TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Hacking Team hacked, attackers claim 400GB in dumped data

582 点作者 sandmansandine将近 10 年前

42 条评论

Fede_V将近 10 年前
I do not want to sound shockingly naive, but I wonder how these people can sleep at night. You&#x27;ve just sold software to some of the most brutal governments in the world, who will use your technology to track down and brutally torture incredibly brave human rights activists.<p>How can you do this, and still get up in the morning while looking at yourself in the mirror? I can understand petty crime if the alternative is watching your family starve, but these are all skilled software developers, it&#x27;s not like they will have a hard time finding a job.<p>The people who are involved in this should be forced to watch videos of what those friendly governments do to the civil rights activists they catch.
评论 #9839174 未加载
评论 #9839495 未加载
评论 #9838791 未加载
评论 #9838764 未加载
评论 #9839494 未加载
评论 #9841085 未加载
评论 #9838963 未加载
评论 #9841041 未加载
评论 #9840053 未加载
评论 #9839226 未加载
评论 #9841367 未加载
评论 #9840736 未加载
评论 #9838989 未加载
评论 #9863088 未加载
评论 #9841402 未加载
评论 #9838869 未加载
评论 #9839008 未加载
评论 #9841015 未加载
评论 #9839009 未加载
antirez将近 10 年前
I&#x27;ve no idea about the whole story and what Hacking Team exactly did during the years, but I started to write serious code around 1998 working for Vincenzetti, so I think I can provide some hint about this to counter-balance all the hate.<p>* They allowed me to work on hping, releasing it as free software during most of my working hours. They supported my research that lead to <a href="https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Idle_scan" rel="nofollow">https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;Idle_scan</a><p>* Vincenzetti taught me personally many things about POSIX, and he was a very skilled programmer. He wrote, AFAIK before SSH existed, a secure shell that was in use at least in Italy for some time. It used UDP and implemented the reliable connection on top of it in a secure way using state of art encryption. So we are talking about serious programmers.<p>* Bedeschi, the co-founder of the company, is an incredible hacker, from the way he typed to the keyboard to the incredible Unix knowledged he had.<p>I worked for a couple of months for their &quot;SecLab&quot;, then left the company to return in Sicily since I did not wanted to live in Milan. I don&#x27;t want to provide an ethical evaluation of the people and don&#x27;t have enough information, but I can assure you that they were an incredible team of talented hackers.<p>EDIT: For sure they were very competitive people. I remember than when I left, Vincenzetti told me that it was a shame, I was a very talented programmer in his opinion, and I would finish in my little town in Sicily writing &quot;soccer bet programs&quot;. He just wanted to push me to stay in the big city to know more hackers and so forth. I&#x27;m glad I don&#x27;t write soccer bet programs BTW.
评论 #9841433 未加载
评论 #9840615 未加载
评论 #9840991 未加载
nickpsecurity将近 10 年前
Poetic justice. Serves the bastards right. I&#x27;m sure hackers are flocking to the download in search of awesome tools. If they&#x27;re there, then we might see independent, malware authors building some interesting things to produce headaches with. Interesting times continue.<p>Note that many of us in INFOSEC said years ago that these offensive, cyber companies developing weapons was a risk to us if they double-dealed <i>or got breached</i>. Their weapons which we (and others) funded might get turned against us. Depending on what&#x27;s in the torrent, that scenario might begin playing out.
评论 #9836491 未加载
评论 #9837561 未加载
评论 #9837569 未加载
bobcostas55将近 10 年前
Someone is uploading things to github: <a href="https:&#x2F;&#x2F;github.com&#x2F;hackedteam&#x2F;" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;hackedteam&#x2F;</a><p>Take a look at the GeoTrust repo...<p>This is a very interesting file, too: <a href="https:&#x2F;&#x2F;github.com&#x2F;hackedteam&#x2F;rcs-common&#x2F;blob&#x2F;master&#x2F;lib&#x2F;rcs-common&#x2F;evidence&#x2F;file.rb#L17" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;hackedteam&#x2F;rcs-common&#x2F;blob&#x2F;master&#x2F;lib&#x2F;rcs...</a>
评论 #9839481 未加载
评论 #9839955 未加载
评论 #9839645 未加载
评论 #9841387 未加载
评论 #9839908 未加载
kristofferR将近 10 年前
Damn, this hack is massive.<p>This seems to include all their deals&#x2F;financial data, the full source code to everything (including some novel things like EFI malware and possibly some Office&#x2F;Flash 0days), all their mail, badges of every employee, personal screenshots&#x2F;porn habits etc etc.<p>It&#x27;s not possible to get hacked harder than this.
评论 #9837851 未加载
评论 #9837886 未加载
bjterry将近 10 年前
&gt; ...Hacking Team&#x27;s customers include South Korea, Kazakhstan, Saudi Arabia, Oman, Lebanon, and Mongolia. Yet, the company maintains that it does not do business with oppressive governments.<p>I was curious if those were all oppressive governments, especially since South Korea was included. According to a couple indices on Wikipedia [1] South Korea is pretty free (only the press freedom index is lower than America&#x27;s), and Mongolia&#x27;s not so bad (political freedom, but weakness in press and economic freedom). Pretty hard to lump South Korea in with Saudi Arabia or Kazakhstan.<p>1: <a href="https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;List_of_freedom_indices" rel="nofollow">https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;List_of_freedom_indices</a>
评论 #9837686 未加载
评论 #9836635 未加载
评论 #9836534 未加载
mikeyouse将近 10 年前
They were stonewalling a UN investigation into selling their services to Sudan during the civil war.. Unbelievable..<p><a href="https:&#x2F;&#x2F;twitter.com&#x2F;csoghoian&#x2F;status&#x2F;617892200618291200" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;csoghoian&#x2F;status&#x2F;617892200618291200</a>
评论 #9837216 未加载
HelloNurse将近 10 年前
Don&#x27;t miss: the bullshit at <a href="http:&#x2F;&#x2F;www.hackingteam.it&#x2F;index.php&#x2F;customer-policy" rel="nofollow">http:&#x2F;&#x2F;www.hackingteam.it&#x2F;index.php&#x2F;customer-policy</a><p>&quot;We do not sell products to governments or to countries blacklisted by the U.S., E.U., U.N., NATO or ASEAN.<p>We review potential customers before a sale to determine whether or not there is objective evidence or credible concerns that Hacking Team technology provided to the customer will be used to facilitate human rights violations.&quot;
cinquemb将近 10 年前
&quot;regulations are annoying, it cuts into our profit margin when we have to find a reseller and give them a percentage&quot;[0]<p>Well this could certainly shed light on the role that contractors operate in ways we have yet to see from the snowden <i>&quot;leaks&quot;</i> (of which most still remains unleaked[1])…<p>RE: &quot;Media practice of consulting with governments on what to publish or withhold of material disclosed by risk takers, is anti-democratic, unconsitutional, venal, protective of privilege and betrayal of public trust.&quot;[2]<p>[0]: <a href="https:&#x2F;&#x2F;twitter.com&#x2F;hackingteam&#x2F;status&#x2F;617892908583243776" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;hackingteam&#x2F;status&#x2F;617892908583243776</a><p>[1]: <a href="http:&#x2F;&#x2F;cryptome.org&#x2F;2013&#x2F;11&#x2F;snowden-tally.htm" rel="nofollow">http:&#x2F;&#x2F;cryptome.org&#x2F;2013&#x2F;11&#x2F;snowden-tally.htm</a><p>[2]: <a href="http:&#x2F;&#x2F;thecryptosphere.com&#x2F;2014&#x2F;07&#x2F;24&#x2F;cryptome-kills-the-kickstarter-an-interview-with-john-young&#x2F;" rel="nofollow">http:&#x2F;&#x2F;thecryptosphere.com&#x2F;2014&#x2F;07&#x2F;24&#x2F;cryptome-kills-the-kic...</a>
评论 #9836946 未加载
sarciszewski将近 10 年前
Good. Serves them right.<p>Normally I&#x27;m a bit more reserved when a company I dislike gets hacked, but take a look at Hacking Team&#x27;s history and you&#x27;ll probably want to celebrate too.
评论 #9836552 未加载
justinjlynn将近 10 年前
Direct link to the announcement tweet <a href="https:&#x2F;&#x2F;twitter.com&#x2F;hackingteam&#x2F;status&#x2F;617852091390935040" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;hackingteam&#x2F;status&#x2F;617852091390935040</a>
lawnchair_larry将近 10 年前
This is actually really bad, happy as I am to see this company get ruined.<p>People with an agenda are going to latch on to this to further push bad legislation like Wassenar, and criminalize security research, or worse, make it &quot;terrorism&quot;, because Soghoian runs his mouth and policy makers don&#x27;t understand how things really work.
评论 #9839772 未加载
wslh将近 10 年前
Just looking at the torrent I found Coca Cola, Google, Carrefour, and Movistar. I would love to see an index of this information to quickly search the content.
评论 #9837023 未加载
评论 #9838789 未加载
评论 #9836700 未加载
gruez将近 10 年前
magnet link: magnet:?xt=urn:btih:51603bff88e0a1b3bad3962614978929c9d26955
评论 #9841230 未加载
评论 #9837914 未加载
评论 #9836725 未加载
评论 #9837264 未加载
评论 #9837263 未加载
evilDagmar将近 10 年前
What I find most entertaining is that they&#x27;ve gone to get help from the police.<p>Seriously, guys? Live by sword, die by the sword.
HelloNurse将近 10 年前
David Vincenzetti&#x27;s page on LinkedIn (<a href="https:&#x2F;&#x2F;www.linkedin.com&#x2F;in&#x2F;vincenzetti" rel="nofollow">https:&#x2F;&#x2F;www.linkedin.com&#x2F;in&#x2F;vincenzetti</a>) features a recommendation from Tommaso Vincenzetti (brother? Cousin?) and a list of many skills, including &quot;Information Security&quot;, &quot;Security Audits&quot;, &quot;Vulnerability Management&quot;, &quot;Ethical Hacking&quot; and less funny ones.<p>Marco Valleri, another Hacking Team employee, lists himself on LinkedIn as a &quot;Jedi&quot;. Nice corporate culture.
infinitysgame将近 10 年前
400GB dump?! Can&#x27;t imaging how many &#x27;accomplices&#x27; will get sucked into this!
Globz将近 10 年前
FTP link to all files : <a href="http:&#x2F;&#x2F;ht.musalbas.com&#x2F;" rel="nofollow">http:&#x2F;&#x2F;ht.musalbas.com&#x2F;</a>
Globz将近 10 年前
This link is part of their knowledge base : <a href="http:&#x2F;&#x2F;ht.musalbas.com&#x2F;KnowledgeBase&#x2F;Windows%20-%20Soldier%20Feature%20Compatibility%209.6%20-%20%5dHT%5b%20%3a%3a%20KnowledgeBase%20Product.html" rel="nofollow">http:&#x2F;&#x2F;ht.musalbas.com&#x2F;KnowledgeBase&#x2F;Windows%20-%20Soldier%2...</a><p>This one is about &quot;Soldier&quot;
danr4将近 10 年前
I&#x27;m actually surprised this doesn&#x27;t happen more often. I think it&#x27;s hacking organizations like Anonymous that steer away people from &quot;justice&quot; hacking into populism hacking. We need more of these shady &amp; dirty secrets to come to light.
eyeareque将近 10 年前
The screen shots of the email showed they didn&#x27;t use pgp it seems. Whoops.<p>Time to break out the popcorn.
评论 #9837550 未加载
nissehulth将近 10 年前
For those curious about file contents, this seems to be a mirror: <a href="http:&#x2F;&#x2F;ht.musalbas.com&#x2F;" rel="nofollow">http:&#x2F;&#x2F;ht.musalbas.com&#x2F;</a>
Apaze将近 10 年前
Here you can the tree of the archive: <a href="https:&#x2F;&#x2F;paste.ee&#x2F;r&#x2F;N3rg7" rel="nofollow">https:&#x2F;&#x2F;paste.ee&#x2F;r&#x2F;N3rg7</a>
mirimir将近 10 年前
Lorenzo Franceschi-Bicchierai at Motherboard reports evidence that PhineasFisher hacked Hacking Team.[0] It&#x27;s also possible that someone else hacked both Hacking Team and PhineasFisher, of course.<p>[0] <a href="http:&#x2F;&#x2F;motherboard.vice.com&#x2F;read&#x2F;hacker-claims-responsibility-for-the-hit-on-hacking-team" rel="nofollow">http:&#x2F;&#x2F;motherboard.vice.com&#x2F;read&#x2F;hacker-claims-responsibilit...</a>
评论 #9842321 未加载
dewyatt将近 10 年前
Looks like libtorrent-rasterbar based clients are not able to handle the dump (bencoded item limit). Transmission is working (slowly).
drannex将近 10 年前
Why do I always find it funny (and sad) when this happens?<p>Interesting to see that they do in fact work with oppressive governments...
thomasrossi将近 10 年前
Another question came to my mind, slightly related, what is another interesting Italian company to check? I think &quot;movimento 5 stelle&quot;, it&#x27;s a &quot;&quot;&quot;party&quot;&quot;&quot; which makes up whatever, it would be fun to show the fake votes and all.
nohostname将近 10 年前
i wonder who is behind this massive hack, is it a positive or even worst group?<p>i wouldn&#x27;t want to be in the private pictures leaked once the world knows you are responsable for torture and murder of potential innocent people, very nasty karma
评论 #9840757 未加载
rurban将近 10 年前
The childporn evidence being planted and esp. the violation of the Sudan export restrictions will make a very good case for the procuratore di milano, which famously is very independent. So they will face jailtime, yeah.
ophelia将近 10 年前
Results of a static code analysis of the leaked git repos. I hope this contributes to further research<p><a href="http:&#x2F;&#x2F;bit.ly&#x2F;ht-code-analysis" rel="nofollow">http:&#x2F;&#x2F;bit.ly&#x2F;ht-code-analysis</a>
giancarlostoro将近 10 年前
It&#x27;s been quite a while, surprised Twitter hasn&#x27;t caught on to this and stepped in or something? I guess it&#x27;s not necessarily their responsibility though.
chinathrow将近 10 年前
What I want so see now is legal action, anything else is not relevant.
s-afra将近 10 年前
How to download files hacking team?
thomasrossi将近 10 年前
do you think there was some help from the inside? Or just overruled?
redwood将近 10 年前
Palantir Europe?
curiousjorge将近 10 年前
South Korea? Well I&#x27;m not surprised. Beneath the veil of democracy is a nanny state, forcing kids to install surveillance tool on their mobile phones, forcing bank and military to use IE and wonderfully secure ActiveX (required to do just about anything private and sensitive in Korea), requiring social insurance number to sign up for any website, use your real name so they can take you away if you write a blog post in Korean about smoking marijuana in Amsterdam, insanely bizarre Korean defamation law, polarized view of &#x27;right&#x27; and &#x27;left&#x27;, with left being persecuted and painted in the same light as North Koreans, oppression of laborers, workers working for family owned conglomerates, indecency law (make Korean porno in Canada and get arrested once in Korea), hiding Gwangju massacre (officially a north korea inspired rebellion), silence and censorship of poor treatment of foreign workers (especially poorer Asian countries), east &amp; west regionalism that creates discriminating policies based on lineage, the shit list far too long to go on.<p>It&#x27;s no North Korea or Saudi Arabia, but there is <i>active</i> surveillance which seems to be readily tolerated along with nepotism and corruption, because Confucius says you should do what someone with an earlier birth date or higher social status. To go against this machine is to give up the government&#x27;s version of Korean identity, a constant victim of passed aggressions of neighboring countries which happened because Korea has never been blessed with a great government or kings that always put the country in such predicaments.
评论 #9837106 未加载
johansch将近 10 年前
<a href="https:&#x2F;&#x2F;twitter.com&#x2F;hackingteam&#x2F;status&#x2F;617951037954125824" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;hackingteam&#x2F;status&#x2F;617951037954125824</a><p>&quot;Our network security staff hard at work while 5 MB&#x2F;s is transferred out of our internal network through his computer.&quot; along with presumably is a screenshot of said staff watching youtube and reading facebook.
评论 #9837739 未加载
stefantalpalaru将近 10 年前
<a href="https:&#x2F;&#x2F;www.privacyinternational.org&#x2F;?q=node&#x2F;147" rel="nofollow">https:&#x2F;&#x2F;www.privacyinternational.org&#x2F;?q=node&#x2F;147</a> :<p>&gt; It has come to Privacy International’s attention that Hacking Team appears to have received €1.5 million from two venture capital funds originating from the Region of Lombardy in 2007. One of the funds, Finlombarda Gestioni SGR S.p.A (FGSGR) has only a single shareholder - Finlombarda S.p.A, a public financial services agency whose only shareholder is the Region of Lombardy. Finlombarda S.p.A. designs, builds and manages financial services on behalf of the Region of Lombardy, placing the profits of Hacking Team hand-in-hand with the public finances of Lombardy. FGSGR also lists the Head of Venture Capital as being a Board Member of Hacking Team itself.
bitmapbrother将近 10 年前
How can a security firm even be taken seriously when they don&#x27;t even employ two factor authentication at the very least.
bitmapbrother将近 10 年前
They should now change their name to Hacked Team.
评论 #9837540 未加载
yAnonymous将近 10 年前
Not sure how EU directives translate into Italian law, but I think what they&#x27;re doing would be illegal in Germany and other EU member states.<p><a href="http:&#x2F;&#x2F;eur-lex.europa.eu&#x2F;legal-content&#x2F;EN&#x2F;TXT&#x2F;?uri=CELEX:32013L0040" rel="nofollow">http:&#x2F;&#x2F;eur-lex.europa.eu&#x2F;legal-content&#x2F;EN&#x2F;TXT&#x2F;?uri=CELEX:320...</a>
评论 #9839928 未加载
curiousjorge将近 10 年前
David Vincenzetti will forever go down in history as a piece of shit.
评论 #9836702 未加载
评论 #9837236 未加载