New wave of ‘hacktivism’ adds twist to cybersecurity woes
Skip to main content
  • Home
  • Economy
  • Stocks
  • Analysis
  • World+Biz
  • Sports
  • Features
  • Epaper
  • More
    • Subscribe
    • COVID-19
    • Bangladesh
    • Splash
    • Videos
    • Games
    • Long Read
    • Infograph
    • Interviews
    • Offbeat
    • Thoughts
    • Podcast
    • Quiz
    • Tech
    • Archive
    • Trial By Trivia
    • Magazine
    • Supplement
  • বাংলা
The Business Standard

Sunday
June 26, 2022

Sign In
Subscribe
  • Home
  • Economy
  • Stocks
  • Analysis
  • World+Biz
  • Sports
  • Features
  • Epaper
  • More
    • Subscribe
    • COVID-19
    • Bangladesh
    • Splash
    • Videos
    • Games
    • Long Read
    • Infograph
    • Interviews
    • Offbeat
    • Thoughts
    • Podcast
    • Quiz
    • Tech
    • Archive
    • Trial By Trivia
    • Magazine
    • Supplement
  • বাংলা
SUNDAY, JUNE 26, 2022
New wave of ‘hacktivism’ adds twist to cybersecurity woes

World+Biz

Reuters
26 March, 2021, 09:25 am
Last modified: 26 March, 2021, 09:26 am

Related News

  • Italy prevents pro-Russian hacker attacks during Eurovision contest
  • Espionage-focused hacker group, Bitter APT, allegedly targets RAB
  • Govt's cyber threat agency recommends to keep botnet, malware free from infection
  • Anonymous claims to have hacked Russian TV stations
  • Ukraine launches 'IT army,' takes aim at Russian cyberspace

New wave of ‘hacktivism’ adds twist to cybersecurity woes

According to a US counter-intelligence strategy released a year ago, “ideologically motivated entities such as hacktivists, leaktivists, and public disclosure organizations,” are now viewed as “significant threats”

Reuters
26 March, 2021, 09:25 am
Last modified: 26 March, 2021, 09:26 am
Representational image. Picture: Collected
Representational image. Picture: Collected

At a time when US agencies and thousands of companies are fighting off major hacking campaigns originating in Russia and China, a different kind of cyber threat is re-emerging: activist hackers looking to make a political point.

Three major hacks show the power of this new wave of "hacktivism" - the exposure of AI-driven video surveillance being conducted by the startup Verkada, a collection of Jan. 6 riot videos from the right-wing social network Parler, and disclosure of the Myanmar military junta's high-tech surveillance apparatus.

And the US government's response shows that officials regard the return of hacktivism with alarm. An indictment last week accused 21-year-old Tillie Kottmann, a Swiss hacker who took credit for the Verkada breach, of a broad conspiracy.

"Wrapping oneself in an allegedly altruistic motive does not remove the criminal stench from such intrusion, theft and fraud," Seattle-based Acting US Attorney Tessa Gorman said.

According to a US counter-intelligence strategy released a year ago, "ideologically motivated entities such as hacktivists, leaktivists, and public disclosure organizations," are now viewed as "significant threats," alongside five countries, three terrorist groups, and "transnational criminal organizations."

Earlier waves of hacktivism, notably by the amorphous collective known as Anonymous in the early 2010s, largely faded away under law enforcement pressure. But now a new generation of youthful hackers, many angry about how the cybersecurity world operates and upset about the role of tech companies in spreading propaganda, are joining the fray.

And some former Anonymous members are returning to the field, including Aubrey Cottle, who helped revive the group's Twitter presence last year in support of the Black Lives Matter protests.

Anonymous followers drew attention for disrupting an app that the Dallas police department was using to field complaints about protesters by flooding it with nonsense traffic. They also wrested control of Twitter hashtags promoted by police supporters.

"What's interesting about the current wave of the Parler archive and Gab hack and leak is that the hacktivism is supporting antiracist politics or antifascism politics," said Gabriella Coleman, an anthropologist at McGill University, Montreal, who wrote a book on Anonymous.

Gab, a social network favored by white nationalists and other right-wing extremists, has also been hurt by the hacktivist campaign and had to shut down for brief periods after breaches.

Disrupting QAnon

Most recently, Cottle has been focused on QAnon and hate groups.

"QAnon trying to adopt Anonymous and merge itself into Anonymous proper, that was the straw that broke the camel's back," said Cottle, who has held a number of web development and engineering jobs, including a stint at Ericsson.

He found email data showing that people in charge of the 8kun image board, where the persona known as Q posted, were in steady contact with major promoters of QAnon conspiracies here.

The new-wave hacktivists also have a preferred place for putting materials they want to make public - Distributed Denial of Secrets, a transparency site that took up the mantle of WikiLeaks with less geopolitical bias. The site's collective is led by Emma Best, an American known for filing prolific freedom of information requests.

Best's two-year-old site coordinating access by researchers and media to a hoard of posts taken from Gab by unidentified hackers. In an essay this week, Best praised Kottmann and said leaks would keep coming, not just from hacktivists but insiders and the ransomware operators who publish files when companies don't pay them off.

"Indictments like Tillie's show just how scared the government is, and just how many corporations consider embarrassment a greater threat than insecurity," Best wrote here.

The events covered by the Kottmann indictment here took place from November 2019 through January 2021. The core allegation is that the Lucerne software developer and associates broke into a number of companies, removed computer code and published it. The indictment also said Kottmann spoke to the media about poor security practices by the victims and stood to profit, if only by selling shirts saying things like "venture anticapitalist" and "catgirl hacker."

But it was only after Kottmann publicly took credit for breaching Verkada and posted alarming videos from inside big companies, medical facilities and a jail that Swiss authorities raided their home at the behest of the US government. Kottmann uses non-binary pronouns.

"This move by the US government is clearly not only an attempt to disrupt the freedom of information, but also primarily to intimidate and silence this newly emerging wave of hacktivists and leaktivists," Kottmann said in an interview with Reuters.

Kottmann and their lawyer declined to discuss the US charges of wire fraud for some of Kottmann's online statements, aggravated identity theft for using employee credentials, and conspiracy, which together are enough for a lengthy prison sentence.

The FBI declined an interview request. If it seeks extradition, the Swiss would determine whether Kottmann's purported actions would have violated that country's laws.

Disdain

Kottmann was open about their disdain for the law and corporate powers-that-be. "Like many people, I've always been opposed to intellectual property as a concept and specifically how it's used to limit our understanding of the systems that run our daily lives," Kottmann said.

A European friend of Kottmann's known as "donk_enby," a reference to being non-binary in gender, is another major figure in the hacktivism revival. Donk grew angry about conspiracy theories spread by QAnon followers on the social media app Parler that drove protests against COVID-19 health measures.

Following a Cottle post about a leak from Parler in November, Donk dissected the iOS version of Parler's app and found a poor design choice. Each post bore an assigned number, and she could use a program to keep adding 1 to that number and download every single post in sequence.

After the Jan. 6 US Capitol riots, Donk shared links to the web addresses of a million Parler video posts and asked her Twitter followers to download them before rioters who recorded themselves inside the building deleted the evidence. The trove included not just footage but exact locations and timestamps, allowing members of Congress to catalogue the violence and the FBI to identify more suspects.

Popular with far-right figures, Parler has struggled to stay online after being dropped by Google and Amazon. Donk's actions alarmed users who thought some videos would remain private, hindering the its attempt at a comeback.

In the meantime, protesters in Myanmar asked Donk for help, leading to file dumps that prompted Google to pull its blogging platform and email accounts here from leaders of the Feb. 1 coup. Donk's identification of numerous other military contractors helped fuel sanctions that continue to pile up.

One big change from the earlier era of hacktivisim is that hackers can now make money legally by reporting the security weaknesses they find to the companies involved, or taking jobs with cybersecurity firms.

But some view so-called bug bounty programs, and the hiring of hackers to break into systems to find weaknesses, as mechanisms for protecting companies who should be exposed.

"We're not going to hack and help secure anyone we think is doing something extremely unethical," said John Jackson, an American researcher who works with Cottle on above-ground projects. "We're not going to hack surveillance companies and help them secure their infrastructure." (This story corrects spelling to Kottmann from Hottmann, paragraphs 3, 16, 18-25)

Tech / Top News

Hacktivism / Hacking / Activism

Comments

While most comments will be posted if they are on-topic and not abusive, moderation decisions are subjective. Published comments are readers’ own views and The Business Standard does not endorse any of the readers’ comments.

Top Stories

  • Photo: TBS
    Long queues of vehicles as Padma Bridge opens to traffic
  • Photo: PMO Press Wing
    PM salutes people, opens Padma Bridge
  • Photo: PMO Press Wing
    Her moment of glory, our moment of pride

MOST VIEWED

  • Russian President Vladimir Putin attends a meeting with his Belarusian counterpart Alexander Lukashenko in Saint Petersburg, Russia June 25, 2022. Sputnik/Mikhail Metzel/Kremlin via REUTERS
    Putin promises Belarus nuclear-capable missiles to counter 'aggressive' West
  • Ukrainian service members watch while a tank (not pictured) fires toward Russian troops in the industrial area of the city of Sievierodonetsk, as Russia's attack on Ukraine continues, Ukraine June 20, 2022. Photo: Reuters
    Ukraine confirms fall of Sievierodonetsk after weeks-long fight
  • People protest the Supreme Court decision to overturn Roe v Wade abortion decision in New York City, New York, US on 24 June 2022. Photo: Reuters
    Abortion rights activists face first day of post-Roe v Wade American life
  • A Malaysia Ringgit note is seen in this illustration photo on 1 June 2017. Reuters Illustration/Files
    Malaysia plans record $18 billion subsidy spend in inflation fight
  • A view shows a damaged mosque after the recent earthquake in Wor Kali village in the Barmal district of Paktika province, Afghanistan on 25 June 2022. Photo: Reuters
    Taliban appeal for more aid after deadly Afghanistan earthquake
  • US President Joe Biden signs S. 2938: Bipartisan Safer Communities Act into law from the Roosevelt Room at the White House as first lady Jill Biden stands next to him in Washington, US on 25 June 2022. Photo: Reuters
    Biden signs bipartisan gun safety bill into law; takes swipe at Supreme Court

Related News

  • Italy prevents pro-Russian hacker attacks during Eurovision contest
  • Espionage-focused hacker group, Bitter APT, allegedly targets RAB
  • Govt's cyber threat agency recommends to keep botnet, malware free from infection
  • Anonymous claims to have hacked Russian TV stations
  • Ukraine launches 'IT army,' takes aim at Russian cyberspace

Features

Photo: TBS

A dream dreamt and then delivered

11h | Panorama
In pictures: 2022 Dhaka Motor Show

In pictures: 2022 Dhaka Motor Show

23h | Wheels
Our team full of hope and mettle, before we entered the disaster zone. PHOTO: SWAMIM AHMED

How we survived 4 days in Sunamganj flood

1d | Panorama
Photo: Bipul Sarker Sunny

Immigrants or refugees: Who really are the Maldoiyas?

1d | Features

More Videos from TBS

Building Padma Bridge a perfect reply to conspirators, says PM Sheikh Hasina

Building Padma Bridge a perfect reply to conspirators, says PM Sheikh Hasina

11h | Videos
Grand opening of Padma Bridge with colorful airshow and festival

Grand opening of Padma Bridge with colorful airshow and festival

11h | Videos
Man travelling barefoot for 47 years walks on Padma Bridge

Man travelling barefoot for 47 years walks on Padma Bridge

11h | Videos
Padma Bridge inauguration draws huge crowd

Padma Bridge inauguration draws huge crowd

15h | Videos

Most Read

1
Photo: Prime Minister's Office
Bangladesh

New investment in transports as Padma Bridge set to open

2
Japan cancels financing Matarbari coal project phase 2
Bangladesh

Japan cancels financing Matarbari coal project phase 2

3
Desco wanted to make a bold statement with their new head office building, a physical entity that would be a corporate icon. Photo: Courtesy
Habitat

Desco head office: When commitment to community and environment inspires architecture

4
Photo: TBS
Infrastructure

Gains from Padma Bridge to cross $10b, hope experts

5
20 businesses get nod for $326m foreign loan for expansion
Economy

20 businesses get nod for $326m foreign loan for expansion

6
Multiple robbery incidents reported in flood stranded Sylhet and Sunamganj
Bangladesh

Multiple robbery incidents reported in flood stranded Sylhet and Sunamganj

EMAIL US
contact@tbsnews.net
FOLLOW US
WHATSAPP
+880 1847416158
The Business Standard
  • About Us
  • Contact us
  • Sitemap
  • Privacy Policy
  • Comment Policy
Copyright © 2022
The Business Standard All rights reserved
Technical Partner: RSI Lab
BENEATH THE SURFACE
Cattle graze on the bank of the River Padma at Paschim Painpara near Jajira end of the Padma Bridge. Photo: Mumit M

Contact Us

The Business Standard

Main Office -4/A, Eskaton Garden, Dhaka- 1000

Phone: +8801847 416158 - 59

Send Opinion articles to - oped.tbs@gmail.com

For advertisement- sales@tbsnews.net