Advertisement
maryjon

Mandiant Leak: Op. #LeakTheAnalyst

Aug 1st, 2017
14,570
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.87 KB | None | 0 0
  1. KB
  2. -=--=--=- Section #1: Mandiant and Adi Peretz Leaks Part #1 -=--=--=-
  3. It was fun to be inside a giant company named “Mandiant” we enjoyed watching how they try to protect their clients and how their dumb analysts are trying to reverse engineer malwares and stuffs.
  4. Now that “Mandiant” knows how deep we breached into its infrastructure its so-called threat analysts are trying to block us. Let's see how successful they are going to be :D
  5.  
  6. Mandiant Internal Leaks:
  7. Target: Mandiant, FireEye, High Profile Personels
  8. Initial Access: 2016
  9. Final Access: 2017
  10.  
  11. Victim #1 Profile:
  12. --- Name: Adi Peretz
  13. --- Op. Nickname: Mr. Muscle AKA FatFuck
  14. --- Position: Senior Threat Intelligence Analyst at Mandiant
  15. --- Layer #1 Targets: Chrome, Firefox, Windows (What kind of a dumb security specialist uses windows anyway??? FUCKIN’ IDIOT...)
  16.  
  17. Potential Layer #2 Targets:
  18. --- Outlook Contacts (HVT)
  19. --- Prime Ministry Office of Israel
  20. --- Mandiant
  21. --- FireEye Internal
  22. ---- Hapoalim Bank
  23. --- Linked-in Contacts
  24. --- 3rd Party Contractors
  25.  
  26. Upcomming Event:
  27. --- Jul/25 – Adi has HR Interview with Novartis (might be canceled :)))) )
  28.  
  29. Depth of the Breach:
  30. --- Mandiant Internal networks and its clients data has been compromised (might be leaked separately)
  31. --- Credentials (Mandiant-FireEye Docs, Mandiant-FireEye WebEx, Mandiant -FireEye JIRA, Staffs Emails, Amazon Account, Linkedin Account, And much more which we might leak after using them for our benefit! :D )
  32. --- Full access over victim's Linkedin profile
  33. --- Full access over victim's live account (including full control over his private windows machine, online GPS tracking of the victim for a year (2016-2017), OneDrive, official calendar events, contacts, billing address (both Ireland and Israel))
  34. --- Paypal invoices
  35.  
  36. Leaks:
  37. --- Geo Locations of the victim
  38. --- Top Secret Document
  39. --- Credentials
  40. --- Favorite Password Patterns
  41. --- Compelete Business and Personal emails dump
  42. --- FireEye Licenses
  43. --- Private Contracts
  44. --- FireEye Worksheets
  45. --- Network Topology Drawings (Probably FireEye’s Core Analysis Lab)
  46. --- Linked-in contacts (potential layer #2 targets)
  47.  
  48. Final words:
  49. This leak was just a glimpse of how deep we breached into Mandiant, we might publish more critical data in the future. So DO NOT FUCK WITH US!
  50.  
  51. Special Thanks To:
  52. --- APT29
  53. --- APT32
  54. --- DragonOK
  55. --- The Shadow Brokers
  56. --- APT1
  57. --- WebEx :D
  58. --- Microsoft Windows :))))))))
  59.  
  60. link: http://simizer.com/dyy
  61. Mirror: http://simizer.com/e4S /FireEye_Mandiant_AdiPeretz_Leak.7z
  62. pass: leaktheanalyst@mandiant
  63.  
  64. Hack locally, Leak globally,
  65. Expect Us.
  66.  
  67. -=--=--=- Section #2: Op. #LeakTheAnalyst -=--=--=--=-
  68. Operation #LeakTheAnalyst:
  69.  
  70. In Blackhats we trust,
  71.  
  72. Nobody understands the amount of dedication it takes to break into a highly secured network, to bypass every state of the art security measure installed to make a targeted network unbreakable, to code and hack not for the money but for the pleasure of being somewhere no one can be in, to be addicted to pain.
  73.  
  74. From time to time there is a know-it-all security professional tries to read your sick mind and blow your breach plan up to hell.
  75.  
  76. For a long time we - the 31337 hackers - tried to avoid these fancy ass "Analysts" whom trying to trace our attack footprints back to us and prove they are better than us. In the #LeakTheAnalyst operation we say fuck the consequence let’s track them on Facebook, Linked-in, Tweeter, etc. let’s go after everything they’ve got, let’s go after their countries, let’s trash their reputation in the field. If during your stealth operation you pwned an analyst, target him and leak his personal and professional data, as a side job of course ;).
  77.  
  78. In the operation #LeakTheAnalyst our motto is:
  79. If they are going to send us back to hell, Let’s unleash hell upon them; Before it’s too late...
  80.  
  81. Join us @ Op. #LeakTheAnalyst.
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement