Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search
 

Demeter

(85,373 posts)
29. Someone’s Been Siphoning Data Through a Huge Security Hole in the Internet
Mon Dec 9, 2013, 10:35 AM
Dec 2013
http://www.wired.com/threatlevel/2013/12/bgp-hijacking-belarus-iceland/



In 2008, two security researchers at the DefCon hacker conference demonstrated a massive security vulnerability in the worldwide internet traffic-routing system — a vulnerability so severe that it could allow intelligence agencies, corporate spies or criminals to intercept massive amounts of data, or even tamper with it on the fly. The traffic hijack, they showed, could be done in such a way that no one would notice because the attackers could simply re-route the traffic to a router they controlled, then forward it to its intended destination once they were done with it, leaving no one the wiser about what had occurred.

Now, five years later, this is exactly what has happened. Earlier this year, researchers say, someone mysteriously hijacked internet traffic headed to government agencies, corporate offices and other recipients in the U.S. and elsewhere and redirected it to Belarus and Iceland, before sending it on its way to its legitimate destinations. They did so repeatedly over several months. But luckily someone did notice. And this may not be the first time it has occurred — just the first time it got caught.

Analysts at Renesys, a network monitoring firm, said that over several months earlier this year someone diverted the traffic using the same vulnerability in the so-called Border Gateway Protocol, or BGP, that the two security researchers demonstrated in 2008. The BGP attack, a version of the classic man-in-the-middle exploit, allows hijackers to fool other routers into re-directing data to a system they control. When they finally send it to its correct destination, neither the sender nor recipient is aware that their data has made an unscheduled stop. The stakes are potentially enormous, since once data is hijacked, the perpetrator can copy and then comb through any unencrypted data freely — reading email and spreadsheets, extracting credit card numbers, and capturing vast amounts of sensitive information. The attackers initiated the hijacks at least 38 times, grabbing traffic from about 1,500 individual IP blocks — sometimes for minutes, other times for days — and they did it in such a way that, researchers say, it couldn’t have been a mistake.

Renesys Senior Analyst Doug Madory says initially he thought the motive was financial, since traffic destined for a large bank got sucked up in the diversion. But then the hijackers began diverting traffic intended for the foreign ministries of several countries he declined to name, as well as a large VoIP provider in the U.S., and ISPs that process the internet communications of thousands of customers. Although the intercepts originated from a number of different systems in Belarus and Iceland, Renesys believes the hijacks are all related, and that the hijackers may have altered the locations to obfuscate their activity.

“What makes a man-in-the-middle routing attack different from a simple route hijack? Simply put, the traffic keeps flowing and everything looks fine to the recipient,…” Renesys wrote in a blog post about the hijacks. “It’s possible to drag specific internet traffic halfway around the world, inspect it, modify it if desired, and send it on its way. Who needs fiberoptic taps?”

MORE THAN YOU CAN STAND ON THE INTERNET AT LINK

Kim Zetter is a senior reporter at Wired covering cybercrime, privacy, security and civil liberties.

And that's exactly where libertarianism falls apart Demeter Dec 2013 #1
The Kid and I went to See The Bookthief Demeter Dec 2013 #2
thanks for the review. nt xchrom Dec 2013 #3
The Global Economy In Two Lines xchrom Dec 2013 #4
China Took An Important Step Towards Liberalizing Interest Rates This Weekend xchrom Dec 2013 #5
Chinese Consumer Prices Rise 3% xchrom Dec 2013 #6
The Fascinating History Behind Ukraine's Toppled Lenin Statue xchrom Dec 2013 #7
Baby, it's cold outside--and we have a quarter-inch of snow Demeter Dec 2013 #8
More Welfare for Wall Street: One in Three Bank Tellers Need Public Assistance Demeter Dec 2013 #9
i osted that the other day in gd -- nobody cared. xchrom Dec 2013 #11
Sad.......N/t Hotler Dec 2013 #25
i know -- it was at the same time info about the fast food strikes xchrom Dec 2013 #26
Good one! DemReadingDU Dec 2013 #10
RISING RICHES: 1 IN 5 IN US REACHES AFFLUENCE xchrom Dec 2013 #12
How to commit fraud and get away with it: A Guide for CEOs Demeter Dec 2013 #13
Looking for fraud? Don't look at food stamp recipients, look at Wall Street Demeter Dec 2013 #16
SURVEY: FED ECONOMIC STIMULUS WILL END IN 2014 xchrom Dec 2013 #14
GERMAN INDUSTRIAL PRODUCTION SLOWS xchrom Dec 2013 #15
CHAMPAGNE WIDOWS STAMPED GRAND LEGACY ON WINE xchrom Dec 2013 #17
Fascinating! I never knew that Demeter Dec 2013 #28
Yanis Varoufakis Discuses Bitcoin and Litecoin on RT Demeter Dec 2013 #18
Enormous Discrepancy Between Jobs and Employment Continues Mike "Mish" Shedlock Demeter Dec 2013 #19
The BLS Report Covering November 2013: Effects of the Government Shutdown Fade, Part Time Work UP Demeter Dec 2013 #20
Why the Euro Hasn't Depreciated Demeter Dec 2013 #21
Japan’s Growth Slows More Than Forecast to 1.1% on Investment xchrom Dec 2013 #22
Indian shares hit new high as opposition wins majority xchrom Dec 2013 #23
Listen Up, Budget Cutters. Austerity Can Lead to Blood on the Streets, Even in America Demeter Dec 2013 #24
What is needed is an American Spring. Hotler Dec 2013 #30
Why has no one ever proposed austerity for the rich? Fuddnik Dec 2013 #32
Broader powers for central bank in the works xchrom Dec 2013 #27
Someone’s Been Siphoning Data Through a Huge Security Hole in the Internet Demeter Dec 2013 #29
DenverPost: Couple warns others of expensive ER bill, with insurance DemReadingDU Dec 2013 #31
We don't need insurance, we need universal single payer Demeter Dec 2013 #33
Latest Discussions»Issue Forums»Economy»STOCK MARKET WATCH -- Mon...»Reply #29