Operation: Payback Is A Bitch: Difference between revisions

From /i/nsurgency W/i/ki
Jump to navigationJump to search
>Ohai
No edit summary
>CrackRabbit
https://raw.github.com/bibanon/Insurgency-Wiki/master/0-/O/p/e/Operation.3A%20Payback%20Is%20A%20Bitch.mediawiki
 
(70 intermediate revisions by 21 users not shown)
Line 1: Line 1:
Operation: Payback Is a Bitch was started after the MPAA hired aiplex to DDOS TPB.
Operation: Payback Is a Bitch was started after the MPAA hired aiplex to DDOS TPB.


== Strategies==
Firstly a lone anon managed to DoS and crash the Aiplex website. He left a message to attack mpaa.org. We have since moved onto other targets and currently using a modified LOIC utility with Hive abilities.


Tools:
[[Low Orbit Ion Cannon]]
[http://pastebin.com/ajcvYV8Q Auto-attacking script base on slowloris] (Linux only)
[[Longcat Flooder]]
'''Modified LOIC''': http://github.com/NewEraCracker/LOIC/downloads
== Status ==
Aiplex and MPAA went down at 9PM EST 17 September 2010, or 1 AM GMT 18 September 2010. MPAA stayed down for 18 hours before moving to a new IP and coming back online.
RIAA is still down as of 1:30 AM GMT (9:30 PM EST). The database-based CPU raep by forcing the server to dump a huge list of titles probably helped a lot on that. Aiplex went down, and is intermittently down. It is still really slow, we need moar lazors to keep it up. MPAA is healthy, do something!
10 PM EST 19 September 2010: RIAA still down, Aiplex, only slowed down. MPAA up.
Throughout September 23rd, 2010: Davenport Lyons were on and offline, attacks on TMG.eu failed.
September 24th - 25th: AiPlex and ACS:Law attacked.
'''Current:''' IRC server for Operation: Payback is down due to DDOS attacks and mass spam.
This operation will probably tie in with [[Operation Baylout]], as well as [[Project Skynet]].
== Targets ==
Current targets are ACS:Law and AiPlex.
AiPlex I.P. Address to target is 122.181.180.181
ACS:Law I.P. Address to target is 91.103.220.210
http://pastebin.com/BUXh6wgw <- nmap of 76.74.24.200 (riaa.com)
== News ==
Mentioned on Slashdot (should've provided a 'helpful' link to mpaa.org, lol)
http://it.slashdot.org/story/10/09/18/2016207/DDoS-From-4chan-Hits-MPAA-and-Anti-Piracy-Website
AUDIO - cnet podcast - starts about 32 mins in to the show: http://crave.cnet.co.uk/podcast/cnet-uk-podcast-205-a-comedy-of-legal-errors-50000992/ - funny & informative, well worth a listen.
Mashable:
http://mashable.com/2010/09/18/4chan-mpaa-ddos-attack/
Softpedia:
http://news.softpedia.com/news/4Chan-Coordinated-DDoS-Attack-Brings-MPAA-Website-Down-156944.shtml
http://news.softpedia.com/news/Anonymous-Attacks-Second-Law-Firm-Involved-in-Copyright-Litigations-157875.shtml
http://news.softpedia.com/news/Law-Firm-Attacked-as-4Chan-DDoS-Campaign-Continues-157470.shtml
Geek.com:
http://www.geek.com/articles/news/4chan-forces-aiplex-and-mpaa-websites-offline-with-ddos-attack-20100918
TorrentFreak:
http://torrentfreak.com/4chan-ddos-takes-down-mpaa-and-anti-piracy-websites-100918/
http://torrentfreak.com/4chan-to-ddos-riaa-next-is-this-the-protest-of-the-future-100919/
http://torrentfreak.com/new-4chan-ddos-targets-hated-anti-piracy-law-firm-100922/
http://torrentfreak.com/ddos-takes-down-aussie-anti-pirates-and-8000-other-sites-100928/
Techcrunh:
http://techcrunch.com/2010/09/19/riaa-attack/
ITnews.com.au:
http://www.itnews.com.au/News/232642,web-turns-ddos-on-anti-piracy-groups.aspx
http://www.itnews.com.au/News/233573,operation-payback-directs-ddos-attack-at-afact.aspx
ZDnet:
http://www.zdnet.com/blog/igeneration/mpaa-down-riaa-next-an-e-protest-over-piracy/6217
Emergeinvest:
http://www.emerginvest.com/Source/TechCrunch/2010/9/19/riaa-goes-offline-joins-mpaa-as-latest-victim-of-successful-ddos-attacks.html
Examiner.com:
http://www.examiner.com/technology-in-national/after-mpaa-attack-4chan-group-takes-down-riaa-site
The Register:
http://www.theregister.co.uk/2010/09/20/4chan_ddos_mpaa_riaa/
http://www.theregister.co.uk/2010/09/22/acs_4chan/
http://www.theregister.co.uk/2010/09/22/4chan_spikes_tea_party/
http://www.theregister.co.uk/2010/09/24/piracy_threat_lawyers_withstand_ddos/
Tech.spreadit.org:
http://tech.spreadit.org/mpaa-website-down-4chan-ddos-attack/
BBC:
http://www.bbc.co.uk/news/technology-11371315
Reuters (biased pro-MPAA propoganda):
http://www.reuters.com/article/idUSTRE68J09F20100920
CNET:
http://news.cnet.com/8301-1009_3-20016961-83.html
Arstechnica:
http://arstechnica.com/tech-policy/news/2010/09/4chan-tries-to-change-life-outside-the-basement-via-ddos-attacks.ars
Techradar:
http://www.techradar.com/news/internet/4chan-targets-mpaa-riaa-and-aiplex-with-ddos-attacks-717999
Gizmodo:
http://gizmodo.com/5642948/4chan-brings-down-riaa-and-mpaas-websites
Techiebuzz:
http://techie-buzz.com/tech-news/4chan-riaa-mpaa-ddos.html
Sophos:
http://www.sophos.com/blogs/chetw/g/2010/09/19/4chan-takes-mpaa-riaa-aiplex-wins/
Slyck:
http://www.slyck.com/news.php?story=2055
http://www.slyck.com/story2057_New_Slurry_of_DoS_Attacks_Against_Aiplex
Other Languages:
nu.nl (Dutch):
http://www.nu.nl/internet/2337759/4chan-valt-websites-entertainmentindustrie.html
Tweakers.net (Dutch):
http://tweakers.net/nieuws/69751/websites-van-riaa-gaan-plat-door-gerichte-ddos-aanvallen.html
Numerama.com (French):
http://www.numerama.com/magazine/16901-les-anonymous-esperent-provoquer-une-revolution.html
Articles related specifically to the leaked emails
Torrentfreak:
http://torrentfreak.com/acslaw-anti-piracy-law-firm-torn-apart-by-leaked-emails-100925/
http://torrentfreak.com/acslaw-gay-porn-letters-target-pensioners-married-men-100925/
http://torrentfreak.com/leaked-emails-reveal-profits-of-anti-piracy-cash-scheme-100926/
Slyck:
http://www.slyck.com/story2058_ACSLaw_Email_Database_Possibly_Leaked_onto_The_Pirate_Bay
http://www.slyck.com/story2060_Wave_of_Website_Attacks_Continues_Copyright_Alliance_Targeted
News.softpedia.com:
http://news.softpedia.com/news/Anonymous-Leaks-ACS-Law-Emails-via-The-Pirate-Bay-158009.shtml
ThinkQ.co.uk:
http://www.thinq.co.uk/2010/9/25/acslaw-emails-posted-pirate-bay/
WiredVC.com:
http://www.wiredvc.com/acslaw1-copyright-22lawyers-350mb-of-emails-seized-and-freed-by-pirates/
Unitethecows:
http://www.unitethecows.com/content/280-acs-law-emails-leaked-pirate-bay.html
http://www.unitethecows.com/content/281-inconsistencies-data-sent-acs-law-ip-capture-company.html
P2Pnet:
http://www.p2pnet.net/story/44186
BroadbandGenie:
http://www.broadbandgenie.co.uk/news/20100925-acslaw-hit-by-email-leak
Slashdot:
http://yro.slashdot.org/article.pl?sid=10/09/25/0413236
Hellmail.co.uk:
http://www.hellmail.co.uk/postalnews/templates/postal_industry_news.asp?articleid=2423&zoneid=3
ITnews.com.au:
http://www.itnews.com.au/News/233376,anti-piracy-lawyers-finances-leaked.aspx
BBC:
http://www.bbc.co.uk/news/technology-11418962
http://www.bbc.co.uk/news/technology-11424497
http://www.bbc.co.uk/news/technology-11418970
Openrightsgroup.org:
http://www.openrightsgroup.org/blog/2010/the-acs-law-leak-shows-that-the-digital-economy-act-carries-huge-privacy-risks
<!--
== Dox ==
== Dox ==
Wiki location: [http://www.partyvan.info/wiki/Operation:_Payback_Is_A_Bitch]
=== ACS:Law dox ===
<pre>
Andrew Jonothan Crossley
Office:
20 Hanover Square
London
W1S 1JY
Phone: +44 20 7193 2493
Fax: +44 20 7990 9099
</pre>
Source: http://www.acs-law.org.uk/index.php?option=com_contact&view=contact&id=1
<pre>
personal Tel: (01279) 816500
home address:
Sion Ho Birchanger La, Birchanger, Bishops Stortford, CM23 5PU
</pre>
=== Aiplex dox ===
<pre>
Office
Company name: Aiplex Software Pvt. Ltd.
Address: No. 2943/E, 1st floor, Opp Maruthi Mandir,
                    Service Road, Vijayanagar,
                    Bangalore - 560 040,
Tel: +91 80 2330 5411/12/13
Mobile: +91 98451 28280
Email: girish@aiplex.com
Email: karan@aiplex.com
Yellow Pages  listed email: mt@aiplexsoft.com
Yellow Pages listed website: http://www.aiplexsoft.com
</pre>
Source: www.aiplex.com
http://yellowpages.sulekha.com/bangalore/aiplex-software-pvt-ltd-vijaya-nagar-bangalore_contact-address.htm
http://www.indianjobtalks.com/forum/showthread.php?t=23028
Facebook : http://www.facebook.com/people/Aiplex-Bangalore-Seo/100000217960163
<pre>
CEO: Girish Kumar
DOB: 11 December
Age: 37
</pre>
Hi5: http://www.hi5.com/friend/p356270965--Profile--html
Name Source: http://www.allheadlinenews.com/articles/7019847397?Anti-Piracy%20Company%27s%20Big%20Gun%20Is%20%22Denial%20of%20Service%22%20Attack
<pre>
Unsorted Related Phone Numbers (either Girish or Aiplex)
91 98 451 28280 (mobile, matches Chronoms info above)
91 97 393 68832 (office, matches Chronoms info above)
91 95 386 66666 (what is this?)
</pre>
http://www.localindya.com/showmessage/adid/180761.htm
Picture of Girish Kumar: http://images.watoday.com.au/2010/09/08/1913764/Girish_Snap_Lead-200x0.jpg
Picture Source: http://www.watoday.com.au/technology/technology-news/film-industry-hires-cyber-hitmen-to-take-down-internet-pirates-20100907-14ypv.html
=== BREIN dox ===
<pre>
Managing Director: Tim J Kuik
Siriusdreef 28, Hoofddorp, 2132 WT
Home phone: +31-(0)23 799 7870
Cell phone: +31-(0)6-20395800
Fax number: 31-(0)23-7997720 (business)
</pre>
=== MPAA dox ===
<pre>
CEO: Anthony Robert Pisano office
Contact Info Los Angeles 15301 Ventura Blvd.
Building E Sherman Oaks, CA 91403
Phone Number (818) 995-6600
</pre>
<pre>
CEO: Anthony Robert "Bob" Pisano home
526 Amalfi Dr Pacific Palisades, CA 90272
Mobile: Possibly (310) 459-6419
Undergraduate: San Jose State Univ
Graduate School: UC Berkeley SOL Boalt Hall, Berkeley CA
Member, California State Bar        1969-Current
</pre>
Source: http://www.legalforce.com/directory/profile.aspx?mid=6813c837-0a82-4ed8-861c-03c840648b2c
http://www.linkedin.com/pub/bob-pisano/7/90a/313
<pre>
Family:
Carolyn J Pisano (Leonard?)
Relationship: wife
Residence: 526 Amalfi Dr Pacific Palisades, CA 90272
</pre>
Possible facebook: http://www.facebook.com/people/Carolyn-Pisano/100000627795218
<pre>
Entirely unconfirmed:
Saint John's Leadership
</pre>
Carolyn J. Pisano: http://www.stjohns.org/body.cfm?id=207
http://www.faqs.org/copyright/concurrent-validity-of-the-leader-behavior-description/
<pre>
Robert T Pisano
Residence: 26 Amalfi Dr, Pacific Palisades, CA 90272 *unconfirmed
Ph: (310) 459-6419 *unconfirmed
Spouse: Susie Reitman *unconfirmed
Marriage Country: Clark
Marriage date: 1956-2005
</pre>
http://search.ancestry.com/cgi-bin/sse.dll?gl=allgs&gsfn=Susie&gsln=Reitman&gss=seo&ghc=20
http://www.addresses.com/people/Roberto%20Pisano/8
http://white-pages.phonebook.com/results.php?ReportType=33&aid=6000&refer=1342&qnpa=310&qnpanxx=310459&qnpanxx7=3104596&qnxx=459&qp=4596419&qstation=9641
<pre>
House:
* Year Built: 1952
* Last sold on 2/2/1983
* Last assessed at $846,005 on 2009
</pre>
[http://www.realtor.com/property-detail/526-Amalfi-Dr_Pacific-Palisades_CA_90272_a0c7e001]
=== RIAA dox ===
We are located at 1025 F ST N.W., 10th Floor, Washington, D.C. 20004.
You  can contact us at 202/775-0101.
[Source: riaa.com]
CEO: Mitchell B Bainwol
Name Source: http://www.businessinsider.com/2008/8/riaa-ceo-mitch-bainwol-paid-1-5m-a-year-to-sue-crap-out-of-music
$2 million / year salary
Salary Source: http://www.digitalmusicnews.com/stories/070910riaa
Professional History Source: http://www.nndb.com/people/378/000159898/
Wife: Susan J Bainwol
http://wink.com/p/Mitch-Bainwol-w:11D5517F62
http://www.123people.co.uk/s/mitch+bainwol/united+states
http://www.intelius.com/results.php?ReportType=1&searchform=name
<pre>
Age: 50-54
Office:
1025 F St NW, Fl 10
Washington, DC 20004-1433
(202) 775-0101
Home:
8455 Lee Alan Dr
Fairfax Station, VA 22039-2643
Household: Susan J Bainwol (wife)
(571) 278-8840
</pre>
Apparently a consultant at CLARK & WEINSTOCK? http://www.clarkandweinstock.com/
Source: http://images.nictusa.com/pdf/204/28932485204/28932485204.pdf
''Some sort of PDF receipts or something'':
http://images.nictusa.com/pdf/538/10990715538/10990715538.pdf
http://images.nictusa.com/pdf/204/28932485204/28932485204.pdf
http://query.nictusa.com/pdf/262/28020400262/28020400262.pdf
(search for brainwol)
http://www.campaignmoney.com/political/contributions/mitchell-bainwol.asp?cycle=08
http://www.campaignmoney.com/political/contributions/mitchell-bainwol.asp?cycle=06
President: Cary Sherman
Name Source: http://www.riaa.com/aboutus.php?content_selector=about_us_exec_bios
-->
=== The Pirate Bay ===
* [http://thepiratebay.org/torrent/5852309/ACS-Law_server_backup_(mails_RSA_keys_access_logs...) ACS:Law full server backup, including emails, SSL keys, logs, etc] (torrent)
* [http://thepiratebay.org/torrent/5850493/ACS-Law_leaked_emails ACS:Law Leaked Emails] (torrent)


Aiplex:  
[[Category:Raids]]
CEO - Girish Kumar

Latest revision as of 19:18, 12 May 2013

Operation: Payback Is a Bitch was started after the MPAA hired aiplex to DDOS TPB.

Strategies[edit]

Firstly a lone anon managed to DoS and crash the Aiplex website. He left a message to attack mpaa.org. We have since moved onto other targets and currently using a modified LOIC utility with Hive abilities.

Tools: Low Orbit Ion Cannon

Auto-attacking script base on slowloris (Linux only)

Longcat Flooder

Modified LOIC: http://github.com/NewEraCracker/LOIC/downloads

Status[edit]

Aiplex and MPAA went down at 9PM EST 17 September 2010, or 1 AM GMT 18 September 2010. MPAA stayed down for 18 hours before moving to a new IP and coming back online.

RIAA is still down as of 1:30 AM GMT (9:30 PM EST). The database-based CPU raep by forcing the server to dump a huge list of titles probably helped a lot on that. Aiplex went down, and is intermittently down. It is still really slow, we need moar lazors to keep it up. MPAA is healthy, do something!

10 PM EST 19 September 2010: RIAA still down, Aiplex, only slowed down. MPAA up.

Throughout September 23rd, 2010: Davenport Lyons were on and offline, attacks on TMG.eu failed.

September 24th - 25th: AiPlex and ACS:Law attacked.

Current: IRC server for Operation: Payback is down due to DDOS attacks and mass spam.

This operation will probably tie in with Operation Baylout, as well as Project Skynet.


Targets[edit]

Current targets are ACS:Law and AiPlex.

AiPlex I.P. Address to target is 122.181.180.181

ACS:Law I.P. Address to target is 91.103.220.210


http://pastebin.com/BUXh6wgw <- nmap of 76.74.24.200 (riaa.com)

News[edit]

Mentioned on Slashdot (should've provided a 'helpful' link to mpaa.org, lol) http://it.slashdot.org/story/10/09/18/2016207/DDoS-From-4chan-Hits-MPAA-and-Anti-Piracy-Website

AUDIO - cnet podcast - starts about 32 mins in to the show: http://crave.cnet.co.uk/podcast/cnet-uk-podcast-205-a-comedy-of-legal-errors-50000992/ - funny & informative, well worth a listen.

Mashable: http://mashable.com/2010/09/18/4chan-mpaa-ddos-attack/

Softpedia: http://news.softpedia.com/news/4Chan-Coordinated-DDoS-Attack-Brings-MPAA-Website-Down-156944.shtml

http://news.softpedia.com/news/Anonymous-Attacks-Second-Law-Firm-Involved-in-Copyright-Litigations-157875.shtml

http://news.softpedia.com/news/Law-Firm-Attacked-as-4Chan-DDoS-Campaign-Continues-157470.shtml

Geek.com: http://www.geek.com/articles/news/4chan-forces-aiplex-and-mpaa-websites-offline-with-ddos-attack-20100918

TorrentFreak: http://torrentfreak.com/4chan-ddos-takes-down-mpaa-and-anti-piracy-websites-100918/

http://torrentfreak.com/4chan-to-ddos-riaa-next-is-this-the-protest-of-the-future-100919/

http://torrentfreak.com/new-4chan-ddos-targets-hated-anti-piracy-law-firm-100922/

http://torrentfreak.com/ddos-takes-down-aussie-anti-pirates-and-8000-other-sites-100928/

Techcrunh: http://techcrunch.com/2010/09/19/riaa-attack/

ITnews.com.au: http://www.itnews.com.au/News/232642,web-turns-ddos-on-anti-piracy-groups.aspx

http://www.itnews.com.au/News/233573,operation-payback-directs-ddos-attack-at-afact.aspx

ZDnet: http://www.zdnet.com/blog/igeneration/mpaa-down-riaa-next-an-e-protest-over-piracy/6217

Emergeinvest: http://www.emerginvest.com/Source/TechCrunch/2010/9/19/riaa-goes-offline-joins-mpaa-as-latest-victim-of-successful-ddos-attacks.html

Examiner.com: http://www.examiner.com/technology-in-national/after-mpaa-attack-4chan-group-takes-down-riaa-site

The Register: http://www.theregister.co.uk/2010/09/20/4chan_ddos_mpaa_riaa/

http://www.theregister.co.uk/2010/09/22/acs_4chan/

http://www.theregister.co.uk/2010/09/22/4chan_spikes_tea_party/

http://www.theregister.co.uk/2010/09/24/piracy_threat_lawyers_withstand_ddos/

Tech.spreadit.org: http://tech.spreadit.org/mpaa-website-down-4chan-ddos-attack/

BBC: http://www.bbc.co.uk/news/technology-11371315

Reuters (biased pro-MPAA propoganda): http://www.reuters.com/article/idUSTRE68J09F20100920

CNET: http://news.cnet.com/8301-1009_3-20016961-83.html

Arstechnica: http://arstechnica.com/tech-policy/news/2010/09/4chan-tries-to-change-life-outside-the-basement-via-ddos-attacks.ars

Techradar: http://www.techradar.com/news/internet/4chan-targets-mpaa-riaa-and-aiplex-with-ddos-attacks-717999

Gizmodo: http://gizmodo.com/5642948/4chan-brings-down-riaa-and-mpaas-websites

Techiebuzz: http://techie-buzz.com/tech-news/4chan-riaa-mpaa-ddos.html

Sophos: http://www.sophos.com/blogs/chetw/g/2010/09/19/4chan-takes-mpaa-riaa-aiplex-wins/

Slyck: http://www.slyck.com/news.php?story=2055

http://www.slyck.com/story2057_New_Slurry_of_DoS_Attacks_Against_Aiplex


Other Languages:

nu.nl (Dutch): http://www.nu.nl/internet/2337759/4chan-valt-websites-entertainmentindustrie.html

Tweakers.net (Dutch): http://tweakers.net/nieuws/69751/websites-van-riaa-gaan-plat-door-gerichte-ddos-aanvallen.html

Numerama.com (French): http://www.numerama.com/magazine/16901-les-anonymous-esperent-provoquer-une-revolution.html


Articles related specifically to the leaked emails

Torrentfreak: http://torrentfreak.com/acslaw-anti-piracy-law-firm-torn-apart-by-leaked-emails-100925/

http://torrentfreak.com/acslaw-gay-porn-letters-target-pensioners-married-men-100925/

http://torrentfreak.com/leaked-emails-reveal-profits-of-anti-piracy-cash-scheme-100926/

Slyck: http://www.slyck.com/story2058_ACSLaw_Email_Database_Possibly_Leaked_onto_The_Pirate_Bay

http://www.slyck.com/story2060_Wave_of_Website_Attacks_Continues_Copyright_Alliance_Targeted

News.softpedia.com: http://news.softpedia.com/news/Anonymous-Leaks-ACS-Law-Emails-via-The-Pirate-Bay-158009.shtml

ThinkQ.co.uk: http://www.thinq.co.uk/2010/9/25/acslaw-emails-posted-pirate-bay/

WiredVC.com: http://www.wiredvc.com/acslaw1-copyright-22lawyers-350mb-of-emails-seized-and-freed-by-pirates/

Unitethecows: http://www.unitethecows.com/content/280-acs-law-emails-leaked-pirate-bay.html

http://www.unitethecows.com/content/281-inconsistencies-data-sent-acs-law-ip-capture-company.html

P2Pnet: http://www.p2pnet.net/story/44186

BroadbandGenie: http://www.broadbandgenie.co.uk/news/20100925-acslaw-hit-by-email-leak

Slashdot: http://yro.slashdot.org/article.pl?sid=10/09/25/0413236

Hellmail.co.uk: http://www.hellmail.co.uk/postalnews/templates/postal_industry_news.asp?articleid=2423&zoneid=3

ITnews.com.au: http://www.itnews.com.au/News/233376,anti-piracy-lawyers-finances-leaked.aspx

BBC: http://www.bbc.co.uk/news/technology-11418962

http://www.bbc.co.uk/news/technology-11424497

http://www.bbc.co.uk/news/technology-11418970

Openrightsgroup.org: http://www.openrightsgroup.org/blog/2010/the-acs-law-leak-shows-that-the-digital-economy-act-carries-huge-privacy-risks

The Pirate Bay[edit]