Section categories

Life [60]
lives
Hacker news [55]
file
Hack [30]
bug learn
Hacker's culture [26]
thoughts self learn
Hack Teams [1]
team
War#Peace [35]
army

Blog

Home » 2010 » May » 25 » Cyber war:Russia&Georgia
0:42 AM
Cyber war:Russia&Georgia

August 2008, the Russian lattice debate even Russia negative behavior, but a network adopted with military action network attack, the joint fuddy-duddy for Georgian caused more heavy blow, also make the importance of WangLaoZhan arrived from all levels. In early 2008, before the start of the debate on July 20, a group of data flow a weird Georgian government website. Company, is inside short time millions of access to, make supplication and Georgia government website instant paralyzed.
Experts once pointed out that this is the model of "SanBuShi refused to work" (DDoS attack). In the hacker blow, it is the most widely and useful one trick. Georgian President mikhail saakashvili's web page is multiple DDoS attack for 24 hours paralyzed. However, compared with Russia on August 8, the wide range of network of July the network can be a debate with makeup rehearsals. "," As Russia in the network, Georgia south ossetia. Large scope again.
Traffic, communication, media and bank website in attack, the government website system move also paralyzed. Even in the country, the bank website, Georgian President mikhail saakashvili photos and Hitler's dictator hanging photos of 20th century.
Georgia nearly impossible to outsiders, Georgia's communication is useful in Google had news department announced a popular blogs, Other, mikhail saakashvili also helpless to polish President lech kaczynski menace, will also published on the website lech kaczynski. Even WangLaoZhan encounter, Georgia is more of a physical threats and deterrence, but it is the universal in the first game and military action network of synchronous fuddy-duddy, has peculiar significance.
Wish:
Countries in the New York times reported on August 12, to wage war on Russia Georgia before July 20, Georgia social basic network from Russian hackers. Next, with nearly war synchronization, Georgia government website by the hacker attacks. Craig President mikhail saakashvili personal homepage, proclaiming that "was tampering with Hitler saakashvili some" common "photos are on the top of the page. Whomped August 10, the President of the site in Georgia from Georgia domestic server moved to America on the server. Russia has said the hackers from Georgia, the Russian news agency.
1 in case photograph Hitler's homepage
On July 20, the famous American network security company Arbor Networks of engineers, Joseph found a plunge Rio containing "victory + love + + Russia" bytes of data flow of information website. The Georgian government, In the next 10 hours, because the government web server receives millions of access request. This is a typical "distributed denial of service attack" (DDOS), is now often use and hard to prevent hackers attacks. In attack, usually use before hackers Trojan virus control platform ", "then the puppet machine manipulation of these" puppet machine to target attack, attack target for server on already-stretched paralyzed.
After that, the development of events in July of the hacker attacks may be a dress rehearsal. "," Russia and Georgia's army, network attack immediately after the fire. Internet technology experts say, it is the first known network attack with military action.
Allegedly, Georgia's TV media and communications system and the traffic system are attacked. August 8, the Russian army entered Georgian south ossetia, focus on tracking malicious network activity of volunteers group "shadow" found that hackers server to Georgia's offensive to the government's computer system. Craig President mikhail saakashvili personal homepage, was replaced in the website on a hacker carefully chosen ", "claiming" saakashvili and Hitler 'have similarities "photos.
British embassy spokesman in Georgia, August 11, British media interviews in Georgia's website comprehensive, said. Now already unable to visit Britain from the website, and Georgia defense ministry web presidential and Georgia, although sometimes can visit, but it is the result of Georgia reboot flow ".
2 case to polish President by government
August 8, the Russian army into the South American Atlanta, Georgia "tulip" server company CEO descent, jia's el nino kivlighan are holidays. Georgia Out of love for his country, jia assorted kivlighan open a computer, login to the site, Georgia, but found the latest majority government websites are hacker attacks. She immediately call for governments, offered to President mikhail saakashvili's web site and a famous TV, transferred her company's servers.
Many jia's President, said his company's website transferred to the server, her company's server was also hacker attacks.
"Shadow" group of volunteers server Stephen Ada says, issued an order and control the attack in the United States, the server in a few weeks before the start of the Internet connection. American computer security researchers to track, a name of malicious programs to Georgia botnets into the computer system of garbage data.
Whomped, President mikhail saakashvili to polish President lech, lech kaczynski "SOS", the latter agrees, Georgia's government will release posted on the website lech kaczynski. But British Corporation Renesys monitoring company Internet website, Georgia through the turks and connected to the Internet, and azerbaijan connected to the network go Russia azerbaijan, Russia and no obvious limit access to flow behavior ".
According to the current U.S. experts, a Russian commercial network called "(the organization may be RBN), the organizers of the network attack, this company has provided for Russian criminal network services. The news says that released the RBN Russian hackers basically control all the key server nodes to Georgia.
With the RBN tit-for-tat is called, a group of Germany, the international force hacker should help global "neutral network space". Germany, said they are helping hackers Georgian netizens through Germany telecom server, bypass Russia hackers blockade.
3 attack "is a masterpiece"?
For this network attack, Georgia, this is considered the "official" in Russia. Georgia's British embassy, the network attack that the cause is under investigation, although still cannot prove "is the ghost" in Russia, but due to network attack itself into south ossetia menglembu, have good reason to believe that "it is Russia organized aggression".
Besides time ", "Georgia match-mismatch still think, Russia has" network attack other precedent ". April 27, 2007, the former Soviet union regime, independent government ordered the demolished Estonia in the capital city of tallinn Soviet monuments, tallinn, liberate the riots, one is for three weeks in Russian hackers. The President and the parliament, Estonia, government official website each department website, parties, site, because of a sudden increase too crowded server "paralyzed. The guardian, a British newspaper ", the report said, "black" behind the attack is likely to Russia.
American researchers say, except that the Internet infrastructure Georgian limited paralysis, there is evidence that from August 8th, Russia telecom enterprise network traffic to redirect the ", "to Georgia to attack. A Russian site also provides for DDOS attack download software services.
Well-known Internet security experts, Israel computer emergency response team "safe" founder and YiRong dee that the attacks is probably nationalism, not the Russian government molecules. Although the DDOS attack by Georgia, but the previous attacks with no difference. Two countries, party supporters coincide to attack the other party is not very normal, the Russian official organization. YiRong says, the attacker is probably not organized some Russian, "the patriot is probably some children's masterpiece".
Also have researchers hold different opinions. The network security company "safety supervisor Dan Jackson thinks, this means and use tools, and after the attack RBN. "This is the indirect Russian military action? The answer is yes, but not only playing this small Russia."
The charges for Georgia in Russia, officials didn't respond.
4 Georgian hackers "countered."
While the Russian officials have declared on the network attack, but the player is still in Georgia network the "back" in Russia. There are signs that, in this conflict, both sides have shielded each other's behavior.
August 8, a Russian website announced the official website, south ossetia and Russia's official news agency EXinShe sites by DDOS attack. EXinShe reporter natali, los XieYe wrote in blogs, this is "very serious premeditation action, is part of the iw." But she did not reveal whether hackers from which country.
August 11 a.m., Russia's English TV channels "today" by the Russian hackers attacks on site, resource is locked, followed by technical fault. According to the TV channel information security experts, IP address, hacker attacks from the capital, tbilisi Georgia.
All information in this department WangLaoZhan "high attention." "Di" Clearing Packet is the specialized research network flow of non-profit organization, the technical director of research organization, bill wood cook said: "network attack, and price quite small needed to implement - just move finger can attack, so in modern warfare is often USES caterpillar. A tank of price war, launched the network enough to do not only fools!"
Georgia is the "Internet", who in the number of sites at the 73rd 234. So some experts think of Georgia, network attack, the influence of the limited losses "quite small", "case is not the only news posted on the Internet.
5 more terrible than hackers gangsta?
The "WangLaoZhan" let the world enjoy the hacker's superb again. In today's world, hackers have formed a unique "underground culture".
Compared with other countries, Russian computer education, Russian hackers have more "professional color". Russian President vladimir putin interior ministry official in the report on the network crime cases with said: "in the past, people are afraid of Russian gang, now replaced Russian hackers."
According to reports, the Russian hackers attacked motives are mostly "poorer". An American computer security experts say: "the computer network, the threat from any place, but the threat from Russia and financial motivation. In Russia, a computer hackers' wages' than university professor gao ten times even a few times."
As Israel computer emergency response team "safe" founder and YiRong dee, Russian hackers average age is a teenager from start against some enterprise network of computers, after holding company secrets to bargain, and help each other and offered to strengthen network security. Russia also specially made of hackers by pirated software for a living. A net name "ray" hackers from Microsoft has revealed he had a new companies such as copying software, one day can earn $200.
Russian hackers are not only has eyes money. In 1999, in protest against us-led NATO bombing of Yugoslavia, st. Petersburg hackers that NATO and the U.S. government for multiple sites. Then, the United States defense in st. Petersburg hackers organized attack. St. Petersburg hacker thus called "network Mafia".
In order to cope with WangLaoZhan ", "the network power is to strengthen the construction of the hacker forces. In May 2007, the United States air force of the first WangLaoZhan "headquarters" combat formation. According to the plan, the U.S. troops will WangLaoZhan ", "organized around by 2030. Then, "WangLaoZhan" forces will attack mission, ensure U.S. network in the future war has comprehensive information superiority.
Russia WangLaoZhan given ", "more important position, it is called" the sixth generation of war ". In Russia, "WangLaoZhan" has become a form of assault and played with the same effect, become commandos direct attacks on the enemy. According to reports, Russia is to develop "WangLaoZhan" weapons.
In addition, India, Japan, also have the characteristics of "net".
 
      2008年8月的俄格辩论中,纵然俄罗斯否定采纳了网络举动,但网络攻势与古板军事举动的联合,无疑对格鲁吉亚造成了更为沉重的打击,也使各国对网络战的重视水平到达了亘古未有的高度。早在辩论开始前,2008年7月20日,一组诡异的信息数据流向了格鲁吉亚政府网站。陪伴而来的,是短时间内以百万计的访问恳求汹涌而来,使得格鲁吉亚政府网站瞬间瘫痪。
     专家们立刻指出,这是典范的"散布式拒绝办事”(DDoS)打击。在黑客打击中,这是最为广泛而有用的伎俩之一。格鲁吉亚总统萨卡什维利的网页被多重DDoS打击而瘫痪长达24小时。然而,相比8月8日俄罗斯的大范围网络打击,7月的这次网络辩论只能算是一次"带妆彩排”。随着俄军进来南奥塞梯,格鲁吉亚的网络再次受到大范围打击。
     交通、通讯、媒体和银行的网站纷纷遇袭中招,政府网站体系更是全面瘫痪。乃至,在国度银行的网页上,格鲁吉亚总统萨卡什维利的照片和希特勒等20世纪独裁者的照片挂在一起。
     格鲁吉亚险些无法向外界有用发声,格鲁吉亚的交际部消息只好公告在Google下的一个大众博客页面上;别的,萨卡什维利还无奈向波兰总统卡钦斯基告急,将消息也公告在卡钦斯基的网页上。纵然格鲁吉亚遭遇的网络战,更多的是一种生理上的恐吓和威慑,但它是环球第一场与古板军事举动同步的网络打击,具有奇特的意义。

More: 
      国《纽约时报》8月12日报道,在俄罗斯向格鲁吉亚发动战争前的7月20日,格鲁吉亚社会基础网络便受到了俄罗斯黑客的攻击。接下来,几乎与战争同步,格鲁吉亚政府网站也遭到了黑客攻击。 格总统萨卡什维利的个人主页被人篡改,宣称"萨卡什维利与希特勒有某些‘共同之处’”的照片被放在首页上。迫于无奈,8月10日,格鲁吉亚方面把总统的网站从格鲁吉亚境内的服务器迁到了美国的服务器上。俄罗斯方面则表示,来自格鲁吉亚的黑客攻击了俄方的新闻机构。
1.希特勒照片被放在格总统网站首页
  7月20日,美国知名网络安全公司Arbor Networks的工程师约瑟•纳扎里奥发现,一条含有"胜利+爱+在+俄罗斯”字节信息的数据流向了格鲁吉亚政府网站。在接下来的10多个小时里,格政府网站的服务器因收到数以百万计的访问请求而濒临崩溃。这是典型的"分布式拒绝服务攻击”(DDOS),是目前黑客经常采用且难以防范的攻击手段。在发起攻击前,黑客通常先利用木马病毒控制多台"傀儡机”,然后操纵这些"傀儡机”向目标发起进攻,受到攻击的目标将因服务器不堪重负而瘫痪。
  事件此后的发展表明,7月的这次黑客攻击或许只是一次"彩排”。俄罗斯和格鲁吉亚的军队交火后,网络攻击随即全面展开。有互联网技术专家称,这是已知的第一次伴有网络攻击的军事行动。
  据称,格鲁吉亚的电视媒体、通信系统和交通系统均受到了攻击。8月8日,俄罗斯军队进入格鲁吉亚南奥塞梯后,专注于跟踪恶意网络活动的志愿者小组"阴影服务器”发现,黑客对格鲁吉亚的进攻扩展到了整个政府的计算机系统。格总统萨卡什维利的个人主页被人替换,黑客在网站上贴出了"精心”挑选的宣称"萨卡什维利和希特勒‘有相似性’”的照片。
  格鲁吉亚驻英国大使馆发言人,8月11日在接受英国媒体采访时表示,格鲁吉亚的网站全面遭到封锁。目前从英国已经无法访问格鲁吉亚国防部的网站,而格鲁吉亚总统府和外交部的网站虽然偶尔还能访问,但"这是格鲁吉亚重新引导流量的结果”。
  2.格政府向波兰总统借空间
  8月8日,俄罗斯军队进入南奥塞梯时,美国亚特兰大"郁金香”服务器公司格鲁吉亚裔首席执行官尼诺•多贾什维利正在格鲁吉亚度假。出于对祖国的热爱,多贾什维利打开电脑,登录格鲁吉亚政府网站,打算了解最新局势,却发现多数政府网站均被黑客攻击。她马上给政府打电话,主动提出将总统萨卡什维利的网站及一家著名电视台的网站,转移到她公司的服务器上。
  多贾什维利说,格总统的网站转移到自己公司的服务器后,她公司的服务器也受到了黑客的攻击。
  "阴影服务器”小组的志愿者斯蒂芬•阿达尔表示,发布命令并控制这次攻击的服务器位于美国境内,在开始袭击前几周就连接上了互联网。美国计算机安全研究人员跟踪到,一个名为botnets的恶意程序向格鲁吉亚的电脑系统注入了大量垃圾数据。
  迫于无奈,格总统萨卡什维利向波兰总统莱赫•卡钦斯基"求救”,在征得后者同意后,格鲁吉亚政府将外交部的新闻稿张贴在卡钦斯基的网站上。但英国互联网监测公司Renesys Corporation指出,格鲁吉亚政府网站通过土耳其和阿塞拜疆连接至互联网,而连接至阿塞拜疆的网络走俄罗斯境内,"俄罗斯境内并没有明显的限制访问流量的行为”。
  根据目前美国网络专家掌握的资料,一个名为"俄罗斯商业网络”(RBN)的组织可能是此次网络攻击的组织者,该公司曾为俄罗斯犯罪分子提供网络服务。RBN发布的消息称,俄罗斯的黑客们基本上控制了所有通向格鲁吉亚的关键服务器节点。
  与RBN针锋相对的是,一群德国黑客呼吁,国际力量应该帮助全球实现"中立的网络空间”。德国黑客表示,他们正在帮助格鲁吉亚网民通过德国电信公司的服务器,绕过俄罗斯黑客的封锁。
  3.攻击"是小孩子的杰作”?
  对于这次网络攻击,格鲁吉亚方面认为,这是俄罗斯的"官方行为”。格鲁吉亚驻英国大使馆指称,这次网络攻击的原因还在调查中,虽然仍无法证实"是俄罗斯方面搞的鬼”,但由于网络攻击适逢俄军开进南奥塞梯,因此有理由相信"这是俄方有组织的攻击行为”。
  除了时间上的"偶合”,格鲁吉亚方面还认为,俄罗斯有"网络攻击他国的先例”。2007年4月27日,从前苏联政权独立出去的爱沙尼亚政府,下令拆除了位于首都塔林市中心的苏军解放塔林纪念碑,引发了全城骚乱,接踵而至的是俄罗斯黑客长达3个星期的网络攻击。爱沙尼亚总统和议会的官方网站、政府各大部门网站、政党网站的访问量突然增加,服务器由于过于"拥挤”而陷入瘫痪。英国《卫报》报道称,这次攻击的幕后"黑手”可能是俄罗斯。
  美国的研究人员表示,除了使格鲁吉亚有限的互联网基础设施瘫痪,有证据表明,从8月8日开始,俄罗斯的电信企业对网络流量进行了"重定向”,以向格鲁吉亚发动攻击。一家俄文网站还提供了用于进行DDOS攻击的软件下载服务。
  知名互联网安全专家、以色列计算机"安全紧急响应小组”的创始人戛迪•艾荣认为,此次攻击行动很可能是民族主义分子所为,并非俄罗斯政府操纵的。虽然格鲁吉亚确实受到了DDOS攻击,但这与以往的攻击没有什么区别。两国兵戎相见,一方的支持者向另一方发动进攻很正常,不见得就是俄罗斯官方组织的。艾荣表示,攻击者可能是俄罗斯一些没有组织的爱国者,"很可能是一些小孩子的杰作”。
  也有研究人员对此持不同意见。美国"网络安全公司”的安全主管丹•杰克逊认为,这次的攻击手段和使用的工具,与RBN此前的攻击行为如出一辙。"这是俄罗斯的间接军事行动吗?答案是肯定的,但是俄罗斯不会只玩这种小花样。”
  对于格鲁吉亚方面的指控,俄罗斯官方没有回应。
  4.格鲁吉亚黑客"还击”
  虽然俄罗斯官方没有声明对此次网络攻击负责,但格鲁吉亚的网络高手依然对俄罗斯进行了"反击”。有迹象表明,在这场冲突中,双方都有屏蔽对方官网的行为。
  8月8日,一家俄文网站发布消息称,南奥塞梯政府官方网站和俄罗斯官方通讯社俄新社网站均受到DDOS攻击。俄新社记者纳塔利娅•洛谢耶娃在博客中写道,这是"非常严重的预谋行动,是信息战的一部分”。但她并未透露黑客攻击究竟来自哪个国家。
  8月11日凌晨,俄罗斯英文电视频道"今日俄罗斯”受到黑客的集中攻击,网站资源库被锁,随后出现技术故障。据该电视频道信息安全部专家透露,IP地址显示,黑客攻击来自格鲁吉亚首都第比利斯。
  各国信息部门对这场"网络战”高度关注。"Packet Clearing House”是美国一家专门研究网络流量的非营利性技术组织,该组织的研究室主任比尔•伍德库克说:"网络攻击所需代价相当小,而且易于实施——只要动一动手指就可发起进攻,因此在现代战争中经常被采用。一辆坦克履带的价格足够发动整场网络战争,不这样做才傻呢!”
  格鲁吉亚是互联网世界的"后来者”,在网站数量上排在世界234个国家中的73名。因此有专家认为,网络攻击对格鲁吉亚的影响有限,给其带来的损失"相当小”,"格政府只是无法在互联网上发布消息罢了”。
  5.黑客比黑帮更可怕?
  这场"网络战”让世人再次领略了黑客的高超技能。当今世界,黑客已经形成了一种独特的"地下文化”。
  与其他国家相比,俄罗斯的计算机教育相当出色,俄罗斯黑客也更有"职业色彩”。俄罗斯内政部官员在向前总统普京汇报一起网络犯罪案件时说:"过去,人们害怕的是俄罗斯黑帮,现在换成了俄罗斯黑客。”
  据报道,俄罗斯黑客发起攻击的动机大多是"囊中羞涩”。美国一位电脑安全专家说:"电脑网络面临的威胁可能来自任何一个地方,但来自俄罗斯的威胁主要与金融动机有关。在俄罗斯,一个电脑黑客的‘工资’往往比大学教授高十几倍甚至几十倍。”
  正如以色列计算机"安全紧急响应小组”创始人戛迪•艾荣所说,俄罗斯黑客一般年龄不大,从十几岁时就开始攻击一些企业的电脑网络,得手后拿着公司秘密去和对方讨价还价,并主动提出帮对方加强网络安全。俄罗斯还有一类黑客专门靠制作盗版软件谋生。一个网名叫"雷登”的黑客透露,他从微软等公司拷贝了一个新软件,一天可挣200美元。
  俄罗斯黑客并非眼里只有钱。1999年,为了抗议以美国为首的北约轰炸南联盟,圣彼得堡黑客一度使北约和美国政府的多个网站瘫痪。接着,美国国防部遭圣彼得堡黑客有组织的攻击。圣彼得堡黑客因此被冠以"网络黑手党”的称号。
  为了应对"网络战”,各网络强国都加强了黑客部队的建设。2007年5月,美国空军组建的第一个"网络战”司令部形成战斗力。按照计划,整个美军的"网络战”部队将于2030年左右组建完毕。届时,"网络战”部队将担负起网络攻防任务,确保美军在未来战争中拥有全面的信息优势。
  俄罗斯赋予了"网络战”更重要的地位,明确将其称为"第六代战争”。在俄军看来,"网络战”已成为一种变相的突击,起到了与火力突击相同的作用,成为直接打击敌人的有力手段。据报道,俄军正在加紧研制"网络战”武器。
  此外,印度、日本等国也组建了有特色的"网军”。

Category: War#Peace | Views: 942 | Added by: 0or1 | Rating: 0.0/0
Total comments: 0
Name *:
Email *:
Code *:

#Warning# 

  小伙伴,本博客数据大部分来源于伟大的internet,包括工具具有攻击性,请慎重使用、遵守天朝法律:-),当然,除非你牛B,,,Good luck! hacker!