Sponsored Content




Intermarkets' Privacy Policy
Support


Donate to Ace of Spades HQ!



Recent Entries
Absent Friends
Bandersnatch 2024
GnuBreed 2024
Captain Hate 2023
moon_over_vermont 2023
westminsterdogshow 2023
Ann Wilson(Empire1) 2022
Dave In Texas 2022
Jesse in D.C. 2022
OregonMuse 2022
redc1c4 2021
Tami 2021
Chavez the Hugo 2020
Ibguy 2020
Rickl 2019
Joffen 2014
AoSHQ Writers Group
A site for members of the Horde to post their stories seeking beta readers, editing help, brainstorming, and story ideas. Also to share links to potential publishing outlets, writing help sites, and videos posting tips to get published. Contact OrangeEnt for info:
maildrop62 at proton dot me
Cutting The Cord And Email Security
Moron Meet-Ups

NoVaMoMe 2024: 06/08/2024
Arlington, VA
Details to follow


Texas MoMe 2024: 10/18/2024-10/19/2024 Corsicana,TX
Contact Ben Had for info





















« Overnight Open Thread (13 Sep 2013) | Main | Saturday Morning Open Thread »
September 14, 2013

Govt kinda admits to controlling TOR servers and distributing malware snooping hack

This has been bubbling around geek-space for a few days now, expect it to go mainstream in the next week or two now that geeks have figured out all the particulars and know exactly how the malware works.

On August 4, all the sites hosted by Freedom Hosting — some with no connection to child porn — began serving an error message with hidden code embedded in the page. Security researchers dissected the code and found it exploited a security hole in Firefox to identify users of the Tor Browser Bundle, reporting back to a mysterious server in Northern Virginia. The FBI was the obvious suspect, but declined to comment on the incident. The FBI also didn’t respond to inquiries from WIRED today.
...the malware only targeted Firefox 17 ESR, the version of Firefox that forms the basis of the Tor Browser Bundle – the easiest, most user-friendly package for using the Tor anonymity network. That made it clear early on that the attack was focused specifically on de-anonymizing Tor users....
Prior to the Freedom Hosting attack, the code had been used sparingly, which kept it from leaking out and being analyzed.
Ostensibly, this was all done as part of a child porn investigation, but many legit users were also caught up in it and had their security compromised by the malware too.

The child porn angle makes it a lot harder to criticize, particularly since there seems to be genuine malefactors involved rather than a generic fishing expedition. However, the notion of shotgunning active malware out onto the general public's computers and hoping to snag a known culprit in that wide net is something that needs discussing. I'm not sure where I am on this one yet.

To the FBI's credit, the hack code is quite limited in scope and reasonably well crafted from my cursory examination. Basically its circumventing annonymization by sending your hostname and unique LAN card ID's (MAC address) to the FBI. With the MAC address, subsequent standard router packet sniffs could trace your internet traffic anywhere it goes.

Even though child porn was involved, in this instance, this practice leaves me with a queasy feeling. Is there ever an end to this shit?, lines that won't be crossed? Its looking like the answer is no.


Oh, and RIP Burn Notice. Damn, it seems like only yesterday it premiered...

Some of the tech and Michael's sidebar commentary were wildly inaccurate, impossible and/or flat out crazy wrong in real life, but some was spot on too. Initially I found that annoying, but it became part of the schtick and I accepted it, like some of the ridiculous science defying tech in Leverage or Nikita. It was only annoying until you'd bought into the fakey "reality" of that universe and decided you wanted to like the show then it was OK.


digg this
posted by Purp at 01:57 AM

| Access Comments




Recent Comments
18-1: "Old saws no longer valid: Is the Pope Catholic? ..."

rhennigantx: "Putting it all together, we now know - as the Phil ..."

dantesed: "- - - - The AP After Reporting His Death Without V ..."

Thomas Bender: "@189 >> Trans grandma able to breastfeed baby w ..."

Cat Ass Trophy : "Joseph of Arimethia! ..."

Sponge - F*ck Joe Biden: "[i]Louis Gossett Jr is still alive but he has anno ..."

Lizzy[/i]: ">>[i]Okay, I'm going to give a Trump W this mornin ..."

Captain Obvious, Laird o' the Sea, Radioactive Knight: "He went off to Kathmandu. Posted by: Count de Mon ..."

Humphreyrobot: "Twinkle nuts. That's the bad fairy. ..."

Warai-otoko : "I'd laugh if the majority of crooked shit being do ..."

Count de Monet: "They catch P.Diddy yet? More coffee... Posted ..."

Sponge - F*ck Joe Biden: "[i]Well the Dark Money infusion - oh, I meant the ..."

Recent Entries
Search


Polls! Polls! Polls!
Frequently Asked Questions
The (Almost) Complete Paul Anka Integrity Kick
Top Top Tens
Greatest Hitjobs

The Ace of Spades HQ Sex-for-Money Skankathon
A D&D Guide to the Democratic Candidates
Margaret Cho: Just Not Funny
More Margaret Cho Abuse
Margaret Cho: Still Not Funny
Iraqi Prisoner Claims He Was Raped... By Woman
Wonkette Announces "Morning Zoo" Format
John Kerry's "Plan" Causes Surrender of Moqtada al-Sadr's Militia
World Muslim Leaders Apologize for Nick Berg's Beheading
Michael Moore Goes on Lunchtime Manhattan Death-Spree
Milestone: Oliver Willis Posts 400th "Fake News Article" Referencing Britney Spears
Liberal Economists Rue a "New Decade of Greed"
Artificial Insouciance: Maureen Dowd's Word Processor Revolts Against Her Numbing Imbecility
Intelligence Officials Eye Blogs for Tips
They Done Found Us Out, Cletus: Intrepid Internet Detective Figures Out Our Master Plan
Shock: Josh Marshall Almost Mentions Sarin Discovery in Iraq
Leather-Clad Biker Freaks Terrorize Australian Town
When Clinton Was President, Torture Was Cool
What Wonkette Means When She Explains What Tina Brown Means
Wonkette's Stand-Up Act
Wankette HQ Gay-Rumors Du Jour
Here's What's Bugging Me: Goose and Slider
My Own Micah Wright Style Confession of Dishonesty
Outraged "Conservatives" React to the FMA
An On-Line Impression of Dennis Miller Having Sex with a Kodiak Bear
The Story the Rightwing Media Refuses to Report!
Our Lunch with David "Glengarry Glen Ross" Mamet
The House of Love: Paul Krugman
A Michael Moore Mystery (TM)
The Dowd-O-Matic!
Liberal Consistency and Other Myths
Kepler's Laws of Liberal Media Bias
John Kerry-- The Splunge! Candidate
"Divisive" Politics & "Attacks on Patriotism" (very long)
The Donkey ("The Raven" parody)
Powered by
Movable Type 2.64