Saturday, 18 May 2013

#40ozg00nz expose Ag3nt47 & TruthIzSexy - [News]

A new group calling themselves "40oz00nz" made their debut in the world of bits & bytes by releasing a e-zine exposing @Ag3nt47 & @TruthIzSexy

In an email to illSecure, 40ozg00nz said they targeted Ag3nt47 for spreading fake hacks & dropped dox on TruthIzSexy (Shona Sweeney) because she "calls everyone on Twitter a skid". The group say they are not hackers nor are they trolls, they say they are "a pack of goonz who drink 40oz all day everyday".

The e-zine includes screenshots of 40ozGoonz social engineering Ag3nt47 and TruthIzSexy and using them to spread false dox on innocent people, it also includes leaked messages sent by Ag3nt47. The zine also drops TruthIzSexy's dox and leaked messages of her wanting to hook up with 15 year old hacker le4ky.

In some of the leaked messages Ag3nt47 explains how he drinks herbal tea to erect himself and how he enjoys cyber bondage, he also explains how he takes depression pills because anonymous walks over him.

The e-zine can be found here:
http://pastebin.com/raw.php?i=5e5i6mbL

Friday, 10 May 2013

My $500 Reward From Mozilla Bug Bounty Program

On the 25th of January (2013) i attempted the Mozilla Bug Bounty Program. While analysing various mozilla domains i stumbled upon blog.mozilla.org although blog.mozilla.org is not an eligible domain for the bug bounty program, blog posts posts from blog.mozilla.org are embedded on the mozilla homepage (http://www.mozilla.org) so therefore i carried on looking for vulnerabilities.

I found a  cross-site request forgery vulnerability on blog.mozilla.org, i emailed mozilla security team with a report on the vulnerability and got this reply:

After re-producing and confirming the vulnerability, Mozilla Security Team flagged the vulnerability as a high risk vulnerability and then disabled the plugin.


Then on the 12th of March 2013 i received a email from mozilla security team regarding a $500 reward for the vulnerability i found.

I then emailed the vendor with a report of the vulnerability. They fixed the vulnerability and released a patch, i provided mozilla security team with the patch and it was then implemented on blog.mozilla.org -  10 days later i received my $500 check in the post.

Tuesday, 7 May 2013

Muslim Hacker Targets Anon Member for #OpUSA - [News]

Chechen Muslim hacker with the alias  "Maybezero" has released dox on anonymous member "TruthIzSexy" under the banner #OpUSA

In a direct message to illSecure, the hacker said the anon was targeted for her hatred towards Islamic jihad (holy struggle) and for supporting America and also for trying to discredit #OpUSA, he then went onto to say that "she is a hardcore Christian who attacks women that convert to islam" and one of them happend to be his friend. He also added that "just because your in anonymous does not mean you are anonymous, fuck anonymous".

The hacker posted the dox on pastebin.com - it can be found here:
http://pastebin.com/raw.php?i=xndFC2AN

When asked if he would like to leave a final comment he simply said: "FREE JAHAR"

10000 American Credit Cards Leaked By BilalSbXtra & Dr.SaMiM_008 - #OpUSA - [News]

Its not only American websites that are getting targeted under #OpUSA, as expected hackers have now leaked 10000 credit cards belonging to American sites.

The hack and leak was done by AnonGhost Members BilalSbXtra & Dr.SaMiM_008 who were both active during #OpIsrael and are also known for their mass defacement's. The hackers leaked the details on pastebin.com, the leak can be found here:
http://pastebin.com/DM57vJFg

After looking at the leaked details we believe they was obtained from a database of an online shop that the hackers hacked in to as some of the credit cards have expired, nevertheless the ones that haven't expired would have to be cancelled, refunded and then re-issued which itself is a costly process for American banks.

#OpUSA - Hacktivists Start Attacks On United States Of America - [News]

Various Hacktivists have launched their attacks against American websites under the banner #OpUSA, the hackers say they are doing these attacks because of Americas war crimes in country's like Afghanistan, Iraq, Pakistan and Yemen. The hackers also said that the attacks are being done in solidarity with the innocent victims of American drone attacks especially the innocent children.



60 American Websites Hacked By AnonGhost:
http://pastebin.com/yb10T2q2

American Agent From The United States House of Representatives Hacked by Mauritania Attacker:
http://pastie.org/7812604

Honolulu Police Department Hacked by X-Blackerz:
http://pastebin.com/QFjuEbNR

American WebMail Server Hacked - 800 Emails Leaked by Mauritania Attacker:
http://www.anonpaste.me/anonpaste2/index.php?cc2f7dd200b251a1#JIrXSFv8CCo5q2sHQKg653e/+runUxDqQLeiZOqa1Nk=

5000 Facebook Accounts Hacked By Mauritania Attacker:
http://pastebin.com/NRvmnYFe

5 American Websites Hacked By X-Blackerz:
http://pastie.org/7812607


-- illSecure.com will be covering #OpUSA with exclusive news, stay tuned.