Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

Nevilledog

(51,034 posts)
Thu Sep 16, 2021, 11:51 AM Sep 2021

'Worst I've seen in 20 years': How the Epik hack reveals every secret the far-right tried to hide



Tweet text:
Mikael Thalen
@MikaelThalen
NEW: The hack of web hosting company Epik has revealed the names behind some of the most notorious far-right sites.

A cybersecurity expert I analyzed the data with said Epik was “fully compromised.”

“Maybe the worst I’ve ever seen in my 20-year career.”

'Worst I've seen in 20 years': How the Epik hack reveals every secret the far-right tried to hide
A breach of Epik exposed a massive trove of data, including the names of individuals behind some of the far-right's most notorious websites.
dailydot.com
6:20 AM · Sep 16, 2021


https://www.dailydot.com/debug/epik-hack-far-right-sites-anonymous/


A large-scale breach of the domain registrar and web hosting company Epik has exposed a massive trove of data, including the names of individuals behind some of the far-right’s most notorious websites.

The data, as first reported by independent journalist Steven Monacelli on Monday, was released as a torrent this week by the hacking collective Anonymous.

In a press release on the hack, dubbed Operation EPIK FAIL, Anonymous claimed that it was able to obtain “a decade’s worth” of information, including domain registrations and transfers, account credentials, and emails from an Epik employee.

“This dataset is all that’s needed to trace actual ownership and management of the fascist side of the internet that has eluded researchers, activists, and, well, just about everybody,” the release alleges.

*snip*


20 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
'Worst I've seen in 20 years': How the Epik hack reveals every secret the far-right tried to hide (Original Post) Nevilledog Sep 2021 OP
More Nevilledog Sep 2021 #1
The owners don't think so. SergeStorms Sep 2021 #5
I have been hearing about this hack for at least a week if not longer Bev54 Sep 2021 #9
Actually, that's from the hackers. foo_fighter999 Sep 2021 #19
I am against Doxxing Johnny2X2X Sep 2021 #2
This has slipped under the media's radar- probably won't be covered unless big names exposed. Nt Fiendish Thingy Sep 2021 #3
Sorry but hacking like this is just wrong ripcord Sep 2021 #4
So we should just keep letting them hack us instead and write strongly worded emails in protest? hadEnuf Sep 2021 #14
I've been loosely following this on social media. MontanaMama Sep 2021 #6
K&R! nt Carlitos Brigante Sep 2021 #7
Epik appears to be a very insecure place to host a site or register a domain blogslug Sep 2021 #8
I'm sure this little sentence left a few QCrazies feeling nervous.... FM123 Sep 2021 #10
So, what are some of the leaked secrets and scandals? Looking Hortensis Sep 2021 #11
Oh too rich. Plain text. Tommymac Sep 2021 #12
most of it is probably better in the original German The Mouth Sep 2021 #13
I love the cluelessness of this quote drmeow Sep 2021 #15
Generally against hacking of course, but IF this ends up illuminating the battle wiggs Sep 2021 #16
I hope this leads to some actual damage. lagomorph777 Sep 2021 #17
Not surprised to see Ali Axendar's name in there. DickKessler Sep 2021 #18
To add to the fun, a security researcher had warned them about a critical security vulnerability foo_fighter999 Sep 2021 #20

SergeStorms

(19,188 posts)
5. The owners don't think so.
Thu Sep 16, 2021, 12:15 PM
Sep 2021

"We're not that stupid. It's (the hack) as bogus as covid19 and 5G".

If the reply from ownership is any indication, I think "anonymous" has struck gold.

It's fairly common knowledge who owns these sites anyway. If they truly did get all the user information though, it could be a massive score.

Bev54

(10,039 posts)
9. I have been hearing about this hack for at least a week if not longer
Thu Sep 16, 2021, 12:39 PM
Sep 2021

but I have yet to see any documents, when are they going to be made public? what are they waiting for?

foo_fighter999

(86 posts)
19. Actually, that's from the hackers.
Tue Sep 21, 2021, 09:40 PM
Sep 2021

They altered the knowledge base to make fun of Epik's denial that they had been breached.

From the article:

"Anonymous also tampered with Epik's knowledge base to mock the company's denial of the breach.

"On September 13, 2021, a group of kids calling themselves 'Anonymous', whom we’ve never heard of, said they manage[d] to get a hold of, well, honestly, all our data, and then released it," said the altered knowledge base, as seen in an archived copy. "They claim it included all the user data. All of it. All usernames, passwords, e-mails, support queries, breaching all anonymization service[s] we have. Of course it’s not true. We’re not so stupid we'd allow that to happen."

https://arstechnica.com/information-technology/2021/09/anonymous-leaks-gigabytes-of-data-from-epik-web-host-of-gab-and-parler/


That said, I can see how you would think that came from Epik as their actual response to the breach was so utterly stupid that it makes the KB article believable.

"We are not aware of any breach. We take the security of our clients' data extremely seriously, and we are investigating the allegation," an Epik representative told Ars."

That came the day after Anonymous announced the hack. When I saw Epik's response, it was obvious to me that they had been pwned. Badly. And they didn't even know it (yet).

Johnny2X2X

(18,973 posts)
2. I am against Doxxing
Thu Sep 16, 2021, 12:03 PM
Sep 2021

In this case though, these people are traitors to their country, publish their names and actions.

hadEnuf

(2,177 posts)
14. So we should just keep letting them hack us instead and write strongly worded emails in protest?
Thu Sep 16, 2021, 02:39 PM
Sep 2021

Last edited Thu Sep 16, 2021, 06:17 PM - Edit history (1)

MontanaMama

(23,296 posts)
6. I've been loosely following this on social media.
Thu Sep 16, 2021, 12:17 PM
Sep 2021

#OperationJane. Anonymous has been telling Texas to expect them.

blogslug

(37,985 posts)
8. Epik appears to be a very insecure place to host a site or register a domain
Thu Sep 16, 2021, 12:29 PM
Sep 2021

No wonder they're the last place on earth for criminals and scum.

FM123

(10,053 posts)
10. I'm sure this little sentence left a few QCrazies feeling nervous....
Thu Sep 16, 2021, 01:26 PM
Sep 2021

"Time to find out who in your family secretly ran an Invermectin horse porn fetish site."

Hortensis

(58,785 posts)
11. So, what are some of the leaked secrets and scandals? Looking
Thu Sep 16, 2021, 01:57 PM
Sep 2021

forward to finding out whose uncles are running ivermectin porn sites? Anyone in our neighborhood? I found news on the hack of TX Republican Party's site, but I don't think that's quite what is meant by "the far-right's most notorious websites," even if it does qualify in my mind.

Anonymous always brings to mind a long-term interest, btw, the 2016 campaign against the Democratic Party (supposedly addressed to Evil Witch Hillary) that they were about to release evidence of our candidate's crimes that would destroy her. While they're releasing stuff, might that finally turn up?

Tommymac

(7,263 posts)
12. Oh too rich. Plain text.
Thu Sep 16, 2021, 02:30 PM
Sep 2021
The engineer pointed the Daily Dot to what they described as Epik’s “entire primary database,” which contains hosting account usernames and passwords, SSH keys, and even some credit card numbers—all stored in plaintext.


BWAAAAHAAAAHAAAAAAAHAAAAA



Da Stupid goes beyond misspellings

drmeow

(5,013 posts)
15. I love the cluelessness of this quote
Fri Sep 17, 2021, 10:25 AM
Sep 2021

"“You are in our prayers today. We are grateful for your support and prayer. When situations arise where individuals might not have honorable intentions, I pray for them,” Monster added. “I believe that what the enemy intends for evil, God invariably transforms into good.”"

Dude - you have dishonorable intentions and you are the enemy. Maybe, just maybe, this hack is God transforming your evil into good!

wiggs

(7,810 posts)
16. Generally against hacking of course, but IF this ends up illuminating the battle
Fri Sep 17, 2021, 10:32 AM
Sep 2021

that the top .1% is waging against the rest of humanity then perhaps some good comes from it

This is fundamental dynamic that colors all the other issues and makes progress harder. Doing something about it has proven very very difficult, due to the 50 year head start and 90% of the money the top .1% has

lagomorph777

(30,613 posts)
17. I hope this leads to some actual damage.
Fri Sep 17, 2021, 10:42 AM
Sep 2021

For example, it might enable some very targeted and painful boycotts.

foo_fighter999

(86 posts)
20. To add to the fun, a security researcher had warned them about a critical security vulnerability
Tue Sep 21, 2021, 09:54 PM
Sep 2021

weeks before they were breached.

"TechCrunch has since learned that Epik was warned of a critical security flaw weeks before its breach.

Security researcher Corben Leo contacted Epik’s chief executive Monster over LinkedIn in January about a security vulnerability on the web host’s website. Leo asked if the company had a bug bounty or a way to report the vulnerability. LinkedIn showed Monster had read the message but did not respond.

Leo told TechCrunch that a library used on Epik’s WHOIS page for generating PDF reports of public domain records had a decade-old vulnerability that allowed anyone to remotely run code directly on the internal server without any authentication, such as a company password.

“You could just paste this [line of code] in there and execute any command on their servers,” Leo told TechCrunch.

More at https://techcrunch.com/2021/09/17/epik-website-bug-hacked/

I'm not sure if that's the vulnerability that Anonymous used to breach their servers but, at any rate, if they had a vulnerability that old that they hadn't bothered to take care of, there's a REALLY good chance that it wasn't the only one. Sounds like they were easy pickings.

Latest Discussions»General Discussion»'Worst I've seen in 20 ye...