Play By Play Of How HBGary Federal Tried To Expose Anonymous... And Got Hacked Instead
from the tick-tock dept
Nate Anderson has put together an excellent play-by-play of the whole HBGary Federal fiasco, mainly by going through the emails that Anonymous leaked. It's well worth reading the whole thing, so I won't repeat the key points here, but what's really fascinating is the back-and-forth between HBGary Federal CEO Aaron Barr and others at HBGary Federal, including his main technical guy, who clearly thinks Barr's methodology is worthless. It becomes clear that the technical guy sympathizes with Anonymous and Wikileaks and Barr even calls him on this point (admitting that he too sort of feels that way, but he recognizes this as a PR opportunity). The coder at one point mocks the whole plan as:Step 1 : Gather all the dataYup. That's a coder alright. Then there's this fascinating argument where the coder points out that the statistical basis for Barr's claims (basically analyzing who people's friends on Facebook are is about as accurate as your daily horoscope:
Step 2 : ???
Step 3 : Profit
Barr: [I want to] check a persons friends list against the people that have liked or joined a particular group.That same coder later warned another company exec saying that "I feel his arrogance is catching up to him again and that has never ended well...for any of us." Fascinating read all around.
Coder: No it won't. It will tell you how mindless their friends are at clicking stupid shit that comes up on a friends page. especially when they first join facebook.
Barr: What? Yes it will. I am running throug analysis on the anonymous group right now and it definately would.
Coder: You keep assuming you're right, and basing that assumption off of guilt by association.
Barr: Noooo....its about probabilty based on frequency...c'mon ur way smarter at math than me.
Coder: Right, which is why i know your numbers are too small to draw the conclusion but you don't want to accept it. Your probability based on frequency right now is a gut feeling. Gut feelings are usually wrong.
Barr: [redacted]
Coder: [some information redacted] Yeah, your gut feelings are awesome! Plus, scientifically proven that gut feelings are wrong by real scientist types.
Barr: [some information redacted] On the gut feeling thing...dude I don't just go by gut feeling...I spend hours doing analysis and come to conclusions that I know can be automated...so put the taco down and get to work!
Coder: I'm not doubting that you're doing analysis. I'm doubting that statistically that analysis has any mathematical weight to back it. I put it at less than .1% chance that it's right. You're still working off of the idea that the data is accurate. mmmm…..taco!
Thank you for reading this Techdirt post. With so many things competing for everyone’s attention these days, we really appreciate you giving us your time. We work hard every day to put quality content out there for our community.
Techdirt is one of the few remaining truly independent media outlets. We do not have a giant corporation behind us, and we rely heavily on our community to support us, in an age when advertisers are increasingly uninterested in sponsoring small, independent sites — especially a site like ours that is unwilling to pull punches in its reporting and analysis.
While other websites have resorted to paywalls, registration requirements, and increasingly annoying/intrusive advertising, we have always kept Techdirt open and available to anyone. But in order to continue doing so, we need your support. We offer a variety of ways for our readers to support us, from direct donations to special subscriptions and cool merchandise — and every little bit helps. Thank you.
–The Techdirt Team
Filed Under: anonymous, hacking
Companies: hbgary federal
Reader Comments
Subscribe: RSS
View by: Time | Thread
The chat logs (linked in the article) of the parent company's CEO visiting an IRC channel to negotiate with Anonymous are insane (and pretty fascinating) - they are really long but search for the name "Penny" to find when she arrives.
[ link to this | view in thread ]
Re:
But don't expect to reason with them.
[ link to this | view in thread ]
[ link to this | view in thread ]
Jailtime.
Isn't making fake Facebook accounts a felony?
[ link to this | view in thread ]
Re:
[ link to this | view in thread ]
Re:
[ link to this | view in thread ]
Re: Jailtime.
[ link to this | view in thread ]
Re: Re:
[ link to this | view in thread ]
Re: Re: Jailtime.
[ link to this | view in thread ]
Barr: Noooo....its about probabilty based on frequency...c'mon ur way smarter at math than me.
Coder: Right, which is why i know your numbers are too small to draw the conclusion but you don't want to accept it. Your probability based on frequency right now is a gut feeling. Gut feelings are usually wrong.
Barr: [redacted]
This is why various elements of the corpocracy keep making bad decisions. They're all run by pointy-haired bosses straight out of Dilbert. From record label CEOs, to the State Department, to any number of others, the fact of the matter is most of the world's problems are ultimately caused by an elite core of bumbling idiots that have somehow convinced themselves that they know exactly what they're doing, when in reality they have no idea.
[ link to this | view in thread ]
Re: Re:
HBGary seems to be trying very hard to separate itself from Aaron Barr's actions despite having an investment in HBGary Federal. As more email messages are pointed out it looks like the leadership of HBGary was well aware, and supportive, of what Aaron and HBGary Federal were doing.
[ link to this | view in thread ]
Re: Re: Re: Jailtime.
[ link to this | view in thread ]
Re: Re: Re: Jailtime.
http://www.huffingtonpost.com/2010/09/29/identity-online_n_744091.html
[ link to this | view in thread ]
Re: Re:
Hacks? No problem, you are part of anonops!
It's pathetic to see people supporting their crap. The ends do not justify the means on either side of this situation.
[ link to this | view in thread ]
Re: Re: Re:
[ link to this | view in thread ]
Re: Re: Re:
[ link to this | view in thread ]
Re: Re: Re:
Also I just remembered that the U.S. government would disagree with you.
- Pornoscans and groping.
- Rendition.
- Prisoner camps outside U.S. jurisdiction, with no law to supervise what goes on.
- Spying authorized by the government with pardons after they get caught doing something wrong for everybody.
- Enactment of laws that erode civil liberties.
Yep, that is pathetic I know.
[ link to this | view in thread ]
Re:
"elite core of bumbling idiots"
The next wave of international warfare could be brought on by the preemptive use of these fools on countries we want to fail. Hold on a sec... Egypt makes a lot more sense now.
[ link to this | view in thread ]
Re: Re: Re: Re:
Pot and kettle. The ends don't justify the means on either side.
[ link to this | view in thread ]
Re:
[ link to this | view in thread ]
Re: Re: Re:
http://en.wikipedia.org/wiki/List_of_federal_political_scandals_in_the_United_States
Now that is pathetic.
[ link to this | view in thread ]
Re: Re:
[ link to this | view in thread ]
Re: Re: Re: Re:
[ link to this | view in thread ]
Re: Re: Re: Re: Re:
How wrong Anonymous was for hacking does not change how wrong Barr was; he may almost have gotten innocent people added to some terrorist watch list.
What should they do when someone is attacking them with unethical means? They chose to fight fire and fire, and it worked.
[ link to this | view in thread ]
Re: Re: Re: Re: Jailtime.
http://www.zdnet.com/blog/perlow/analysis-californias-online-impersonation-law-effective-ja nuary-1/15322
by the noted sex columnist Violet Blue. (yeah, I was surprised too, but it is a good analysis).
[ link to this | view in thread ]
Re: Re: Re: Re: Re:
[ link to this | view in thread ]
Does she wants to get hacked even more?
Oh noes Penny!
[ link to this | view in thread ]
Re:
Oh f. the internet is here!
[ link to this | view in thread ]
Re: Re:
Don't violate the "laws of the Internet" and you'll never come in their crosshair.
> Never beg Anonymous to stop because Anonymous is irrational
I think they are quite rational. You don't need to beg, you just need to cease and desist with whatever immoral activity you are engaged in. Bet you any attack would stop immediately.
[ link to this | view in thread ]
Re: Re:
[ link to this | view in thread ]
Re: Re: Re: Re: Re: Re:
[ link to this | view in thread ]
whats the difference between todays anon type groups who activly break laws in order to make a political statement and sayyyyyy the symbionese liberation army who actively broke laws to make political statements
or the black panther party who actively broke laws to make political statements.
or students for a democratic society who broke laws to make a political statement
or those civil rights folks who routinely broke laws in the south order to make political statements.
if your anser to that is "they are all lawbreakers and need to all be rounded up and jailed" you fail miserably at historical interpretation
[ link to this | view in thread ]
Re: Re: Re: Re: Re:
[ link to this | view in thread ]
Re: Re: Re: Re: Jailtime.
[ link to this | view in thread ]
Re:
[ link to this | view in thread ]
Re:
[ link to this | view in thread ]
Thank you
[ link to this | view in thread ]
Re: Re:
[ link to this | view in thread ]
Re: Re:
[ link to this | view in thread ]
[ link to this | view in thread ]
Re:
[ link to this | view in thread ]
Fraud "security expert"
Glad to see Anonymous out there exposing these right wing Christian traitors and crooks and defending Democracy. Anonymous is win. Barr is fraud.
[ link to this | view in thread ]
Re: Re:
The founding fathers where traitors.
The American Unions where based on breaking the law and to this day they are know for their dirty tactics, yet they enacted a lot of changes.
About the back of the bus thing, it was not viewed like that at the time, I don't see how that is different from the current situation.
[ link to this | view in thread ]
Barr should open a cat orphanage or something.
[ link to this | view in thread ]
Re: Re: Re: Re: Re:
Ends, meet justification. I'm sure you two can get along.
[ link to this | view in thread ]
Re: Re: Re:
[ link to this | view in thread ]
Re: Re: Re: Re: Re: Re: Re:
[ link to this | view in thread ]
In order for his "theory" on social networking analysis to "work" he is assuming that everybody with FB and twitter accounts, and those who show up in chat rooms, or post to discussion groups or blogs TELL THE TRUTH about themselves.
It's a testament to Aaron's total lack of self-awareness (and thus the inability to draw fundamental conclusions from that) that he LIES online and doesn't recognize that others can do the same. How does he know that the twitter/FB profiles of his "targets" aren't as phony as his stuff was?
The stupidity is breathtaking. I'd say that Anonymous, in the long run, probably SAVED the company a lot of money over the long haul by outing the doofus NOW before he got the company in hot water with actual clients buying into his hare-brained scheme.
[ link to this | view in thread ]
Re: Re: Re:
See http://www.techdirt.com/articles/20110211/15280613062/public-citizen-eff-file-sanctions-against-anti -p2p-lawyer-evan-stone.shtml or http://www.techdirt.com/articles/20110211/11342913057/wikileaks-wasnt-only-operation-hbgary-federal- palantir-berico-planned-to-defraud.shtml or http://www.techdirt.com/articles/20110211/01091113054/us-chamber-commerce-wants-more-censorship-more -ip-protectionism.shtml
And that's just from halfway down the techdirt front page.
Combine that with warrantless wiretaps, extraordinary rendition, patriot act, gitmo torture, etc... and not even the gov't is "playing by the rules".
Anonymous may be online thugs, but to claim they're the only ones breaking the rules is dellusional.
[ link to this | view in thread ]
Re:
Later, when Barr talks about some “advanced analytical techniques” he’s been pondering for use on the Anonymous data, the coder replies with apparent frustration, “You keep saying things about statistics and analytics but you haven’t given me one algorithm or SQL query statement.”
Barr was claiming analysis without any analytics. That is fail, and going around spouting you've identified Anonymous members based on that is irresponsible and stupid. The guy walked into Anon's reaction, epic duh.
[ link to this | view in thread ]
Re:
[ link to this | view in thread ]
Accept / Except
So what grade did this halfwit drop out of? It's "except", not "accept", dink.
[ link to this | view in thread ]
Re: Re: Re:
[ link to this | view in thread ]
Not.
I'm sure this will all end up being nothing.
Not.
I'm sure no one will end up in jail.
Not.
Sleep well.
[ link to this | view in thread ]
Re: Fraud "security expert"
[ link to this | view in thread ]
Re: Re: Re: Jailtime.
[ link to this | view in thread ]
Re: Re: Re: Re: Re:
[ link to this | view in thread ]
Re: Re:
[ link to this | view in thread ]
Re: Re: Re: Re:
[ link to this | view in thread ]
Re: Re: Re:
You probably didn't read the IRC chat or are equally clueless about how the internet actually works. If you ignore all the lolz and fcks you will see that the "children" were much more rational and realistic. They had to repeat several times that there is not way to stop the leak that is already on torrents. It's just how it works. No amount of C&D can stop what is already in torrents.
There was still a time to stop leaking Greg's emails and the "children" put forth 2 conditions for this -- (1) fire Aaron Barr or if it is not possible, pull out investment from HBGary Federal and (2) donate it to some charity. Penny refused to accept any of these conditions and defended Mr. Barr by saying that they have found this rare talent for this job and it is just a one time mistake.
The rest is now the history. All emails got released and now the whole world is shocked about utter disregard towards civil liberties by so-called security firms. Regardless what the law says, they are morally more guilty than the hackers who stole the info.
[ link to this | view in thread ]