Showing posts with label RCMP. Show all posts
Showing posts with label RCMP. Show all posts

Tuesday, April 01, 2008

Royal Canadian Mounted Police computers turned into spam spewing zombies by employee!

While the fact that the RCMP (Royal Canadian Mounted Police) computers were exposed to badware because an employee was doing some "unauthorized surfing" makes good press -- it highlights what can happen to any business, or government system when human beings use them to go to the murkier waters of the Internet.

Trust me, the RCMP isn't the only organization that has had an employee compromise their system in this manner.

Robert Koopmans, Kamloops Daily News (courtesy of the Vancouver Sun) reports:

The security of RCMP computers used to process evidence for a looming multimillion-dollar trial was breached from outside the agency, exposing sensitive files to the possibility of theft and tampering, Crown documents reveal.

The police computers were also used to view pornography and download music and illegal software, a letter from senior Kamloops Crown prosecutor Don Mann states.
Apparently, these computers were also turned into spam spewing zombies, or became part of a botnet as a result of some of the malware downloaded on them. Botnets are "a jargon term for a collection of software robots, or bots, which run autonomously and automatically. They run on groups of zombie computers controlled remotely," according to Wikipedia.

More from the article in the Vancouver Sun:

The Crown document reveals the computers were hooked to the Internet in October 2003 and remained connected until May 2005, when Shaw notified the RCMP that the police agency's computers were spamming e-mail to the Internet. The breach was discovered and the connection to the Internet shut down.

Since spam is the preferred vehicle of Internet scammers, it's possible the computers were "inadvertantly" being used to commit crimes, themselves.

There are many examples of employees downloading undesirable items on a system, but here is another example of one, where a Japanese law enforcement type essentially did the same thing.

If anyone is interested in the dangers employees can pose to a system ZDNet did an excellent white paper on this subject:

The Top Six Risks of Employee Internet Use and How to Stop Them

Full story on this recent matter published in the Vancouver Sun, here.

Monday, June 12, 2006

Are Terrorists Probing Our Computer Systems?

I read a pretty alarming article by Barton Gellman of the Washington Post, stating that terrorists might already be planning cyber-attacks:

"Late last fall, Detective Chris Hsiung of the Mountain View, Calif., police department began investigating a suspicious pattern of surveillance against Silicon Valley computers. From the Middle East and South Asia, unknown browsers were exploring the digital systems used to manage Bay Area utilities and government offices. Hsiung, a specialist in high-technology crime, alerted the FBI's San Francisco computer intrusion squad."

"Working with experts at the Lawrence Livermore National Laboratory, the FBI traced trails of a broader reconnaissance. A forensic summary of the investigation, prepared in the Defense Department, said the bureau found "multiple casings of sites" nationwide. Routed through telecommunications switches in Saudi Arabia, Indonesia and Pakistan, the visitors studied emergency telephone systems, electrical generation and transmission, water storage and distribution, nuclear power plants and gas facilities."

The article also reports another issue, which is a big problem:

"New public-private partnerships are helping, but the government case remains a tough sell. Alan Paller, director of research at the SANS Institute in Bethesda, said not even banks and brokerages, considered the most security-conscious businesses, tell the government when their systems are attacked. Sources said the government did not learn crucial details about September's Nimda worm, which caused an estimated $ 530 million in damage, until the stricken companies began firing their security executives."

"Experts said public companies worry about the loss of customer confidence and the legal liability to shareholders or security vendors when they report flaws."

For the full story, link here.

If the observations in this article are accurate, we can no longer afford to "keep the lid" on cyber-attacks in the interest of protecting bottom lines. Being worried about consumer confidence and legal liability should take second place to the safety and welfare of all concerned.

Here are some previous posts, I written on this subject:

Mounties Lack Resources to Fight Organized Crime and Cite Ties to Terrorism

Do Financial Crimes and Internet Fraud Fund Terrorism

Sunday, May 14, 2006

Mounties Lack Resources to Fight Organized Crime and Cite Ties to Terrorism

The Canadian Press is reporting:

The head of the RCMP says his agency is increasingly concerned about evidence that organized crime groups are helping to fund terrorist gangs.

Giuliano Zaccardelli's observations Monday may come as a shock to some, but not to those who monitor trends in law enforcement.
Almost every conceivable type of organized crime helps to finance terrorist groups whose chief goal is killing Westerners, said one expert in the field.
That can mean the proceeds from hashish baggies being peddled on street corners, cocaine trafficking, prostitution, pick-pocketing, knock-off designer items and credit card fraud.
Zaccardelli wasn't quite that specific during his appearance before a Senate committee Monday. But he said the evidence is clear, and continually mounting.
Here are some specific examples backing up this claim made by John Thompson of the Mackenzie Institute, which is a Toronto Think Group:
Almost all terrorist groups around the world use organized crime to pay for their operations.
Al-Qaeda and Osama bin Laden are no different.
The bombers who blew up Madrid's rail system in 2004, injuring 192 people and wounded 2,050, financed their operation by selling hashish.
Hashish from the Middle East, heroin from...Afghanistan and Pakistan, cocaine, it all at some point goes through the hands of terrorists on its way down to the street.
The basic training for al-Qaeda recruits includes at least four major components: handling firearms, making bombs, ideological reinforcement, and supporting yourself through credit-card fraud.
He points to ex-Montrealer Ahmed Ressam, who was convicted of trying to blow up Los Angeles airport on New Year's Eve 1999.
Ressam also planned to set up a side business to help fund his terrorist jihad.
"He was going to try and set up a shop so they could access people's credit cards and start counterfeiting them.''

Link to full story, here.

The saddest part of all this is that the RCMP, who are known for "getting their man" are admitting they only have the resources to address about one-third of this activity.

For another article by the National Post on current RCMP resources and their border problem, link here.

Perhaps, we in the United States should take notice - while we focus on the border to the South - here is another reason, "We Can No Longer Allow Criminals to Control Our Borders."

It seems the Canadians are coming to the same conclusion.

Here is a previous post, I did on this problem:

Do Financial Crimes and Internet Fraud Fund Terrorism