FBI says Sony hackers 'got sloppy,' posted from North Korea addresses
[IN.REUTERS] FBI Director James Comey said on Wednesday that hackers behind the cyberattack on Sony Pictures Entertainment provided key clues to their identity by sometimes posting material from IP addresses used exclusively by the North Korean government.
The hackers, who called themselves "Guardians of Peace," sometimes "got sloppy" and failed to use proxy servers that would hide their identity, Comey said at the International Conference on Cyber Security in New York.
"The Guardians of Peace would send emails threatening Sony employees and post online various statements explaining their work. In nearly every case they would use proxy servers in sending those emails and posting those statements," Comey said.
"But several times they got sloppy. Several times, either because they forgot or they had a technical problem, they connected directly and we could see it," Comey said.
"We could see that the IP addresses they used ... were IPs that were exclusively used by the North Koreans. It was a mistake by them. It was a very clear indication of who was doing this. They would shut it off very quickly once they realized the mistake, but not before we saw them and knew where it was coming from," he added.
Posted by: Fred 2015-01-08 |