The hacker collective Anonymous is taking credit for a massive cyber-attack on the federal government that made multiple government websites go dark this afternoon — apparently in protest against the Harper government’s controversial security legislation, C-51.
“A bill which is a clear violation of the Universal Declaration of Human Rights, as well as removing our legal protections enshrined in the Magna Carta for 800 years,” reads the script for an Anonymous video posted on YouTube. “Perhaps it was fate that the day the Magna Carta arrived in our country to go on display to the populace that our corrupt government was symbolically pissing upon it and us all.”
The video goes on to say that C-51 targets minorities and forces Canadians to trade privacy for security.
“Today, Anons risked their freedoms for you. We now ask that you follow suit. Stand for your rights, take to the streets and protest this 20th of June,” says the narrator.
“We will not allow our freedoms to be stripped one by one.”
Almost immediately after the hack, one Twitter user who calls himself Blakeando10 and is pictured wearing a Guy Fawkes mask — an image commonly associated with hacking and Anonymous — took credit. His tweet — “It was your move Senators, now it’s ours … we’re just getting started”, using the hashtags #RejectFear and #StopC51.
Public Safety Minister Steven Blaney insisted that no personal or sensitive government data was compromised in the attack, and vowed police will find and prosecute those responsible.
Treasury Board President Tony Clement tweeted just before the video was released, confirming that Government of Canada’s servers had been cyber-attacked.
By 3 p.m. ET, most of the websites were back online, and Shared Services still hadn’t delivered a statement to explain what had happened and detail the damage done.
By 4:59, the Acting Chief Information Officer for the Treasury Board of Canada sent out a brief message reading: “The Government of Canada websites were affected by a denial of service attack, impacting e-mail, internet access and information technology assets.
“We are working on restoring services as soon as possible. We continue to be vigilant in monitoring any potential vulnerabilities.”
Ray Boisvert, the former assistant director of intelligence at CSIS, says the attack was meant to communicate a message and that there isn’t much that could have been done to prevent it, given the nature of government Internet sites.
“At the end of the day, these open government networks are vulnerable to these kind of things,” he said. “They’re very accessible and they let in a lot of traffic because they have to manage large volumes … companies can afford to be a bit more selective about which emails get through their servers. It’s more difficult for governments.”
Boisvert said this style of attack doesn’t suggest a foreign state was the culprit.
“We’re in the age of the democratization of power. Small actors can do big things. The state no longer holds monopoly on the use of force,” he said.
Liberal defence critic Joyce Murray said Wednesday’s cyber attack should be a wake-up call for the Canadian government. She said experts have warned MPs that Canada isn’t doing enough to protect against cyber attacks.
Today’s attack came just days after the House of Commons warned employees on Friday that they had been hit with a cyber-attack. The House of Commons later insisted that no data was stolen.
Ottawa-based hacker Nadeem Douba, who has advised governments on security issues, told iPolitics the hack was not very sophisticated.
“A denial of service attack is pretty easy to execute with very little financial backing,” Douba said in an email. “I’ve seen distributed denial of service services being sold on the black market for as low as $100 per day. These services can be easily bought over IRC or some websites on the dark web. Nothing special here so far.”
“It definitely is more about optics than anything else,” he added. “If we were looking at a denial of service attack similar in nature to StuxNet, where critical infrastructure was impacted, then I would consider it more of a security threat. The same could be said if the attack were able to create any kind of political unrest or economic instability.
“However, as far as we know now, this attack is more of a nuisance than anything else.”
More to come …
Original Article
Source: ipolitics.ca/
Author: Kristie Smith
“A bill which is a clear violation of the Universal Declaration of Human Rights, as well as removing our legal protections enshrined in the Magna Carta for 800 years,” reads the script for an Anonymous video posted on YouTube. “Perhaps it was fate that the day the Magna Carta arrived in our country to go on display to the populace that our corrupt government was symbolically pissing upon it and us all.”
The video goes on to say that C-51 targets minorities and forces Canadians to trade privacy for security.
“Today, Anons risked their freedoms for you. We now ask that you follow suit. Stand for your rights, take to the streets and protest this 20th of June,” says the narrator.
“We will not allow our freedoms to be stripped one by one.”
Almost immediately after the hack, one Twitter user who calls himself Blakeando10 and is pictured wearing a Guy Fawkes mask — an image commonly associated with hacking and Anonymous — took credit. His tweet — “It was your move Senators, now it’s ours … we’re just getting started”, using the hashtags #RejectFear and #StopC51.
Public Safety Minister Steven Blaney insisted that no personal or sensitive government data was compromised in the attack, and vowed police will find and prosecute those responsible.
Treasury Board President Tony Clement tweeted just before the video was released, confirming that Government of Canada’s servers had been cyber-attacked.
By 3 p.m. ET, most of the websites were back online, and Shared Services still hadn’t delivered a statement to explain what had happened and detail the damage done.
By 4:59, the Acting Chief Information Officer for the Treasury Board of Canada sent out a brief message reading: “The Government of Canada websites were affected by a denial of service attack, impacting e-mail, internet access and information technology assets.
“We are working on restoring services as soon as possible. We continue to be vigilant in monitoring any potential vulnerabilities.”
Ray Boisvert, the former assistant director of intelligence at CSIS, says the attack was meant to communicate a message and that there isn’t much that could have been done to prevent it, given the nature of government Internet sites.
“At the end of the day, these open government networks are vulnerable to these kind of things,” he said. “They’re very accessible and they let in a lot of traffic because they have to manage large volumes … companies can afford to be a bit more selective about which emails get through their servers. It’s more difficult for governments.”
Boisvert said this style of attack doesn’t suggest a foreign state was the culprit.
“We’re in the age of the democratization of power. Small actors can do big things. The state no longer holds monopoly on the use of force,” he said.
Liberal defence critic Joyce Murray said Wednesday’s cyber attack should be a wake-up call for the Canadian government. She said experts have warned MPs that Canada isn’t doing enough to protect against cyber attacks.
Today’s attack came just days after the House of Commons warned employees on Friday that they had been hit with a cyber-attack. The House of Commons later insisted that no data was stolen.
Ottawa-based hacker Nadeem Douba, who has advised governments on security issues, told iPolitics the hack was not very sophisticated.
“A denial of service attack is pretty easy to execute with very little financial backing,” Douba said in an email. “I’ve seen distributed denial of service services being sold on the black market for as low as $100 per day. These services can be easily bought over IRC or some websites on the dark web. Nothing special here so far.”
“It definitely is more about optics than anything else,” he added. “If we were looking at a denial of service attack similar in nature to StuxNet, where critical infrastructure was impacted, then I would consider it more of a security threat. The same could be said if the attack were able to create any kind of political unrest or economic instability.
“However, as far as we know now, this attack is more of a nuisance than anything else.”
More to come …
Original Article
Source: ipolitics.ca/
Author: Kristie Smith
No comments:
Post a Comment