Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk) (1237258) | |
Home > OTChat |
[ Post a New Response | Return to the Index ]
(1237258) | |
Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk) |
|
Posted by JayZeeBMT on Wed Oct 29 12:31:45 2014 Hackers working for the Russian government (e.g., spying) got into unclassified White House computers earlier this month, triggering service disruptions while a patch was made to correct the breach, officials acknowledged today. All White house staff were required to perform mandatory password changes, and administration officials wouldn't say whether any data was actually stolen.Unca Selkirk, you may want to get in touch with the IT folks at the WH and sell them a new operating system. :) |
|
(1237259) | |
Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk) |
|
Posted by Olog-hai on Wed Oct 29 12:33:50 2014, in response to Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk), posted by JayZeeBMT on Wed Oct 29 12:31:45 2014. Now where did that reset button go? |
|
(1237260) | |
Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk) |
|
Posted by JayZeeBMT on Wed Oct 29 12:34:39 2014, in response to Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk), posted by Olog-hai on Wed Oct 29 12:33:50 2014. In Russia, computer restarts you! |
|
(1237277) | |
Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk) |
|
Posted by SelkirkTMO on Wed Oct 29 13:58:05 2014, in response to Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk), posted by JayZeeBMT on Wed Oct 29 12:31:45 2014. Yeah, saw that. I guess Symantec isn't going to get their contract renewed. :)Word is they only got to the press office and operations computers on the network, so now the Russkies know when there will be a PC and when lunch will be served. Heh. |
|
(1237281) | |
Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk) |
|
Posted by JayZeeBMT on Wed Oct 29 14:04:33 2014, in response to Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk), posted by SelkirkTMO on Wed Oct 29 13:58:05 2014. ...and which WH staffers have a coveted WH Mess account! |
|
(1237284) | |
Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk) |
|
Posted by SelkirkTMO on Wed Oct 29 14:07:51 2014, in response to Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk), posted by JayZeeBMT on Wed Oct 29 14:04:33 2014. Yeah, probably. Somebody got an email, they opened the ZIP file and doodah doodah. The weakest link in computer security is always the meat. :) |
|
(1237285) | |
Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk) |
|
Posted by JayZeeBMT on Wed Oct 29 14:12:06 2014, in response to Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk), posted by SelkirkTMO on Wed Oct 29 14:07:51 2014. Gee, and here I thought is was those pesky Nigerian R-32 railcar scams. :) |
|
(1237287) | |
Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk) |
|
Posted by SelkirkTMO on Wed Oct 29 14:14:27 2014, in response to Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk), posted by JayZeeBMT on Wed Oct 29 14:12:06 2014. Heh. In all sincerity, DNS poisoning is the usual trick these days once they can get a malformed PDF or Flash video to land. This network was "low side" security, completely separate from the "high side" secure stuff, so no real worries. If it was really important, they would have been behind the wall and unable to get to CNN or Facebook. :) |
|
(1237288) | |
Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk) |
|
Posted by JayZeeBMT on Wed Oct 29 14:21:26 2014, in response to Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk), posted by SelkirkTMO on Wed Oct 29 14:14:27 2014. I wonder how those with SCI/TS computers manage to get through the day without Facebook...LOL...but I would have been both incensed and impressed, had the Rooskies managed to get through "the wall" and discover the really juicy tidbits...like who John Boehner's secret Rentboy jump-off is...I'm so silly! |
|
(1237289) | |
Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk) |
|
Posted by SelkirkTMO on Wed Oct 29 14:31:52 2014, in response to Re: Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk), posted by JayZeeBMT on Wed Oct 29 14:21:26 2014. Heh. You're perfectly welcome to do that stuff on your phone so long as you're not connecting to the secure network, which knows each and every authorized device. Low side security also allows that to hit the router. The high side stuff can't "see" the regular internet anyway and all transport on it is encrypted.It IS embarassing of course, but this is no Home Depot caper. The usual suspects here are looking for "hard currency" ... they could give a shit about politics. |
|
(1283538) | |
Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails |
|
Posted by Olog-hai on Sun Apr 26 12:08:49 2015, in response to Makirovka! Russian Hackers Breach WH Computers (Paging Selkirk), posted by JayZeeBMT on Wed Oct 29 12:31:45 2014. NY Times
|
|
(1283541) | |
Re: Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails |
|
Posted by SelkirkTMO on Sun Apr 26 12:52:37 2015, in response to Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails, posted by Olog-hai on Sun Apr 26 12:08:49 2015. Ah for the good old days when security depended on the likes of BOClean, Symantec, McAfee and folks who were in it all since the beginning of small computers. Now, all of this is being handled by Boeing, Bechtel, Raytheon, Rockwell and Verizon. Godspeed, America. Lots of luck. :( |
|
(1283542) | |
Re: Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails |
|
Posted by Mitch45 on Sun Apr 26 12:54:19 2015, in response to Re: Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails, posted by SelkirkTMO on Sun Apr 26 12:52:37 2015. Raytheon? My pediatrician back in the Bronx had some Raytheon instruments. They looked like something out of a Lon Chaney horror movie. I didn't know they were still in business. |
|
(1283543) | |
Re: Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails |
|
Posted by SelkirkTMO on Sun Apr 26 12:59:00 2015, in response to Re: Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails, posted by Mitch45 on Sun Apr 26 12:54:19 2015. Yep. They make rockets and drones and stuff. That's the kind of expertise required to do detective work in silicon. Apply some lightning brought down from the rooftop into a Tesla coil and your email is safe. :) |
|
(1283544) | |
Re: Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails |
|
Posted by SelkirkTMO on Sun Apr 26 13:02:48 2015, in response to Re: Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails, posted by Mitch45 on Sun Apr 26 12:54:19 2015. 1961Eisenhower warns of the “military-industrial complex” In his farewell address to the nation, President Dwight D. Eisenhower warns the American people to keep a careful eye on what he calls the “military-industrial complex” that has developed in the post-World War II years. |
|
(1283566) | |
Re: Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails |
|
Posted by orange blossom special on Sun Apr 26 16:04:30 2015, in response to Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails, posted by Olog-hai on Sun Apr 26 12:08:49 2015. They must've been pretty bored. Obama probably only sends emails about himself. |
|
(1306599) | |
Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by Olog-hai on Fri Aug 7 20:48:34 2015, in response to Makirovka! Russian Hackers Breached WH Computers *And* Read Obama's Unclassified E-mails, posted by Olog-hai on Sun Apr 26 12:08:49 2015. CNBC
|
|
(1306603) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for 2 Weeks |
|
Posted by cortelyounext on Fri Aug 7 21:15:16 2015, in response to Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by Olog-hai on Fri Aug 7 20:48:34 2015. Subject corrected. |
|
(1306624) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by SelkirkTMO on Fri Aug 7 23:14:36 2015, in response to Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by Olog-hai on Fri Aug 7 20:48:34 2015. Maybe they should have just set up shop on Hillary's server instead of depending on THESE guys. :) |
|
(1306641) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for 1 Fortnight |
|
Posted by Olog-hai on Sat Aug 8 00:43:15 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for 2 Weeks, posted by cortelyounext on Fri Aug 7 21:15:16 2015. y u ha3t br1tz & c4nuckz? |
|
(1306757) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by 3-9 on Sat Aug 8 16:18:19 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by SelkirkTMO on Fri Aug 7 23:14:36 2015. That depends though. The investigation of the Clintons' server is still going, and apparently, they were using Outlook, or at least the Outlook Web application. :-( |
|
(1306768) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by SelkirkTMO on Sat Aug 8 18:58:59 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by 3-9 on Sat Aug 8 16:18:19 2015. That isn't necessarily a clue though - Outlook is a client, and the server side of it all is called "Exchange" and can be run on virtual machine on any operating system. It's part of Active Directory Services. So whatever the source of that tidbit, I'd ignore them since they don't know how this stuff works.Using Outlook on the desktops is quite typical, but it indicates nothing about the mail server running on the main box. |
|
(1306769) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by 3-9 on Sat Aug 8 19:31:16 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by SelkirkTMO on Sat Aug 8 18:58:59 2015. But isn't the Outlook Web Application something you put in front of a Windows mail server? That's how we used it at work, when we couldn't VPN into our desktop machines and regular Outlook client. (Nowadays, of course, we have our smartphones, which act as an even more convenient alternative.) |
|
(1306770) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by 3-9 on Sat Aug 8 19:38:37 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by SelkirkTMO on Sat Aug 8 18:58:59 2015. Also, even if Exchange is running as a virtual machine, isn't it still an instance of Windows with all its weaknesses? If you hack the virtual machine, get at the data files, and corrupt the VM's OS files on disk, it won't make much difference than if it was the base OS. |
|
(1306771) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by SelkirkTMO on Sat Aug 8 19:46:33 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by 3-9 on Sat Aug 8 19:31:16 2015. Not entirely. What OWA is, is a client program which you can run on a web server through a separate virtual machine that acts like a desktop. It contacts the Exchange server in the same way that a desktop would over a network. This Microsoft article explains it a bit:https://support.microsoft.com/en-us/kb/2897680 In most cases though, that is on a completely separate machine or in cluster servers, a VM usually running on ANOTHER server. |
|
(1306772) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by SelkirkTMO on Sat Aug 8 19:52:03 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by 3-9 on Sat Aug 8 19:38:37 2015. Well ... we still don't know if Hillary was running Exchange. Outlook clients can access any IMAP, SMTP or POP server and usually servers are set up as a plain old mail server using qmail or similar post office servers.Virtual machines can get hacked like a "real iron" machine, but there's several advantages to running a VM. First off, if anything happens, you can just kill it and restart it from its image and whatever happened in the VM dies along with the process and is respawned clear of whatever happened there. Secondly, real VM's are pretty ironclad and if you infect anything, you're infecting the temporary image that's running. Restart it and that goes away too. That was the idea behind KNOS, although we took that several steps further. It's not at all the same deal, especially if the server's actual operating system isn't Windows at all. Let me give you an example. On this Toshiba laptop which runs KNOS, I can run a VM of Windows 7, OS X Leopard, OS X Yosemite and they're actually all running on BSD as the primary operating system. All these other OS' are "guests" that can be dumped at any time and just restarted clean every time I feel like running something else. Works the same way on big iron. Back to Hillary, FBI and Treasury have some really good computer scientists working for them. If there are flaws, they WILL find them. But we'll have to wait until they do. |
|
(1306773) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by SelkirkTMO on Sat Aug 8 19:53:46 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by SelkirkTMO on Sat Aug 8 19:52:03 2015. I should also add that federal systems (the ones that are perpetually getting hacked) are bare iron Windows crap and NOT VM's. That's the reason why I said back there that Hillary probably had a far more secure setup than the State Department, but that too is pure speculation until the audit is done. |
|
(1306796) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by 3-9 on Sat Aug 8 22:51:29 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by SelkirkTMO on Sat Aug 8 19:52:03 2015. Since it's a server, though, chances are they aren't bouncing it too often, unless they set up a regular bounce/update schedule or something goes wrong. That could allow a hacker enough time to download tons of stuff. And if the hacker got his hands on the passwords, the VM won't help much. |
|
(1306798) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by SelkirkTMO on Sat Aug 8 23:05:08 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by 3-9 on Sat Aug 8 22:51:29 2015. Anything is possible, just trying to explain how real servers work. And yes, real servers run on a VM and the only thing the host OS is doing is running VM instances. That's what Amazon and other clouds are all about. Nothing gets to the core OS as long as the VM's are set up properly to not communicate down to the OS layer. Setting that up is usually done properly with VMWare, VirtualBox and the other VM's out there. |
|
(1306799) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by SelkirkTMO on Sat Aug 8 23:06:51 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by SelkirkTMO on Sat Aug 8 23:05:08 2015. And once again, just to point this out, most federal systems are NOT running VM's at all, they're running on Windows server on bare metal. Not good. BSD, Linux, Solaris and others are what is used elsewhere because when you have a budget, you don't depend on Windows anything keeping your stuff safe. |
|
(1306807) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by 3-9 on Sat Aug 8 23:28:45 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by SelkirkTMO on Sat Aug 8 23:06:51 2015. Amazing that the federal systems are still running Windows. Did their security wonks say otherwise? |
|
(1306808) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by SelkirkTMO on Sat Aug 8 23:31:43 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by 3-9 on Sat Aug 8 23:28:45 2015. Most agencies have been begging for new equipment since 9/11 if that gives you any idea of just what kind of crap we depend on. Funding? Barely. Not only is XP still alive and well, I've seen Windows98 still running in some agencies. :( |
|
(1306811) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by 3-9 on Sat Aug 8 23:37:08 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by SelkirkTMO on Sat Aug 8 23:31:43 2015. It wouldn't be too much to have MS continue supporting that crap, would it? :-( |
|
(1306813) | |
Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight |
|
Posted by SelkirkTMO on Sat Aug 8 23:47:12 2015, in response to Re: Maskirovka! Russian Hackers Breach Pentagon Computers; Email System Down for a Fortnight, posted by 3-9 on Sat Aug 8 23:37:08 2015. Microsoft *is* continuing some support for XP at an extremely insanely high price because of those maintenance contracts. It would be cheaper for the taxpayer to just replace every last box with a shiny new top of the line box. Of course, getting that through GSA is its own little nightmare even if the funding were there.The familiar faces of the military-industrial complex have the contracts on maintaining this stuff, so there's no incentive for them to fix it. But it should come as no surprise to anyone that big corporate and government systems are getting easily owned. Just more infrastructure that doesn't matter if it's going to cost money to fix it. |
|