CyberZeist , the hacker who has recently left the UGNazi collective, has leaked a few hundred login credentials that he allegedly obtained by launching a spear phishing attack on US federal employees. “This federal account release is not a result of some fancy and HiFi hack, it’s a result of a common flaw in human factor – Trust. These all federal accounts were jacked by using a simple method known as 'Spear Phishing'! These accounts are just a half part of a forthcoming #gov #leak,” he wrote next to the data dump. The leak contains over 250 record sets comprising email addresses and clear text passwords. According to the hacker, he obtained the credentials by spoofing a login portal. “They have a login portal at [.mil domain] (intranet only). Their SSLv2 certificate can be spoofed easily so I replaced the original certificate with my fake one so that users can’t make out that they are logging at a fake portal,” the hacker told Softpedia. “In my f...
online news about internet, computers, software, hardware, hackers and hacks, games, music and more...