Feds charge professed White Hat hackers in breach of AT&T iPad customer data

According to Reuters, Daniel Spitler and Andrew Auernheimer, both of whom work at Goatse Security are being charged with fraud and conspiracy to access a computer without authorization.

Professed White Hat hackers face federal criminal charges for grabbing the e-mail addresses of 114,000 AT&T 3G customers who use iPads.

The breach they acknowledge committing and publicized last summer took advantage of weaknesses in AT&Ts resubscription page for iPads to harvest the e-mail addresses and ID numbers for the SIM cards in their iPads.

The breach yielded this information for some famous people, including TV journalist Diane Sawyer, former White House Chief of Staff Rahm Emanuel and New York Mayor Michael Bloomberg, as well as employees of NASA, the U.S. Department of Justice, DARPA, The New York Times, Google, Microsoft, Goldman Sachs and Citigroup.

According to Reuters, Daniel Spitler and Andrew Auernheimer, both of whom work at Goatse Security are being charged with fraud and conspiracy to access a computer without authorization.

The pair leaked information about the breach to Gawker Media, but AT&T said the weakness that allowed the breach was fixed before the story ran.

The flaw was that AT&T prepopulated the subscription-renewal page with users' e-mail addresses. The hackers managed to access these pagers for other users and wrote a script that automated scraping the e-mail addresses and SIM card IDs.

While claiming to hack for social good, Aunheimer has also been characterized as an Internet troll - someone who performs destructive or annoying acts via the Internet. In court documents last month, FBI agent Christian Schorle says the FBI has been aware of Aunheimer as a hacker and "self-proclaimed troll" since 2001.

When the FBI raided his home in Arkansas as part of the AT&T breach, they found drugs that resulted in charges of possession of cocaine, LSD, ecstasy and oxycodone.

In an open letter last November to Assistant U.S. Attorney Lee Vartan on the Goatse Security Web site, Auernheimer says the intent of the breach was to point out lax security on the part of AT&T. At the time of the letter, Auernheimer says he knew the U.S. Attorney was considering charges.

In the letter he claims that Goatse has a reputation for fighting cyber crime. "Social responsibility has always been at the core of everything we do at Goatse Security," he writes, "and this will be extraordinarily obvious at a trial. Goatse has done large amounts of documented work in project areas such as combating safe havens for pedophiles worldwide, protecting U.S. infrastructure, and keeping U.S. citizens safe from Russian and Chinese organized crime."

The letter urges Vartan to drop the prosecution because continuing might damage his professional reputation. "I pray for you, Lee," Auernheimer says in the letter. "I pray for you to see wisdom in your actions, and pray for you to be guided towards righteousness. I advise you to discuss this matter with your family, your friends, victims of crimes you have prosecuted and your teachers, for they are the people who would have been harmed had AT&T been allowed to silently bury their negligent endangerment of United States infrastructure."

Read more about wide area network in Network World's Wide Area Network section.

Join the newsletter!

Or

Sign up to gain exclusive access to email subscriptions, event invitations, competitions, giveaways, and much more.

Membership is free, and your security and privacy remain protected. View our privacy policy before signing up.

Error: Please check your email address.

Tags securityMicrosoftcybercrimeGooglelegaldata breachNASAcitigroupat&tReutersThe New York Timeswhite hat hackers

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Tim Greene

Network World
Show Comments

Brand Post

Most Popular Reviews

Latest Articles

Resources

PCW Evaluation Team

Luke Hill

MSI GT75 TITAN

I need power and lots of it. As a Front End Web developer anything less just won’t cut it which is why the MSI GT75 is an outstanding laptop for me. It’s a sleek and futuristic looking, high quality, beast that has a touch of sci-fi flare about it.

Emily Tyson

MSI GE63 Raider

If you’re looking to invest in your next work horse laptop for work or home use, you can’t go wrong with the MSI GE63.

Laura Johnston

MSI GS65 Stealth Thin

If you can afford the price tag, it is well worth the money. It out performs any other laptop I have tried for gaming, and the transportable design and incredible display also make it ideal for work.

Andrew Teoh

Brother MFC-L9570CDW Multifunction Printer

Touch screen visibility and operation was great and easy to navigate. Each menu and sub-menu was in an understandable order and category

Louise Coady

Brother MFC-L9570CDW Multifunction Printer

The printer was convenient, produced clear and vibrant images and was very easy to use

Edwina Hargreaves

WD My Cloud Home

I would recommend this device for families and small businesses who want one safe place to store all their important digital content and a way to easily share it with friends, family, business partners, or customers.

Featured Content

Latest Jobs

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?