186mb of NSA malware leaked, rest auctioned off by hacker group
57 replies, posted
[media]https://twitter.com/wikileaks/status/765210977625370624[/media]
[url]http://www.forbes.com/sites/thomasbrewster/2016/08/15/nsa-hacked-shadow-brokers-equation-group-leak/#25f964a877f9[/url]
[QUOTE]Two days ago, on August 13, a group calling themselves The Shadow Brokers released files on Github, claiming they came from the Equation Group. The files included code allegedly designed to exploit firewalls from American manufacturers Cisco, Juniper and Fortinet . One Chinese company, Topsec, was also an Equation target, according to the leaks. None of the manufacturers had responded to requests for comment at the time of publication.
The hackers released 60 per cent of the files they claimed to have taken from the Equation Group. The Shadow Brokers said they would release the remaining data to the highest bidder in a Bitcoin auction (they’ve received two bids so far). If they received an extraordinary 1,000,000 Bitcoins, worth roughly $560 million, they would release all the files.
“We follow Equation Group traffic. We find Equation Group source range. We hack Equation Group. We find many many Equation Group cyber weapons,” the hacker collective wrote (grammar errors theirs). “We give you some Equation Group files free, you see. This is good proof no? You enjoy!!! You break many things. You find many intrusions. You write many words. But not all, we are auction the best files.[/QUOTE]
from the github readme
[QUOTE]!!! Attention government sponsors of cyber warfare and those who profit from it !!!!
How much you pay for enemies cyber weapons? Not malware you find in networks. Both sides, RAT + LP, full state sponsor tool set? We find cyber weapons made by creators of stuxnet, duqu, flame. Kaspersky calls Equation Group. We follow Equation Group traffic. We find Equation Group source range. We hack Equation Group. We find many many Equation Group cyber weapons. You see pictures. We give you some Equation Group files free, you see. This is good proof no? You enjoy!!! You break many things. You find many intrusions. You write many words. But not all, we are auction the best files.
Picture Urls
[url]http://imgur.com/a/sYpyn[/url]
[url]https://theshadowbrokers.tumblr.com/[/url]
[url]https://github.com/theshadowbrokers/EQGRP-AUCTION[/url]
...
Closing Remarks
!!! Attention Wealthy Elites !!!
We have final message for "Wealthy Elites". We know what is wealthy but what is Elites? Elites is making laws protect self and friends, lie and fuck other peoples. Elites is breaking laws, regular peoples go to jail, life ruin, family ruin, but not Elites. Elites is breaking laws, many peoples know Elites guilty, Elites call top friends at law enforcement and government agencies, offer bribes, make promise future handjobs, (but no blowjobs). Elites top friends announce, no law broken, no crime commit. Reporters (not call journalist) make living say write only nice things about Elites, convince dumb cattle, is just politics, everything is awesome, check out our ads and our prostitutes. Then Elites runs for president. Why run for president when already control country like dictatorship? What this have do with fun Cyber Weapons Auction? We want make sure Wealthy Elite recognizes the danger cyber weapons, this message, our auction, poses to their wealth and control. Let us spell out for Elites. Your wealth and control depends on electronic data. You see what "Equation Group" can do. You see what cryptolockers and stuxnet can do. You see free files we give for free. You see attacks on banks and SWIFT in news. Maybe there is Equation Group version of cryptolocker+stuxnet for banks and financial systems? If Equation Group lose control of cyber weapons, who else lose or find cyber weapons? If electronic data go bye bye where leave Wealthy Elites? Maybe with dumb cattle? "Do you feel in charge?" Wealthy Elites, you send bitcoins, you bid in auction, maybe big advantage for you?[/QUOTE]
Hohohoho,any advice on how to use that good shit ?Naw just kidding.But seriously though,this is going to a big blow for the NSA.
[QUOTE] a group calling themselves The Shadow Brokers[/quote]
Oh, come on.
[QUOTE=phaedon;50891578]Oh, come on.[/QUOTE]
Honestly I find the name kind of cool.
hahah github disabled their account
[QUOTE=Jelman;50891607]hahah github disabled their account[/QUOTE]
good it's stolen software.
[QUOTE=Mitsudigi;50891603]Honestly I find the name kind of cool.[/QUOTE]
I want more hacker groups to call themselves shit like "Jolly Fattbois"
also the shadow broker is from mass effect
[QUOTE=OmniConsUme;50891610]good it's stolen software.[/QUOTE]
"Good, I like having dangerous exploits in networking equipment so that the NSA and others can unconstitutionally spy on me 24/7"
[QUOTE=Techno-Man;50891660]"Good, I like having dangerous exploits in networking equipment so that the NSA and others can unconstitutionally spy on me 24/7"[/QUOTE]
I kinda need to expand on this, this is Shit. They could have leaked information without the code. but they put the code in there, so if anyone has grabbed it before it was blocked, they now got a cyber-weapon.
So Good on Github bad on NSA.
-snip-
[QUOTE=OmniConsUme;50891707]I kinda need to expand on this, this is Shit. They could have leaked information without the code. but they put the code in there, so if anyone has grabbed it before it was blocked, they now got a cyber-weapon.
So Good on Github bad on NSA.[/QUOTE]
They're simply showing proof and evidence.
[QUOTE=OmniConsUme;50891707]I kinda need to expand on this, this is Shit. They could have leaked information without the code. but they put the code in there, so if anyone has grabbed it before it was blocked, they now got a cyber-weapon.
So Good on Github bad on NSA.[/QUOTE]
Essentially forcing the manufacturers to immediately patch it and release an update.
None of these exploits should ever exist, if an exploit does exist anyone besides the NSA could also exploit it.
Hell is going to break loose if this is actually real.
did anyone download it?
[QUOTE=noh_mercy;50892069]did anyone download it?[/QUOTE]
Sure did. Some interesting stuff, teflondoor is used to encrypt and then you decrypt it using teflonhandle, instructions on upgrading beechpony to bananaglee.
Why do they always pick such great names.
[quote]a group calling themselves the Shadow Brokers[/quote]
[IMG]http://static.giantbomb.com/uploads/scale_small/10/107073/1510231-me2sb.jpg[/IMG]
?
[QUOTE=Trebgarta;50892303]I wish wikileaks would open-source the malware they distribute through some of their email leaks too.
Source: [url]https://github.com/bontchev/wlscrape/blob/master/malware.md[/url][/QUOTE]
Maybe I'm misunderstanding, but I don't think that software is "supplied" by Wikileaks, meaning they don't have source. It seems to just be malware that resided in their leaked emails.
:snip:
[QUOTE=Techno-Man;50891660]"Good, I like having dangerous exploits in networking equipment so that the NSA and others can unconstitutionally spy on me 24/7"[/QUOTE]
So you're ok with theft from the federal government.
anyone have a spare 560 million dollars?
[QUOTE=Trebgarta;50892337]Yes, ever claimed they produced them, they just conveniently never checked. Thus distributed.
Content they hosted n their servers, it just doesnt "happen to reside".
Maybe if they spent as much time and effort in other topics as these "worthy, sensational" materials they could present such information too.[/QUOTE]
How would they distribute the source code for software they had no part in creating? The only reason it's there is because of Wikileaks' M.O. to mass-leak without examining documents. It's not as if they're purposefully distributing malware and benefiting from it. I don't understand the tone of your post, are you actually implying that Wikileaks has a responsibility to track down source code for random viruses they capture in leaked emails, as though that is more important than doing what their organization was created to do, which is leaking documents?
[editline]16th August 2016[/editline]
[QUOTE=meek;50892392]anyone have a spare 560 million dollars?[/QUOTE]
Maybe we can crowdfund it? I can pitch $20.
[QUOTE=Trebgarta;50892354]I would support prosecution of the breaching hackers if they ever get caught, but I would also support a civil disobedient attitude of distributing this piece of already stolen intellectual property for the sake of promoting civil rights and freedoms against NSA.[/QUOTE]
Do you support the prosecution of Edward Snowden?
[QUOTE=Code3Response;50892338]So you're ok with theft from the federal government.[/QUOTE]
This is like dumpster diving right, it's technically illegal but morally correct.
[QUOTE=Code3Response;50892338]So you're ok with theft from the federal government.[/QUOTE]
Theft from government that purposefully spies on and invades our privacy? Yes, absolutely.
[QUOTE=Code3Response;50892338]So you're ok with theft from the federal government.[/QUOTE]
I would happily engage in theft from the federal government if it meant America could be a free country again
For the internet being all about rights and due process, you all sure do support neither here.
[QUOTE=Code3Response;50892549]For the internet being all about rights and due process, you all sure do support neither here.[/QUOTE]
I don't understand what you're suggesting. Whose rights are being infringed here? What due process is missing? Are you upset at a lack of due process for Snowden, or for these anonymous hackers?
[QUOTE=butre;50892548]I would happily engage in theft from the federal government if it meant America could be a free country again[/QUOTE]
"Free" is a stretchable word that pretty much means whatever you want it to mean.
You're very free in many ways compared to most other countries, but true freedom = anarchy.
judging by the grammatical errors, this is a Russian group
[QUOTE=Code3Response;50892549]For the internet being all about rights and due process, you all sure do support neither here.[/QUOTE]
Rights of what? Rights of the government to maintain exploits in networking software that can be used by others to steal information instead of having it patched? Hell by releasing the vulnerabilities they've done more to protect the elites they were railing against than the NSA who was exploiting them in secret.
The government doesn't own exploits they find in software dude, they abuse them.
Sorry, you need to Log In to post a reply to this thread.