plugs 13 Vulnerabilities
eWeek
The release fixes issues in several components, including CoreGraphics and Apple Type Services. Several of the vulnerabilities are buffer overflows, and can be exploited to execute arbitrary code. According to the Apple advisory, the Apple Type ...
Apple releases Mac OS X security update to patch PDF exploitApple Insider
Apple fixes big security bugs in Mac OS XComputerworld
Apple Releases Security Update 2010-005PC World
PC Magazine (blog) -MacNN -ZDNet (blog)
all 30 news articles »
"

August 14, 2010

India eyes Google and Skype in security crackdown - Yahoo! News

India eyes Google and Skype in security crackdown
MUMBAI, India – India may ask Google and Skype for greater access to encrypted information once it resolves security concerns with BlackBerrys, which are now under threat of a ban, according to a government document and two people familiar with the discussions.
The 2008 terror attacks in Mumbai, which were coordinated with satellite and cell phones, helped prompt a sweeping security review of telecommunications ahead of the Commonwealth Games — a major sporting event to be held in New Delhi in October.
Some analysts say more anonymous technologies — like the basic Nokia phones used by 10 gunmen who rampaged through Mumbai in November 2008, leaving 166 dead — and Gmail are more likely to be used to plan terror attacks than BlackBerry devices, which require reliable identity proof and contact information.
On July 12, officials from India's Department of Telecommunications met with representatives of three telecom service provider groups to discuss interception and monitoring of encrypted communications by security agencies.
"There was consensus that there are more than one type of service for which solutions are to be explored," according to a copy of the minutes of the meeting obtained by The Associated Press. "Some of them are BlackBerry, Skype, Google etc. It was decided first to undertake the issue of BlackBerry and then the other services."
"They have clearly instructed us that after BlackBerry, they are going to take to task Google, Skype and similar services that bypass the monitoring department of India," said Rajesh Chharia, president of the Internet Service Providers Association of India, who attended the meeting. "According to the law, they have to allow monitoring."
The officials' immediate concern was the BlackBerry, but they also plan to look at Google and other companies that use encryption for e-mail and messaging services, said Rajan Mathews, director general of the Cellular Operators Association of India, who was briefed on the meeting.
Google and Skype said Friday they haven't received any notices from the government.
The Home Ministry said present talks involve only BlackBerry maker, Canada-based Research In Motion.
"We are talking only to BlackBerry," ministry spokesman D.R.S. Chaudhary said Friday. "Not to Google or others."
On Thursday, India threatened to ban BlackBerry services unless the device's manufacturer makes them accessible to its security agencies by Aug. 31.
On Friday, Research In Motion Vice President Robert E. Crowe met with Home Ministry officials in New Delhi to try to avoid the ban.
"I am optimistic," Crowe told reporters after the meeting.
Saudi Arabia and the United Arab Emirates have also threatened to cut off popular BlackBerry services unless they get greater access. Like India, they've cited security concerns in pushing to access encrypted information sent by the cell phones that gets routed through servers overseas.
Rights groups fear such access could be abused.
Research In Motion said in a Thursday statement that it maintains a consistent global standard for legal access to encrypted information which precludes making specific deals for specific countries.
All such access must be governed by a country's laws and must be applied equally to all vendors and all technologies, RIM said.
It also reiterated that it cannot "unlock" secure corporate e-mails. "Contrary to any rumors, the security architecture is the same around the world and RIM truly has no ability to provide its customers' encryption keys," it said.
The U.S. has technology to crack encrypted BlackBerry messages, which it can legally use when national security is at stake, diplomats say.
India is keen to get the U.S. to transfer technologies, like de-encryption, as part of high-level bilateral discussions on technology transfer likely to come up at Obama's state visit to India in November, diplomats say.
For now, more humble devices may present a greater security threat than the BlackBerrys used by India's business elite.
Mohammed Ajmal Kasab, the lone surviving gunman in the 2008 Mumbai attack, told an Indian court that he and his comrades all had Nokia mobile phones.
Photographs of court evidence show that the gunmen carried the most basic Nokia handsets.
"We did not find any Blackberrys," Special Prosecutor Ujjwal Nikam, who led the case against Kasab, said in an interview.
The relative anonymity and disposability of prepaid mobile phones and Web mail make them attractive to criminals, said Prasanto K. Roy, chief editor at CyberMedia Publications, a trade magazine group.
He said terrorists would likely opt to use disposable handsets and keep changing the SIM cards. Another hard-to-trace method would be to use Internet-based e-mail, like Gmail, updating and saving messages as drafts to avoid interception, he said.
RIM has fast expanded its presence in India from 114,000 users in early 2008 to an estimated 700,000 today — four-fifths of whom are corporate clients, who would be hit by a ban, Roy said.
RIM won't break out the number of users in India.
India has suffered deadly attacks, by both home grown and foreign militants, with some regularity for years. Many BlackBerry users here say national security trumps personal convenience.
"If BlackBerry cannot provide a solution for the security threat to the nation, we're happy to let go of the services," said Sharad Dhariwal, a 26-year-old investment banker.
That could be good news for Nokia — RIM's chief competitor here — and Apple, which recently brought the iPhone to India.
Associated Press writers Nirmala George and Ashok Sharma in New Delhi and Da Yan in Mumbai contributed to this report.


Copyright © 2010 Yahoo! Inc. All rights reserved.

  • Questions or Comments

  • Privacy Policy

  • About Our Ads

  • Terms of Service

  • Copyright/IP Policy

  • India eyes Google and Skype in security crackdown - Yahoo! News

    August 10, 2010

    Saudi Arabia: Blackberry Service To Continue

    Saudi Arabia: Blackberry Service To Continue
    August 10, 2010

    Saudi Arabia will allow the continued usage of Blackberry messenger services and will work with Blackberry service providers to fulfill regulations set by the Saudi Arabian Communication and Information Technology Commission (CITC) on Aug. 3, state-owned SPA reported Aug. 10. The CITC will continue to evaluate the usage and service provided by telecommunications companies for the device.

    --
    The MasterTech Blog
    http://themastertechblog.blogspot.com


    Subscribe to The MasterTech's Feeds

    Add This