TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

GhostShell hacker leaks 39M accounts in security “protest”

64 pointsby Harry101almost 9 years ago

8 comments

kjaftaedialmost 9 years ago
The most interesting thing to me was the evidence posted that other hackers had already penetrated these systems, which I guess goes without saying when you have little to no security in place.<p>Many many years ago when I was younger and playing with buffer overflows and learning shellcode, I&#x27;m not saying that I&#x27;m proud of this either, but in my journeys I had breached a couple of online retailers, had full access to their databases and internal networks.. of course I alerted them via anonymous e-mails, but what always struck me was the amount of times that I encountered files from &#x27;hackers&#x27; just saying that they were here or what have you. Many of them just placing files because they couldn&#x27;t transverse the NAT, and others who had uploaded ftp scripts but had typos in them so the scripts didn&#x27;t get deleted like they had planned. Evidence of crimes and theft laying all over the internal network for months or years, and nobody finding it.<p>At some point it&#x27;s hard not to side with people like ghostshell, because when you&#x27;re supposed to be responsible for important information, but have seemingly no interest in protecting it, at some point the system is bound to fall apart.<p>I&#x27;m reminded of something I read posted by l0pht, way back when, and they just said how much better they were than everyone else because they had jobs at burger king and were dedicated to spending all of their time penetrating networks while their opponents were a bunch of overpaid nobodies who hated their jobs and overall really didn&#x27;t care, and that they would always win.<p>I think that still holds true today.
评论 #11839009 未加载
评论 #11836245 未加载
评论 #11837717 未加载
评论 #11836355 未加载
pmoricialmost 9 years ago
Wouldn&#x27;t a better &quot;protest&quot; have been to delete all the databases. That would harm the people responsible for the problem in the first place.
评论 #11838328 未加载
aw3c2almost 9 years ago
Direct link <a href="http:&#x2F;&#x2F;pastebin.com&#x2F;raw&#x2F;aNmdgGg4" rel="nofollow">http:&#x2F;&#x2F;pastebin.com&#x2F;raw&#x2F;aNmdgGg4</a>
jlg23almost 9 years ago
What happened to hacker ethics? Screw over 39 million people to protest the sorry state of the security of a service they have been using?<p>Back in the good old days one would have secured the systems instead of harming the victims again.<p>GhostShell, please stay away from IoT or connected medical devices, I&#x27;m afraid you&#x27;ll kill people just to make a point every security professional already understands.
评论 #11840033 未加载
评论 #11839843 未加载
ryanlolalmost 9 years ago
Here&#x27;s another classic team GhostShell zine<p><a href="http:&#x2F;&#x2F;pastebin.com&#x2F;raw&#x2F;tEX6yGX6" rel="nofollow">http:&#x2F;&#x2F;pastebin.com&#x2F;raw&#x2F;tEX6yGX6</a>
updatealmost 9 years ago
&gt; The size of the downloadable cache alone puts it at one of the largest breaches this year -- but it could have been far larger, given time and resources.<p>&gt; &quot;The worst part is that this is barely a fraction of what I could get my hands on,&quot; the hacker said.<p>So why didn&#x27;t GhostShell release everything he could get his hands on?
评论 #11838202 未加载
评论 #11838876 未加载
agumonkeyalmost 9 years ago
Reading the title I had visions of digital vaccines.
williamsteinalmost 9 years ago
MongoDB
评论 #11838891 未加载