Google Search

Showing posts with label Arizona. Show all posts
Showing posts with label Arizona. Show all posts

Wednesday, July 13, 2011

Arizona DPS hacker damage is spreading - Arizona Republic

by JJ Hensley - Jul. 9, 2011 12:00 AM
The Arizona Republic

The damage from hackers who gained access to Arizona Department of Public Safety employee e-mails seems to have spread exponentially in the two weeks since the breach was discovered.

First, the hackers published the content of seven DPS employees' e-mails, and days later another group shared what its members found in the personal e-mail accounts of 11 DPS employees. Then, last week the group defaced Fraternal Order of Police websites around the state, posting online the user names and passwords for hundreds of officers and promising to release information on more than 1,000 other officers.

Investigators have determined that the hackers gained access to the DPS e-mails through information they gleaned by hacking into the websites of outside labor groups, DPS Director Robert Halliday said.

Regardless of where the security lapse originated, Halliday said, the scare has served as a wake-up call to DPS administrators in charge of computer security at the state's police agency. Halliday spoke this week to The Arizona Republic about the episode.

Question: What have you been able to piece together in the past two weeks about what took place?

Answer: I think they wanted people to know that they hacked into the Department of Public Safety. The reality is they came in through e-mails of personal accounts they got through labor groups. In our organization, we became somewhat complacent about our system and the security of it. We have people with passwords of 12345 and use them for every password in the world.

Q: Have you found that the hackers tried to access criminal-justice information?

A: We have not been made aware of that at this point, but there are people and organizations trying to hack into our site every day. That's not what this is about. . . . The most important thing that they got, I think - above any information bulletins, intelligence bulletins, operations plans - they got the names and addresses of our officers, and that concerned me the most.

Q: Have you gotten any reports of officers being threatened?

A: One time. We had an officer that was called. His wife is the one that answered the phone, there was some very abusive, vulgar language used, to include, "You might see a bomb show up." We immediately sent a team to his location. All of the people who were victims of this intrusion, we immediately contacted them and tried to make sure that everybody was aware of what was going on. To my knowledge, we've only had one person who was actually called and threatened with the possibility of a bomb.

Q: Where are you in terms of the criminal investigation?

A: I'm not at liberty to talk about that. There is an ongoing investigation of this system. We've asked for help from the federal side, we've asked for help from the industry side, we've asked for a lot of help to discern how we can make this thing better. My hope is that the ongoing investigation would, at some point in time, avail itself of the perpetrators and drag them into court and hopefully get some deterrent factor out of this.

Q: What steps are you taking internally to ensure a similar attack doesn't happen again?

A: We were in the process of migrating all of our folks over to a system with stronger passwords, and that was about two-thirds of the way done. When this popped up, there were about 100 people who had not come over. I shut them out at that point. If they want to get back in our system, which we encourage them to do, they've got to come and get their strong password. You've got that First Amendment right that you're always looking at. You can't tell somebody what they can and can't do with their personal e-mail accounts, but I think we can say, "If you're not going to abide by our policies and procedures, then we're not going to allow you to have access to our system and we'll have to get the information to you like we did 30 years ago."

Q: Some of the private-account e-mails contained information that officers thought would never see the light of day, including comments about supervisors and personnel at DPS and in other organizations. If your investigation requires you to look on their personal computers, how are you handling that?

A: That's already occurred. There were some things that were brought up in regards to people in the organization, but I don't really look at that with a jaundiced eye, frankly. People have comments. I'll share things with people that I trust. Those are the kinds of things that pop up. The last thing you want to do is hand your computer over to someone who's going to see you call them a jerk or whatever. To me that's just normal. There's nothing I would want to do about that. The other side of that is we explain to them (that) all we're looking at is the things that came into your computer.

Q: Do you have any sense yet on costs associated with security upgrades?

A: We haven't. You look at the system . . . I wouldn't put that real high on the list. But now I have a different perspective about that. I think everything that falls short of our officer safety and personnel safety becomes a priority.

Q: Why haven't you been able to say more about the security breach?

A: It's real simple: There's a criminal investigation going on. When we have a criminal investigation in any arena, we're pretty closed-mouth about any specifics. The last thing I want to do is put something out that's going to impinge on any investigation or give them information on how to divert off of something that's critical to investigation or prosecution.


View the original article here

Thursday, July 7, 2011

Arizona Immigration Law Revenge Seeking Hackers Strike Police for Third Time - Fox News

Arizona authorities have confirmed a third attack against police officers in the state by computer hackers who say they are striking out in part in retaliation against an immigration law that has sparked a national controversy.

The latest hacking was revealed Thursday night after a group calling itself AntiSec issued a news release saying it was defacing eight Arizona Fraternal Order of Police websites, and releasing a master list of more than 1,200 officer's usernames, passwords and e-mail addresses.

This is the second breech of Arizona law enforcement data that the group is claiming in as many days. AntiSec said in an online posting Wednesday that it exposed information including "names, addresses, phone numbers, passwords, social security numbers, online dating account info, voicemails, chat logs, and seductive girlfriend pictures."

And an attack last week by a group calling itself Lulz Security targeted Arizona Department of Public Safety officer's email accounts.

The hackers said the Thursday attack was a strike against Arizona's heavily-scrutinized immigration policy, known as SB1070, which requires police in the course of enforcing other laws to use "reasonable suspicion" as a basis for checking a person's immigration status.

The hackers also say they want a world free from police, prisons and politicians.

The state Fraternal Order of Police said steps are being taken to find those responsible for hacking into their site.

"The FOP is already cooperating fully with every law enforcement body that is currently investigating this," said David Leibowitz, FOP spokesman, in an interview Friday with The Associated Press.

"Obviously we're taking steps internally to make sure the information is protected," Leibowitz said.

Also, the police organization said in a statement that it will not be intimidated by the cyber-attack.

Arizona state law enforcement Capt. Steve Harrison said Friday that some of his Department of Public Safety officers are members of the Fraternal Order of Police, but the latest computer attack was not limited to his agency's employees.

Harrison told the AP that it too early to tell how many Public Safety officers have had their personal information compromised by the data breech.

Agency officials added they are unable to say for certain that AntiSec was actually the group that infiltrated the computer system.

The most recent attacks are similar to a breech last week by the hacking collective Lulz Security.

Many of the files posted online in the LulzSec attack included invitations to conferences and inspirational messages. Others focused on the activity and habits of drug cartels and homeland security threats.

Those officers had access to their accounts through remote hookups. That practice has now stopped and no access is allowed from outside a secure agency network, Harrison said.

There is no evidence that the Public Safety main servers which can access criminal files, driver's license information and vehicle registration records have been compromised, Harrison said.

The cyber attackers calling themselves AntiSec said they were specifically targeting the department because of Arizona's immigration enforcement law "and the racial profiling anti-immigrant police state that is Arizona."

For its part, LulzSec has previously taken credit for hacking into Sony Corp. where more than 100 million user accounts were compromised and defacing the PBS website, as well as a cyber-attack aimed at the CIA website and the U.S. Senate's computer system.

This is based on a story by The Associated Press.

Follow us on twitter.com/foxnewslatino
Like us at facebook.com/foxnewslatino


View the original article here

Hackers Hit Arizona Police Again

Hackers continued to plague the Arizona state police, releasing online yet another trove of stolen data and defacing eight police Web sites in what the hackers called “the third knockout blow.”

The latest digital dump, which occurred late Thursday, included documents, e-mail messages and a “master list” of account passwords and other personal information for more than 1,200 officers, the hacker group said in a statement. The hackers, associated with the AntiSec or antisecurity movement, appeared to have obtained the data by breaking into systems belonging to the Arizona Fraternal Order of Police, which said it was looking into how it occurred.

The release follows two others: one last week included data stolen from the Arizona Department of Public Safety’s e-mail system and a second earlier this week included contents of officers’ private online accounts.

A spokesman for the department, Capt. Steve Harrison, said the hackers may have taken advantage of some officers’ use of the same user names and passwords for multiple accounts to jump from account to account. He said the department was still investigating how its e-mail system was initially compromised and was working with multiple law enforcement agencies on a criminal inquiry.

The hacker group, which is part of the hacking collective Anonymous and contains members of the group formerly known as LulzSec, said its attacks were motivated by opposition to “the racist Arizona police state” and a belief in the anarchist goal of “a world free from police, prisons and politicians altogether.”

The release was part of an operation that is taking aim at governments and corporations. “Let this third and crushing blow against Arizona police send a strong message to the ruling class around the world. You will no longer be able to operate your campaign of terror against immigrants and working people in secrecy: we will find you, expose you, and knock you off the Internet,” it said.

The stash included e-mails with anti-Muslim content, including jokes about torturing “ragheads,” as well as crude jokes about President Obama, according to the group.

John Ortolano, president of the Fraternal Order of Police, said the racist label was “very disturbing” to him and his fellow officers, the majority of whom are not white, adding that it “couldn’t be further from the truth.”

But the officers’ persecution appears to be far from over. The hackers said they had been sharing passwords for the officers’ online accounts with other malicious hackers, and had issued a public call to sympathizers to help them dig through their e-mail “to retrieve and expose their secrets.” They also said they had shared their digital back doors into the police’s computer systems with other hackers.

Document leaks of all kinds by hackers may only increase. A subgroup of Anonymous known as the People’s Liberation Front has started two new WikiLeaks-type sites for hackers called LocalLeaks.tk and HackerLeaks.tk. The same group has claimed responsibility for attacks on sites associated with Orlando, Fla..

The sites are a response to a lack of significant leaks since WikiLeaks’ release of State Department cables last year, Anonymous said. “Instead of waiting for insider whistle-blowers, the hacker movement Anonymous hopes that a few outside intruders might start the leaks flowing.”


View the original article here

Saturday, July 2, 2011

Hackers slam Arizona police for third time

By Brenda Norrell

Hackers slammed the Arizona Department of Police for a third time on Thursday night, exposing police e-mails with racism directed at Arabs and crude jokes about President Obama.

The Chinga La Migra Comminque III, "Fraternal Ownage of Police," targets the Fraternal Order of Police. Anonymous of the Antisec movement said they are defacing and taking down FOP websites, on behalf of the rights of immigrants and working people.

"You will no longer be able to operate your campaign of terror against immigrants and working people in secrecy: we will find you, expose you, and knock you off the internet."

At 2 a.m. on Friday morning, all the city and state websites for the Fraternal Order of Police in Arizona were offline. 

On Twitter, Anonymous IRC wrote, "A wild deface appears: http://www.mesafop.com. Hello, Arizona Police. 6500 officers  trying to catch us, we read your mails #antisec."

The statement with the data release says, "In this batch of emails we found more racist email chain emails, including Springerville's police chief Mike Nuttal forwarding jokes about torturing 'ragheads.' FOP president Brandon L Musgrave was also forwarding anti-muslim emails while also purchasing large amounts of guns, so we're dumping his paypal and credit card information as well."

In the e-mails, there is a lengthy statement from Arizona State Senator Sylvia Allen, to the Fraternal Order of Police in Tucson, on borders and immigration.

Sen. Allen said of immigrants, "It will do no good to give them amnesty because thousands will come behind them and we will be over run to the point that there will no longer be the United States of America but a North American Union of open borders.

"I ask you what form of government will we live under? How long will it be before we will be just like Mexico , Canada or any of the other Central American or South American country? We have already lost our language, everything must be printed in Spanish. We have already lost our history, it is no longer taught in our schools, and we have lost our borders."

"The leftist media has distorted what SB 1070 will do. It is not going to set up a Nazi Germany. Are you kidding? The ACLU and the leftist courts will do everything to protect those who are here illegally ...," Sen. Allen said in the statement sent by e-mail on June 6, 2010.

Here is the Antisec statement for the third data release, which calls for resistance to governments and corporations:

"For the third knockout blow against Arizona law enforcement, we decided to get destructive. We're defacing eight AZ Fraternal Order of Police websites and releasing a master list of over 1200 officer's usernames, passwords, and email addresses.

Additionally we are leaking hundreds of private FOP documents and several more mail spools belonging to FOP presidents, vice presidents, secretaries, a police chief, and the FOP Labor Council executive directory and webmaster whose insecure web development skills was responsible for this whole mess. We're doing this not only because we are opposed to SB1070 and the racist Arizona police state, but because we want a world free from police, prisons and politicians altogether.

In this batch of emails we found more racist email chain emails, including Springerville's police chief Mike Nuttal forwarding jokes about torturing "ragheads". FOP president Brandon L Musgrave was also forwarding anti-muslim emails while also purchasing large amounts of guns, so we're dumping his paypal and credit card information as well.

Other drama includes internal arguments over FOP positions, disputes over arrested FOP member Michelle Preiss, lots of crude anti-Obama jokes, and lots lots more. Amusingly we also were reading James Mann's emails as they were discussing the AZDPS hacks and struggling to send out press releases explaining why they had a sex offender in their FOP ranks. Initially James changed all his passwords and pulled the AZFOP sites down out of fear of impending hacker attacks, but there is no stopping the kind of chaos we bring upon all those who cross our path.

Truth be told we've been passing around this password list amongst our black comrades for a while now. Much to our amusement we've been reading everybody's emails looking for dirt and personal info, while leaking bits and pieces to expose and instill fear into the crooked cops of Arizona. However the list proved to be too great, and now we are seeking community assistance in going through everybody's inbox to retrieve and expose their secrets. Go forth and bring mayhem to the lives of these corrupt officers, and tell us what you find on irc.anonops.li #antisec.

Let this third and crushing blow against Arizona police send a strong message to the ruling class around the world. You will no longer be able to operate your campaign of terror against immigrants and working people in secrecy: we will find you, expose you, and knock you off the internet. Many lulz have been had while we purposefully strung you along slowly and painfully for the past two weeks. We know exactly what we're doing, so think twice before considering crossing us.

Hackers of the world, join us as we resist against the governments and corporations of the world, for there is enough bounty for everybody aboard the good ship #antisec." 


View the original article here

Hackers strike Arizona police sites again

by Matt Haldane - Jun. 30, 2011 10:01 PM
The Arizona Republic-12 News Breaking News Team

A group of hackers defaced several Fraternal Order of Police websites across Arizona on Thursday evening, posting the user names, passwords and other information of hundreds of officers.

A release by the hackers, plastered across the homepages of the affected websites, claimed they were releasing information on 1,200 officers. This marks the third major release of documents and personal information on Arizona law enforcement officials within the past week.

The group claims to have defaced 10 websites for different FOP chapters within the state, but only some of them remain that way. Others either quickly restored the sites or took them down while they addressed the issue.

As with the other released documents, the group claims to be protesting SB 1070, the controversial Arizona law targeting illegal immigrants. The first hack was done under the banner of LulzSec, but they claimed to have disbanded on Saturday, their 50th day of existence.

Since then, a group calling itself AntiSec has taken up the cause, posting what it called a "master list" of everything that has been released so far.

Like the other releases, the list contains all the documents said to be available for download via peer-to-peer services. The group is claiming to have gone as far as releasing credit card and Paypal information for one of the officers in the one of the documents.

True to form in their manner of mocking their victims, a music video of the rap song "Hazy Shade of Criminal" by Public Enemy was posted at the top of each hacked page.

AntiSec claims to be an anarchist group working to "resist against the governments and corporations of the world."

The releases have consistently denounced the police as racist and corrupt.

[Sponsored links] ×

Content recommendations are powered by Outbrain, a third party, to deliver links to additional articles and content that may be of interest based on contextual similarity and anonymous usage and browsing patterns from our visitors. To view Outbrain's privacy policy, including instructions on how to opt out, please go to http://www.outbrain.com/privacy.

If you'd like to submit articles yourself for distribution, visit http://www.outbrain.com/marketers.


View the original article here

Friday, July 1, 2011

Hackers Release More Data From Arizona Police

Hackers on Wednesday publicly exposed for the second time information they claimed to have stolen from the computer systems and personnel of the Arizona state police, in a continuation of a nearly two-month hacking spree.

A hacker group known as Lulz Security last week leaked case files, phone numbers and addresses of officers from the department in what it said was a response to the state’s tough laws aimed at illegal immigrants. The latest cache contained material from officers’ personal e-mail accounts, including “humiliating dirt,” according to a statement posted on the Pirate Bay, a site for users of the file-sharing tool BitTorrent, which the hackers used to distribute the data.

A spokesman for the Arizona Department of Public Safety said it was looking into the hackers’ claims and whether its systems had been breached.

The hackers no longer call themselves Lulz Security, or LulzSec for short, after disbanding last weekend and rejoining the larger hacker collective Anonymous. They are now working under a new banner they call “AntiSec,” protesting corruption and censorship.

One of the police department’s spokesmen was singled out for attack in the latest data release for “bragging” about the department’s security upgrades, promising the hackers would be caught and calling them “a cyber terrorism group.”

“The same fate will meet anyone else who tries to paint us as terrorists in an Orwellian attempt to pass more pro-censorship or racial-profiling police state laws,” the group warned in its statement.

It also said it had spared one former officer from having his personal information exposed because it learned that he was a Navajo and planned on suing the department for racial discrimination.

The disclosure followed the release on Tuesday of a pile of stolen content tied to a variety of organizations, including the governments of Brazil, Australia, Anguilla and Zimbabwe; a right-wing Colombian police unit; and Universal Music and Viacom. In a statement, the group said the action was retaliation “against corrupt Governments (in our world this is all Governments) and corrupt companies.”


View the original article here

Bits: Hackers Release More Data From Arizona Police

Hackers on Wednesday publicly exposed for the second time information they claimed to have stolen from the computer systems and personnel of the Arizona state police, in a continuation of a nearly two-month hacking spree.

A hacker group known as Lulz Security last week leaked case files, phone numbers and addresses of officers from the department in what it said was a response to the state’s tough laws aimed at illegal immigrants. The latest cache contained material from officers’ personal e-mail accounts, including “humiliating dirt,” according to a statement posted on the Pirate Bay, a site for users of the file-sharing tool BitTorrent, which the hackers used to distribute the data.

A spokesman for the Arizona Department of Public Safety said it was looking into the hackers’ claims and whether its systems had been breached.

The hackers no longer call themselves Lulz Security, or LulzSec for short, after disbanding last weekend and rejoining the larger hacker collective Anonymous. They are now working under a new banner they call “AntiSec,” protesting corruption and censorship.

One of the police department’s spokesmen was singled out for attack in the latest data release for “bragging” about the department’s security upgrades, promising the hackers would be caught and calling them “a cyber terrorism group.”

“The same fate will meet anyone else who tries to paint us as terrorists in an Orwellian attempt to pass more pro-censorship or racial-profiling police state laws,” the group warned in its statement.

It also said it had spared one former officer from having his personal information exposed because it learned that he was a Navajo and planned on suing the department for racial discrimination.

The disclosure followed the release on Tuesday of a pile of stolen content tied to a variety of organizations, including the governments of Brazil, Australia, Anguilla and Zimbabwe; a right-wing Colombian police unit; and Universal Music and Viacom. In a statement, the group said the action was retaliation “against corrupt Governments (in our world this is all Governments) and corrupt companies.”


View the original article here