Probe into stolen credit reports of celebs, politicians expands
Scheme crisscrossed continents, includes U.S. Internet company Cloudflare
The Associated Press
Posted: Mar 14, 2013 9:36 AM ET
Last Updated: Mar 14, 2013 9:35 AM ET
Michelle Obama, seen speaking in Washington on Wednesday, is purportedly one of the high-profile figures targetted by hackers. (Susan Walsh/Associated Press)
Related
Related Stories
The pursuit of hackers who audaciously stole and published credit reports for Michelle Obama, the attorney general, FBI director and other U.S. politicians and celebrities crisscrossed continents and included a San Francisco-based Internet company, Cloudflare, The Associated Press has learned.
The sensational crime caught the attention of Congress and U.S. President Barack Obama, who said "we should not be surprised."
Obama said he could not confirm that his wife's credit report was published earlier this week on a Russian website, along with what appeared to be the credit reports of nearly two dozen others, including Republican presidential candidate Mitt Romney, Donald Trump and celebrities Britney Spears, Jay-Z, Beyoncé and Tiger Woods.
The president said determined hackers are a persistent threat.
"We should not be surprised that if you've got hackers who want to dig in and devote a lot of resources, that they can access people's private information," Obama told ABC News in an interview aired Wednesday. "It is a big problem."
Obama added: "It would not shock me if some information among people who presumably have pretty good safeguards against it, still gets out. That's part of the reason why we've got to continually improve what we do and co-ordinate between public and private sectors to make sure that people's information is safe."
'All citizens are vulnerable to cyberattacks'
On Capitol Hill, the chairman of the House Judiciary Committee cited the breach Wednesday at a congressional hearing about the government prosecuting hackers. Rep. Bob Goodlatte, R-Va., said the leaks of financial information was "just the beginning of the problem" when it comes to the vulnerability of U.S. computer networks. Goodlatte said the U.S. has billions of dollars at stake, as foreign hackers try to steal sensitive information from businesses.
The Social Security numbers of rapper Jay-Z, seen at left with his wife Beyoncé, and other top celebrities were posted on the site. (Lionel Cironneau/Associated Press)"The truth is that all citizens are vulnerable to these kinds of cyberattacks," Goodlatte said.
A spokesman for one of the largest U.S. credit bureaus, Tim Klein of Equifax, said an initial investigation showed that hackers used a website designed to give consumers a free credit report. The hackers apparently used personal details about their victims to impersonate them and generate the credit reports.
Representatives for Experian, Equifax and TransUnion have all said they were co-operating with the U.S. criminal investigation being conducted by the FBI and Secret Service.
A retired FBI executive assistant director, Shawn Henry, said he hopes the incident sheds light on the scope of the cybersecurity problem and identity theft in particular, which affects millions of Americans who aren't famous enough to make headlines.
"There's a lot of sensitive data available online," said Henry, the president of CrowdStrike, a security technology company.
"People aren't keeping information in a safe locked behind closed doors. Information being breached and violated is happening every day."
Cloudflare tied to Russian website
In San Francisco, Cloudflare operates the directory computers, known as name servers, used behind the scenes to send visitors to the Russian website where the stolen credit reports were being published, according to Internet registration records. Without that service, few Internet users would be able to visit the Russian website or view the stolen credit reports.
A company spokeswoman, Carol Carrubba, told the AP that Cloudflare, which she described as a performance and security company, doesn't comment on its customers. But Carrubba said: "Even if we delete a customer's account, the content remains in place, though the site may load more slowly."
Internet directories on Wednesday continued to identify Cloudflare as directing traffic to the Russian website, although any technical changes could take hours or days to update across the Internet.
Last month, the chief executive at Cloudflare, Matthew Prince, said in a speech that he had been victimized last year by hackers associated with the group UGNazi. They tricked Google into giving them access to his Gmail account, Prince said, and left voicemails taunting him that they had bought his Social Security number from an underground Russian website. Prince said the break-in of his personal email account also allowed the hackers to take over Cloudflare's corporate email systems.
In his speech, Prince said his company traced the attackers within 24 hours, and the hackers turned out to be among Cloudflare's customers.
The FBI in San Francisco declined to tell AP whether investigators have contacted Cloudflare to review payments or communications that had been used to set up the service.
The website address uses an Internet suffix originally assigned to the former Soviet Union, and many of the pages feature unflattering pictures of the person featured and taunting messages to them. A counter on the website indicated that it had received more than 450,000 views since its existence was revealed on Monday.
Social Security numbers posted on Jay-Z, Mel Gibson and others matched records in public databases. Social Security numbers are not public records, although they used to be included in some court filings. Many courts require the information be redacted from filings since the numbers can be used to steal a person's identity and open credit accounts in their name.
Share Tools
Horror tale Haunting Melissa targets app audiences by Jessica Wong May. 16, 2013 4:40 PM If you're seeking the weather, the news or a pic of what your buddy had for lunch, there are apps for that. What about an original, Hollywood-calibre ghost story from a producer of The Ring and Mulholland Drive? Now, there's an app for that, too. Haunting Melissa ventures into the burgeoning realm of digital storytelling as a traditional ghost story with a modern twist -- namely a tale that unfolds through an iOS app.
Top News Headlines
- Unknown remains found on Dellen Millard's farm
- Police searching the farm of Dellen Millard, the 27-year-old charged with first-degree murder after the remains of Ancaster, Ont., man Tim Bosma were discovered, have found other remains on the property, but it's unclear if they are human or animal. more »
- Canadian on EI shut out amid foreign worker influx
- A jobless Canadian IT professional who is collecting employment insurance is upset because he now suspects several recent jobs he applied for went to temporary foreign workers. more »
- Can the Senate fire a senator?
- An expert on parliamentary rules says the Senate has the power to turf a senator from the chamber, as long as a majority approves the expulsion, and as long as there is cause. more »
- Nahlah Ayed: Vote-wary Iranians mull Ahmadinejad's successor
- Iranians go to the polls in less than four weeks to choose a new president. The reform movement is still smarting from its bitter defeat four years ago, but the jockeying for power is no less intense, Nahlah Ayed reports. more »
- Edmonton boy, 2, killed after car hits patio
- A two-year-old boy is dead after a car smashed into a patio at a south Edmonton restaurant Sunday night. more »
Must Watch
Latest Arts & Entertainment News Headlines
- Denmark's Emmelie de Forest wins Eurovision
- Denmark's Emmelie de Forest has won this year's Eurovision Song Contest with her ethno-inspired flute and drum tune Only Teardrops. more »
- John Lennon guitar snags $408,000 at auction
- A custom-made electric guitar played by the late John Lennon and George Harrison of the Beatles sold at a New York auction on Saturday for $408,000 US, said officials with the company behind the event more »
- Xbox launch Tuesday highly anticipated
- Microsoft's next-generation Xbox expected to be revealed Tuesday, and anticipation for the entertainment console's latest evolution is running high. more »
- Halifax musicians rally behind guitarist Rick Edgett
- A group of Halifax musicians are rallying behind a local guitar player who's dying of cancer. more »
Q Blog
Pete Townshend on The Who's "Tommy" May. 17, 2013 4:15 PM
CBC Books
Juvenile inmates benefiting from Russian literature May. 17, 2013 3:32 PM A juvenile correctional facility in Virginia has seen the behavioural benefits of encouraging their inmates to read the works of classic Russian writers like Tolstoy and Dostoevsky.
- Unknown remains found on Dellen Millard's farm
- Canadian on EI shut out amid foreign worker influx
- Central Newfoundland digs out from freak snowfall
- Petition looks to rename Victoria Day
- Vancouver man attacked, killed in Costa Rica
- Missing Toronto woman's parents unfazed by Millard link
- Jeep driver apologizes after stunt kills Edmonton woman
- Rob Ford should resign if allegations true, councillors say
- Harper chief of staff resigns amid Senate expense scandal


