Hacker Stole Sensitive Information From FBI’s Database
Due to a cybersecurity breach in one of the FBIâs systems, the personal information of hundreds of âhighly publicizedâ people is now available for purchase on the dark web. By the time the hack was uncovered on Tuesday, the intruders had already set a $50,000 premium on the hacked data.
The cybersecurity media site KrebsOnSecurity first noticed the theft after coming across a thread about it on the underground hacker forum Breached. According to the advertisement, the FBIâs InfraGard may be yours for the âbeginningâ fee of fifty thousand dollars. The original commenter, who only identifies by USDoD, curiously states, âThis will only be sold once and once only.â The way I live my life is how I prefer to run my company.
Representatives of the FBI may network with âcorporate executives, businessmen, attorneys, uniformed officers, federal and military figures, IT experts, academics as well as state and local law officialsâ via the InfraGard platform. As stated on their webpage, Infragard is primarily utilized for disseminating knowledge and educating the public about new security concerns. You need an Infragard profile to work together, and since the FBI isnât very good at protecting them, theyâre vulnerable to abuse.
Table of contents
The hacker Employed a Python Code
It would seem that InfraGardâs validation standards for user profile applications are lax. The âUSDoDâ allegedly applied for an account using the information of a genuine financial CEO and received permission in under a month. After gaining access, the attacker deployed a Python code to InfraGardâs API and stole the contact details of 87,000 individuals. The Entrepreneur whose information was taken claims the FBI never approached him before the hack, suggesting that the InfraGard portalâs claims of exclusivity mask very low verification procedures.
With certain individualsâ email accounts, Social Security numbers, as well as birth information absent from the list, USDoD acknowledges that their pricing may seem exorbitant. In a follow-up remark on the first post, the $50k list price was only a starting point for discussions and not a firm offer. Pompompurin, the operator of Breach, has been tasked with facilitating the sale, the US Department of Defense has said.
This week, the FBI acknowledged the intrusion but has not provided any more details beyond claiming the incident is âongoing.â
Â

