CERT Pakistan helps prevent attacks on one of UK’s biggest auto trading company

Autotrader.co.uk experienced Distributed Denial of Service attacks from IP’s originating from multiple countries. The message on the Autotrader blog reads:

“Since midday on Monday 18th April, the Autotrader.co.uk website has been subject to a malicious third-party attack which has prevented normal operational services from being delivered. Anyone visiting the site during this attack would have found that Autotrader.co.uk was either intermittently unavailable or extremely slow.

The technical support team is working around the clock to restore services and minimise the impact of similar attacks in the future. Some visitors may still experience difficulty accessing the site today while we resolve the remaining problems.

However, it is important to note that we have no evidence to suggest that any customer data has been lost as a result of the attack and there are no known risks to consumers visiting the site during this time.

Apologies for any inconvenience caused, we’d like to reassure all our customers that we are working very hard to resolve this.”

CERT Pakistan assisted Autotrader in blocking bots from Pakistan. We are also investigating the origin of bots.

Posted in News | Leave a comment

CERT Pakistan assists NTC in stopping Denial of Service Attacks

Many big corporations and institutes have recently experienced Denial of Service attacks, and the recent hits on National Telecommunication Corporation (NTC) are just another example of how the IT security can be breached in today’s digital world.

CERT Pakistan was contacted to investigate the situation at NTC and prevent massive DoS attack on NTC servers. Initial investigation by CERT Pakistan team showed a botnet attack. In this attack many machines unintentionally participate in an attack against a single host target. Malicious traffic is disguised as legitimate. This traffic can pass firewalls which normally filter out illegal traffic.

CERT Pakistan immediately deployed its resources to fix the problem and within a few hours, successfully averted the attack as well as restored the systems to their normal functions.

Posted in Uncategorized | Leave a comment

NUST teams up with CERT Pakistan to start its operations

We have got approval from NUST management to start CERT Pakistan operations at School of Electrical Engineering and Computer Science (NUST). Initially we’ll operate from “NUST – Tranchulas Center for Cyber Security” which is a security research lab sponsored by Tranchulas in SEECS-NUST. Tranchulas will invest initially to engage and train resources who can meet objectives of CERT Pakistan which are:

- Monitor threats
- Incident Response and support
- Security Awareness
- Industrial Linkages
- Coordination with other CERTs and alliances with them

This initiative will remain non-profit. However we aim to make CERT Pakistan self funded and cover its operating cost through member subscriptions and an annual conference.

Posted in Uncategorized | Leave a comment

CERT Pakistan covered by BBC Urdu.

The Computer Emergency Response team (CERT) Pakistan, setup by Tranchulas Ltd. was recently covered by BBC Urdu, a renowned news website, which highlighted the role of CERT Pakistan in the wake of the recent attacks on Pakistan’s government websites. The report discussed the importance of getting the government cooperation for teams, such as CERT Pakistan, which are fighting online crimes and regulating the affected websites. BBC Urdu reported that Tranchulas Ltd. CEO Mr. Zubair Khan talked about how the level of awareness of such hackings is increasing which is a good thing as businesses today are willing to step up and protect their data online.

(http://www.bbc.co.uk/urdu/science/2010/12/101207_pak_cyber_attack_rza.shtml?goback=.gmp_3709060.gde_3709060_member_37187271)

Posted in Uncategorized | Leave a comment

Hacker of President’s website nabbed

Source: Geo

A man accused of hacking website of President Asif Ali Zardari has been arrested from an area of Rawalpindi, Geo News reported Monday.

The Cyber Crime Wing of Federal Investigation Agency (FIA) arrested the man identified as Shahbaz from Ghaip area of Rawalpindi.

The accused, using his email address, succeeded in hacking the President’s website www.presidentofpakistan.com.pk.

The FIA lodged a case against the accused under Cyber Crime Act and presented it before a local court which gave him in remand to FIA Cyber Crime Cell for three days.

Posted in Uncategorized | Leave a comment

India files charges in hacker attack

Source : UPI.com

India says it issued arrest warrants for suspects allegedly linked to a computer hacker crew known as the Pakistan Cyber Army.

India’s Central Bureau of Investigation said the charges stemmed from a hacker attack on its own Web site and were filed under the Information Technology Act.

“Efforts are under way to restore the Web site with the help of National Informatics Center and the CBI cybersecurity experts,” an official of the CBI told Press Trust of India.

PTI said the Pakistan Cyber Army posted a warning against retaliation by the “Indian Cyber Army” and chided India for its inadequate Internet filters.

Posted in Uncategorized | Leave a comment

Cyber war: Indian hackers take down OGRA site

Source: www.tribune.com.pk

A war between Indian and Pakistani cyber hackers has erupted. Both sides are hacking each other’s websites. These attacks began with an Indian Cyber Army (ICA) attack — cited as ‘revenge for the 26/11 attack — on Pakistani government websites.

A group of Pakistani hackers, identifying themselves as the Pakistan Cyber Army (PCA), retaliated not out of  any ideological motivation but simply revenge.

The two sides have been retaliating since then, with dangerous tit-for-tat attacks. Sensitive websites, including government owned ones, on both sides of the cyber war have already been put out of commission. And the ongoing cyber war threatens to disable even more.

Important casualties of this cyber war include the website of the Indian Central Bureau of Investigations (CBI) and the Pakistan’s Oil and Gas Regulatory Authority (Ogra) and the website of the Jadavpur University Department of Economics.

Continue reading

Posted in News | Leave a comment

Pakistani hackers shut India crime bureau website

Source: Reuters

A group calling itself the “Pakistani Cyber Army” has hacked into the website of India’s federal crime investigation bureau and left a warning message to Indian hackers, local media said Saturday.

The website of the Central Bureau of Investigation (CBI) was penetrated as nuclear-armed rivals India and Pakistan have made efforts to repair relations and build trust that evaporated after the 2008 Mumbai attacks.

The website has remained shut for the day after the action against it Friday night. The group has warned it would carry out the “mass defacement” of Indian websites, according to the Press Trust of India.

“CBI registered a case for the defacement of its website,” the agency said Saturday. “It has come to the notice of CBI that its official website was unauthorisedly accessed and defaced. A case has been registered in this connection.”

Continue reading

Posted in News | Leave a comment

Govt starts securing 36 hacked websites

Source: Dawn.com

The government started securing the attacked websites on Tuesday, shortly after a group of hackers calling themselves the ‘Indian Cyber Army’ gained root access to a main server hosting important Pakistani government websites.

In an email sent to media outlets earlier, the hackers’ group claimed to have gained root access to the server hosting the websites.

Meanwhile, a report said the government’s experts claimed the cyber attack had been successfully thwarted.

The group managed to hack at least 36 out of the 40 websites which are reportedly being hosted on the hacked server.

Continue reading

Posted in News | Leave a comment

Indian Cyber Army hacked 36 Pakistani Government Websites

Indian Cyber Army has launched a major attack against Pakistani government websites by hacking approx 36 websites in few hours. The enormous amount of sites being hacked were all hosted on same site and hence they all fell prey to one root level access exploit by the Indian Cyber Army.

Posted in News | Tagged , | Leave a comment