Financial Times’ Twitter, tech blog hijacked by the Syrian Electronic Army

Add the Financial Times to the growing list of media companies whose websites or Twitter accounts were hijacked by a group calling itself the Syrian Electronic Army.

On Friday, both the paper's Tech Blog and several of its Twitter accounts were seized by the group. The SEA used its unauthorized access to publish 12 blog posts in four minutes and also sent tweets through the FT's Twitter feeds. One stated "Syrian Electronic Army Was Here." Another linked to a YouTube video which appeared to show bound and blindfolded individuals being executed, according to The Wall Street Journal.

The FT said the accounts were hijacked following a phishing attack targeting company e-mail accounts. That's the same method used two weeks ago to commandeer the Twitter account of parody news site The Onion. Other media companies that have been similarly hacked by the SEA in recent months include the Associated Press, The Guardian, The BBC, and Al Jazeera.

Read 2 remaining paragraphs | Comments

DDoS-for-hire service works with blessing of FBI, operator says

A website that accepts payment in exchange for knocking other sites offline is perfectly legal, the proprietor of the DDoS-for-hire service says. Oh, it also contains a backdoor that's actively monitored by the FBI. is one of several sites that openly accepts requests to flood sites with huge amounts of junk traffic, KrebsonSecurity reporter Brian Krebs said in a recent profile of the service. The site, which accepts payment by PayPal, uses so-called DNS reflection attacks to amplify the torrents of junk traffic. The technique requires the attacker to spoof the IP address of lookup requests and bounce them off open domain name system servers. This can generate data floods directed at a target that are 50 times bigger than the original request.

Krebs did some sleuthing and discovered the site was operated by Justin Poland of Memphis, Tennessee. The reporter eventually got an interview and found Poland was unapologetic.

Read 3 remaining paragraphs | Comments