<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>G.E. Investigations Blog</title>
	
	<link>http://geinvestigations.com/blog</link>
	<description>News and Interesting Articles</description>
	<lastBuildDate>Wed, 30 May 2012 08:52:49 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/geinvestigations" /><feedburner:info uri="geinvestigations" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><item>
		<title>Hacker group UGNazi leaks and deletes billing service’s database</title>
		<link>http://feedproxy.google.com/~r/geinvestigations/~3/lIb8Xrg7Yzc/</link>
		<comments>http://geinvestigations.com/blog/2012/05/hacker-group-ugnazi-leaks-and-deletes-billing-services-database/#comments</comments>
		<pubDate>Wed, 30 May 2012 08:52:49 +0000</pubDate>
		<dc:creator>geadmin</dc:creator>
				<category><![CDATA[Articles of Interest]]></category>
		<category><![CDATA[Crimes & Criminal Activity (Organized Crime, Narcotics, Predators, Cyber Crime, Cyber Stalking, UnSolved)]]></category>
		<category><![CDATA[Firearms, Weapons & Personal Safety]]></category>
		<category><![CDATA[National security, Terrorism, Cyber Terrorism & Related Crimes]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Technology & Digital Security]]></category>
		<category><![CDATA[000 records online]]></category>
		<category><![CDATA[employing hacking as a means of punishing organizations]]></category>
		<category><![CDATA[G.E. Investigations Blog]]></category>
		<category><![CDATA[group used WHMCS's hacked Twitter account]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[Hacker group UGNazi]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[hit WHMCS with a large-scale DDoS (distributed denial of service)]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[The group used social engineering to access WHMCS's customer database]]></category>
		<category><![CDATA[The Unknowns]]></category>
		<category><![CDATA[then leaked 500]]></category>

		<guid isPermaLink="false">http://geinvestigations.com/blog/?p=2245</guid>
		<description><![CDATA[Hacker group UGNazi leaks and deletes billing service&#8217;s database &#160; &#160; The group used social engineering to access WHMCS&#8217;s customer database, then leaked 500,000 records online &#160; &#160; InfoWorld By Ted Samson May 22, 2012 &#160; WHMCS, a provider of online billing services, is the latest victim of a high-profile security breach launched by a <a href='http://geinvestigations.com/blog/2012/05/hacker-group-ugnazi-leaks-and-deletes-billing-services-database/' class='excerpt-more'>[...]</a>]]></description>
			<content:encoded><![CDATA[<h1>Hacker group UGNazi leaks and deletes billing service&#8217;s database</h1>
<p>&nbsp;</p>
<p>&nbsp;</p>
<h2>The group used social engineering to access WHMCS&#8217;s customer database, then leaked 500,000 records online</h2>
<p>&nbsp;</p>
<p>&nbsp;</p>
<div><em><strong> InfoWorld</strong></em></div>
<div><em><strong>By Ted Samson</strong></em></div>
<div><em><strong>May 22, 2012</strong></em></div>
<div></div>
<div></div>
<div></div>
<div><img class="alignnone" title="Article photo" src="http://www.infoworld.com/sites/infoworld.com/files/media/image/security_internet_hp.jpg" alt="" width="243" height="182" /></div>
<div></div>
<p>&nbsp;</p>
<div></div>
<p><em><strong>WHMCS, a provider of online billing services, is the latest victim of a high-profile security breach launched by a hacker group claiming moral high ground for its actions.</strong></em></p>
<p><em><strong>Hacker group UGNazi has taken responsibility for swiping and leaking more than a half-million customer records &#8212; including credit card information and passwords &#8212; from WHMCS on Monday. The group <a href="https://twitter.com/#%21/whmcs/status/204751469235286016" target="_blank">used WHMCS&#8217;s hacked Twitter account</a> as a forum to justify its actions: &#8220;Many websites use WHMCS for scams. You ignored our warnings. We spoke louder. We are watching; and will continue to be watching.&#8221;</strong></em></p>
<p><em><strong>UGNazi joins the likes of  in employing hacking as a means of punishing organizations for perceived wrongdoings.</strong></em></p>
<p><em><strong>According to WHMCS lead developer Matt Pugh, the perpetrators employed a social-engineering attack to dupe the company&#8217;s Web hosting company &#8212; reportedly HostGator &#8212; to give up administrator credentials. With credentials in hand, the group accessed WHMCS&#8217; database on Monday to steal customer&#8217;s credit card information and passwords, as well as user names and support tickets. UGNazi proceeded to leak links to the stolen records on Pastebin.</strong></em></p>
<p><em><strong>According to Pugh, the hackers deleted all files on the company&#8217;s servers after the heist, including 17 hours&#8217; worth of new orders and help tickets.</strong></em></p>
<p><em><strong>The passwords were stored in a hash format, and the credit card information was encrypted &#8212; but evidently not PCI-compliant, <a href="http://forum.whmcs.com/showthread.php?p=223758#post223758" target="_blank">a point raised by WHMCS clients on the company&#8217;s forum</a>. &#8220;Any support ticket content may be at risk &#8212; so if you&#8217;ve recently submitted any login details in tickets to us, and have not yet changed them again following resolution of the ticket, [so] we recommend changing them now,&#8221; Pugh cautioned.</strong></em></p>
<p><em><strong>Compounding the impact of the attack, outside hackers have since hit WHMCS with a large-scale DDoS (distributed denial of service) attack. UGNazi <a href="http://news.softpedia.com/news/UGNazi-Hackers-Leak-Data-from-Washington-Military-Department-269244.shtml" target="_blank">has a reputation</a> for launching DDoS attacks against the U.S. government.</strong></em></p>
<p><em><strong>Pugh took pains <a href="http://blog.whmcs.com/?t=47672" target="_blank">in the WHMCS blog</a> to point out that the attack &#8220;was not directly due to any lapses in the security in place on either our server or WHMCS itself,&#8221; implying that the lapse was on HostGator&#8217;s part.</strong></em></p>
<p><em><strong>Still, Pugh did acknowledge that WHMCS should have had a more robust hosting infrastructure in place. &#8220;Plans have already been put in motion for a new multi-server hosting infrastructure to be setup and migrated to,&#8221; he wrote.</strong></em></p>
<p><em><strong>This story, &#8220;<a href="http://www.infoworld.com/t/hacking/hacker-group-ugnazi-leaks-and-deletes-billing-services-database-193867?source=footer">Hacker group UGNazi leaks and deletes billing service&#8217;s database</a>,&#8221; was originally published at <a href="http://www.infoworld.com/?source=footer">InfoWorld.com</a>.</strong></em></p>
<p>&nbsp;</p>
<p>Direct Link:  <a title="Article Link" href="http://www.infoworld.com/t/hacking/hacker-group-ugnazi-leaks-and-deletes-billing-services-database-193867">http://www.infoworld.com/t/hacking/hacker-group-ugnazi-leaks-and-deletes-billing-services-database-193867</a></p>
]]></content:encoded>
			<wfw:commentRss>http://geinvestigations.com/blog/2012/05/hacker-group-ugnazi-leaks-and-deletes-billing-services-database/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://geinvestigations.com/blog/2012/05/hacker-group-ugnazi-leaks-and-deletes-billing-services-database/</feedburner:origLink></item>
		<item>
		<title>NASA, Air Force and Harvard Computers Hacked by ‘The Unknowns’</title>
		<link>http://feedproxy.google.com/~r/geinvestigations/~3/4XzfhQjOLss/</link>
		<comments>http://geinvestigations.com/blog/2012/05/nasa-air-force-and-harvard-computers-hacked-by-the-unknowns/#comments</comments>
		<pubDate>Wed, 30 May 2012 08:30:53 +0000</pubDate>
		<dc:creator>geadmin</dc:creator>
				<category><![CDATA[Articles of Interest]]></category>
		<category><![CDATA[Crimes & Criminal Activity (Organized Crime, Narcotics, Predators, Cyber Crime, Cyber Stalking, UnSolved)]]></category>
		<category><![CDATA[Firearms, Weapons & Personal Safety]]></category>
		<category><![CDATA[National security, Terrorism, Cyber Terrorism & Related Crimes]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Technology & Digital Security]]></category>
		<category><![CDATA[A previously unknown hackers‘ group calling themselves “The Unknowns” has compromised websites and obtained documents from NASA]]></category>
		<category><![CDATA[Air Force]]></category>
		<category><![CDATA[Air Force and Harvard Computers Hacked by ‘The Unknowns’]]></category>
		<category><![CDATA[Army]]></category>
		<category><![CDATA[Energy Department and NASA]]></category>
		<category><![CDATA[G.E. Investigations Blog]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[NASA]]></category>
		<category><![CDATA[Navy]]></category>
		<category><![CDATA[Pastebin.com]]></category>
		<category><![CDATA[the Bahrain Ministry of Defense]]></category>
		<category><![CDATA[the European Space Agency]]></category>
		<category><![CDATA[the French Ministry of Defense]]></category>
		<category><![CDATA[the Thai Royal Navy and Harvard University’s School of Public Health]]></category>
		<category><![CDATA[the U.S. Air Force]]></category>
		<category><![CDATA[Twitter handle ZyklonB]]></category>

		<guid isPermaLink="false">http://geinvestigations.com/blog/?p=2242</guid>
		<description><![CDATA[NASA, Air Force and Harvard Computers Hacked by ‘The Unknowns’   By Jason Ryan May 4, 2012 A previously unknown hackers‘ group calling themselves “The Unknowns” has compromised websites and obtained documents from NASA, the U.S. Air Force, the French Ministry of Defense, the European Space Agency, the Bahrain Ministry of Defense, the Thai Royal <a href='http://geinvestigations.com/blog/2012/05/nasa-air-force-and-harvard-computers-hacked-by-the-unknowns/' class='excerpt-more'>[...]</a>]]></description>
			<content:encoded><![CDATA[<h1>NASA, Air Force and Harvard Computers Hacked by ‘The Unknowns’</h1>
<div>  <a title="Email" href="http://abcnews.go.com/blogs/politics/2012/05/nasa-air-force-and-harvard-computers-hacked-by-the-unknowns/#"><img src="http://a.abcnews.com/blogs/politics/wp-content/themes/abc/img/transparent.gif" alt="" /></a></div>
<div>
<p>By Jason Ryan</p>
<p>May 4, 2012</p>
</div>
<div></div>
<div></div>
<div></div>
<div><img class="alignnone" title="The Unknowns Hacker Group" src="http://www.computerworld.in/sites/default/files/news/2012/05/The-Unknowns-new.jpg" alt="" width="394" height="296" /></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div>
<p><em><strong>A previously unknown <a href="http://abcnews.go.com/GMA/video/anonymous-hackers-strike-15516681">hackers</a>‘ group calling themselves “The Unknowns” has compromised websites and obtained documents from NASA, the U.S. Air Force, the French Ministry of Defense, the European Space Agency, the Bahrain Ministry of Defense, the Thai Royal Navy and Harvard University’s School of Public Health.</strong></em></p>
<p><em><strong>The group posted several screenshots and documents on Pastebin.com, showing the results of its intrusions: <a href="http://pastebin.com/uhWSRrSf">http://pastebin.com/uhWSRrSf</a></strong></em></p>
<p><em><strong>A website that was breached at NASA’s Glenn Research Center shows a screen from the Inter-agency Advanced Power Group which conducts research on space and land-based energy programs with the Army, Air Force, Navy, Energy Department and NASA.</strong></em></p>
<p><em><strong>“Victims, we have released some of your documents and data,” the group wrote on a web posting. “We probably harmed you a bit but that’s not really our goal because if it was then all of your websites would be completely defaced but we know that within a week or two, the vulnerabilities [sic] we found will be patched and that’s what we’re actually looking for. We’re ready to give you full info on how we penetrated threw your databases and we’re ready to do this any time so just contact us, we will be looking forward for this.”</strong></em></p>
<p><em><strong>A NASA spokesman, contacted by ABC News, said, “NASA security officials detected an intrusion into the site on April 20 and took it offline. The agency takes the issue of IT security very seriously and at no point was sensitive or controlled information compromised. NASA has made significant progress to better protect the agency’s IT systems and is in the process of mitigating any remaining vulnerabilities that could allow intrusions in the future.”</strong></em></p>
<p><em><strong>A member of the group who uses the Twitter handle ZyklonB also claims to have penetrated computer systems at Oak Ridge National Laboratory. A spokesman for the laboratory said, “The laboratory network was never compromised.”</strong></em></p>
<p><em><strong>The spokesman said that ZyklonB gained access to an external website where scientists make data publicly available for research purposes.  It is unclear if the group was trying to gain access to the lab’s more sensitive networks.</strong></em></p>
<p><em><strong>“We are a new hacker group, we have never been in any hacking team before,” the group said in a message posted Friday. “We are not Anonymous Version 2 and we are not against the US Government. We can’t call ourselves White Hat Hackers but we’re not Black Hat Hackers either… Now, we decided to hack these sites for a reason…These Websites are important, we understand that we harmed the victims and we’re sorry for that — we’re soon going to email them all the information they need to know about the penetrations we did.”</strong></em></p>
<p><em><strong>“And for all the other websites out there: We’re coming, please, get ready, protect your website and stop us from hacking it, whoever you are. Contact us before we take action and we will help you.”</strong></em></p>
<p><em><strong>The group posted information from the Air Force Auxiliary’s Civil Air Patrol.</strong></em></p>
<p><em><strong>Capt. Chris Sukach a spokesperson for the Air Force Space Command, said in a statement that his group is investigating.  “For obvious security reasons, we generally do not discuss specific vulnerabilities, threats, or responses to them.  The Air Force will continue to monitor the situation and, as always, take appropriate action as necessary to protect Air Force networks and information.”</strong></em></p>
<p><em><strong>The group also claimed it compromised a research database connected to Harvard’s School of Public Health and the Dana Farber Cancer Center. An official briefed on the matter said that no patient data was on the server that was breached. It is unclear what information was compromised from the Harvard system.</strong></em></p>
<p><em><strong>Officials with the FBI declined to comment if they are investigating the computer breaches.</strong></em></p>
<p>&nbsp;</p>
<p>Direct Link:  <a title="Article Link" href="http://abcnews.go.com/blogs/politics/2012/05/nasa-air-force-and-harvard-computers-hacked-by-the-unknowns/">http://abcnews.go.com/blogs/politics/2012/05/nasa-air-force-and-harvard-computers-hacked-by-the-unknowns/</a></p>
</div>
]]></content:encoded>
			<wfw:commentRss>http://geinvestigations.com/blog/2012/05/nasa-air-force-and-harvard-computers-hacked-by-the-unknowns/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://geinvestigations.com/blog/2012/05/nasa-air-force-and-harvard-computers-hacked-by-the-unknowns/</feedburner:origLink></item>
		<item>
		<title>Iran confirms Flame virus attacked computers of high-ranking officials</title>
		<link>http://feedproxy.google.com/~r/geinvestigations/~3/QjyIvtTEMmA/</link>
		<comments>http://geinvestigations.com/blog/2012/05/iran-confirms-flame-virus-attacked-computers-of-high-ranking-officials/#comments</comments>
		<pubDate>Wed, 30 May 2012 06:31:37 +0000</pubDate>
		<dc:creator>geadmin</dc:creator>
				<category><![CDATA[Articles of Interest]]></category>
		<category><![CDATA[Crimes & Criminal Activity (Organized Crime, Narcotics, Predators, Cyber Crime, Cyber Stalking, UnSolved)]]></category>
		<category><![CDATA[Firearms, Weapons & Personal Safety]]></category>
		<category><![CDATA[National security, Terrorism, Cyber Terrorism & Related Crimes]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Technology & Digital Security]]></category>
		<category><![CDATA[an Iranian cyber defence official told The New York Times that the virus "has a special pattern which you only see coming from Israel"]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[Flame]]></category>
		<category><![CDATA[G.E. Investigations Blog]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Iran confirms Flame virus attacked computers of high-ranking officials]]></category>
		<category><![CDATA[Iran has confirmed that the Flame virus attacked the computers of high-ranking officials causing a "massive" data loss.]]></category>
		<category><![CDATA[Iran's cyber defence organisation]]></category>
		<category><![CDATA[Kamran Napelian]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[t the virus is potentially more harmful than the Stuxnet worm that attacked Tehran's nuclear programme. It is estimate that the malicious software is 20 times more powerful than other known cyber warf]]></category>
		<category><![CDATA[that could only have been made by a state]]></category>
		<category><![CDATA[the Computer Emergency Response Team Coordination Centre]]></category>
		<category><![CDATA[United Nations agency responsible for regulating the internet warned that the virus is the most powerful espionage tool ever to target member states]]></category>
		<category><![CDATA[VBirus]]></category>

		<guid isPermaLink="false">http://geinvestigations.com/blog/?p=2238</guid>
		<description><![CDATA[Iran confirms Flame virus attacked computers of high-ranking officials &#160; Iran has confirmed that the Flame virus attacked the computers of high-ranking officials causing a &#8220;massive&#8221; data loss. &#160; The Telegraph / UK By Chris Irvine, Damien McElroy 30 May 2012 &#160; &#160; &#160; Figures released by the Kaspersky Lab show that infections by the <a href='http://geinvestigations.com/blog/2012/05/iran-confirms-flame-virus-attacked-computers-of-high-ranking-officials/' class='excerpt-more'>[...]</a>]]></description>
			<content:encoded><![CDATA[<div>
<h1>Iran confirms Flame virus attacked computers of high-ranking officials</h1>
<h2></h2>
<p>&nbsp;</p>
<h2>Iran has confirmed that the Flame virus attacked the computers of high-ranking officials causing a &#8220;massive&#8221; data loss.</h2>
<p>&nbsp;</p>
<p><em><strong>The Telegraph / UK</strong></em></p>
<div>
<p><em><strong>By Chris Irvine, Damien McElroy</strong></em></p>
</div>
<p><em><strong>30 May 2012</strong></em></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<div>
<div id="storyEmbSlide">
<div>
<div>
<div><img src="http://i.telegraph.co.uk/multimedia/archive/02233/flame_2233656b.jpg" alt="Iran confirms Flame virus attacked computers of high-ranking officials" width="620" height="387" /></p>
<div></div>
<div></div>
<div>
<div><em>Figures released by the Kaspersky Lab show that infections by the programme were spread across the Middle East with 189 attacks in Iran, 98 incidents in the West Bank, 32 in Sudan and 30 in Syria Photo: AFP</em></div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div>
<div></div>
</div>
<div>
<p><em><strong>The admission came as a United Nations agency responsible for regulating the internet <a href="http://www.telegraph.co.uk/news/worldnews/middleeast/iran/9298488/Flame-virus-most-powerful-espionage-tool-ever-UN-warns.html">warned that the virus is the most powerful espionage tool ever to target member states</a>.</strong></em></p>
</div>
<div>
<p><em><strong><a href="http://www.telegraph.co.uk/news/worldnews/middleeast/iran">Iran&#8217;s</a> cyber defence organisation, the Computer Emergency Response Team Coordination Centre, in a message posted on its website, warned that the virus is potentially more harmful than the Stuxnet worm that attacked Tehran&#8217;s nuclear programme. It is estimate that the malicious software is 20 times more powerful than other known cyber warfare programmes, that could only have been made by a state.</strong></em></p>
</div>
<div>
<p><em><strong>Kamran Napelian, an Iranian cyber defence official told <a href="http://www.nytimes.com/2012/05/30/world/middleeast/iran-confirms-cyber-attack-by-new-virus-called-flame.html?_r=2&amp;nl=afternoonupdate&amp;emc=edit_au_20120529">The New York Times</a> that the virus &#8220;has a special pattern which you only see coming from Israel&#8221;.</strong></em></p>
</div>
<div>
<p><em><strong>&#8220;The virus copies what you enter on your keyboard, it monitors what you see on your computer screen,&#8221; he told the newspaper.</strong></em></p>
</div>
<div>
<p><em><strong>He said he was not authorised to disclose how much damage Flame had caused, but estimated it had been active for at least six months and had caused a &#8220;massive&#8221; data loss. He added that Iran had developed software to combat Flame, something the international community has yet to do.</strong></em></p>
<p>&nbsp;</p>
</div>
<div id="tmg-related-links">
<div>
<h2><em><strong>Related Articles</strong></em></h2>
</div>
<ul>
<li><em><strong><a href="http://www.telegraph.co.uk/news/worldnews/middleeast/iran/9298488/Flame-virus-most-powerful-espionage-tool-ever-UN-warns.html">&#8216;Flame virus most powerful espionage tool ever&#8217;</a></strong></em>
<p><em><strong>29 May 2012</strong></em></li>
<li><em><strong><a href="http://www.telegraph.co.uk/news/worldnews/middleeast/iran/9297703/Flame-virus-has-infected-189-systems-in-Iran.html">Flame virus &#8216;has infected 189 systems in Iran&#8217;</a></strong></em>
<p><em><strong>29 May 2012</strong></em></li>
<li><em><strong><a href="http://www.telegraph.co.uk/news/worldnews/middleeast/iran/9295938/Flame-worlds-most-complex-computer-virus-exposed.html">Flame: the world&#8217;s most complex computer virus</a></strong></em>
<p><em><strong>28 May 2012</strong></em></li>
</ul>
<p>&nbsp;</p>
</div>
<div>
<p><em><strong>Orla Cox, a security analyst at the security firm Symantec, said that Flame was targeting specific individuals, apparently Iranian related. &#8220;The way it has been developed is unlike anything we&#8217;ve seen before,&#8221; she said. &#8220;It&#8217;s huge. It&#8217;s like using an atomic weapon to crack a nut.&#8221;</strong></em></p>
<p><em><strong>Meanwhile Marco Obiso, cyber security coordinator for the UN&#8217;s Geneva-based International Telecommunications Union yesterday said the warning they issued was the &#8220;most serious warning we have ever put out&#8221;.</strong></em></p>
<p><em><strong>The formal warning tells member nations that the Flame virus is a dangerous espionage tool that could potentially be used to attack critical infrastructure, he said. &#8220;They should be on alert,&#8221; he said adding &#8220;I think it is a much more serious threat than Stuxnet.&#8221;</strong></em></p>
<p><em><strong>Figures released by the Kaspersky Lab, the Russian cyber security software maker that took credit for discovering the infections, show that infections by the programme were spread across the Middle East with 189 attacks in Iran, 98 incidents in the West Bank, 32 in Sudan and 30 in Syria.</strong></em></p>
<p><em><strong>Other countries where the virus was detected include Lebanon, Saudi Arabia and Egypt.</strong></em></p>
<p><em><strong>Unlike the Stuxnet virus, which attacked an Iranian enrichment facility, causing centrifuges to fail, Flame does not disrupt or terminate systems.</strong></em></p>
<p><em><strong>Iran believes the US and Israel are trying to sabotage its programme. It denies the allegation that its programme is weapons related.</strong></em></p>
<p><em><strong>A leading Israeli politician hinted at the country&#8217;s involvement in the virus.</strong></em></p>
<p><em><strong>&#8220;Whoever sees the Iranian threat as a significant threat is likely to take various steps, including these, to hobble it,&#8221; Vice Premier Moshe Yaalon told Army Radio. &#8220;Israel is blessed with high technology, and we boast tools that open all sorts of opportunities for us.&#8221;</strong></em></p>
<p>&nbsp;</p>
<p>Direct Link:  <a title="Article Link" href="http://www.telegraph.co.uk/news/worldnews/middleeast/iran/9298935/Iran-confirms-Flame-virus-attacked-computers-of-high-ranking-officials.html">http://www.telegraph.co.uk/news/worldnews/middleeast/iran/9298935/Iran-confirms-Flame-virus-attacked-computers-of-high-ranking-officials.html</a></p>
</div>
]]></content:encoded>
			<wfw:commentRss>http://geinvestigations.com/blog/2012/05/iran-confirms-flame-virus-attacked-computers-of-high-ranking-officials/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://geinvestigations.com/blog/2012/05/iran-confirms-flame-virus-attacked-computers-of-high-ranking-officials/</feedburner:origLink></item>
		<item>
		<title>Israeli Institute for National Security Studies compromised, serving Poison Ivy DIY malware</title>
		<link>http://feedproxy.google.com/~r/geinvestigations/~3/L32i73ksJK8/</link>
		<comments>http://geinvestigations.com/blog/2012/05/israeli-institute-for-national-security-studies-compromised-serving-poison-ivy-diy-malware/#comments</comments>
		<pubDate>Wed, 30 May 2012 06:22:38 +0000</pubDate>
		<dc:creator>geadmin</dc:creator>
				<category><![CDATA[Articles of Interest]]></category>
		<category><![CDATA[Crimes & Criminal Activity (Organized Crime, Narcotics, Predators, Cyber Crime, Cyber Stalking, UnSolved)]]></category>
		<category><![CDATA[Firearms, Weapons & Personal Safety]]></category>
		<category><![CDATA[National security, Terrorism, Cyber Terrorism & Related Crimes]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Technology & Digital Security]]></category>
		<category><![CDATA[Detected by 29 out of 42 antivirus vendors as Backdoor.Win32.Poison.dizt]]></category>
		<category><![CDATA[G.E. Investigations Blog]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[Israeli Institute for National Security Studies compromised]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[serving Poison Ivy DIY malware]]></category>
		<category><![CDATA[the Israeli Institute for National Security Studies (INSS)]]></category>
		<category><![CDATA[ultimately serving the client-side exploit from the following IP - 194.183.224.73]]></category>
		<category><![CDATA[users are exposed to malicious iFrame redirects]]></category>
		<category><![CDATA[virus]]></category>

		<guid isPermaLink="false">http://geinvestigations.com/blog/?p=2235</guid>
		<description><![CDATA[Israeli Institute for National Security Studies compromised, serving Poison Ivy DIY malware &#160; ZDNet By Dancho Danchev May 5, 2012 &#160; &#160; &#160; Summary: The web site of the Israeli Institute for National Security Studies (INSS) has been compromised, and is currently serving client-side exploits and malware to its visitors. &#160; &#160; &#160; &#160; According <a href='http://geinvestigations.com/blog/2012/05/israeli-institute-for-national-security-studies-compromised-serving-poison-ivy-diy-malware/' class='excerpt-more'>[...]</a>]]></description>
			<content:encoded><![CDATA[<h1>Israeli Institute for National Security Studies compromised, serving Poison Ivy DIY malware</h1>
<p>&nbsp;</p>
<p><strong><em>ZDNet</em></strong></p>
<p><strong><em>By Dancho Danchev</em></strong></p>
<p><strong><em>May 5, 2012</em></strong></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><img class="alignnone" title="INSS Logo" src="http://bp2.blogger.com/_b__RVnUytNc/SGJOJ4cTNwI/AAAAAAAAAck/1nE1lQbPuBQ/S270/logo1.gif" alt="" width="205" height="127" /></p>
<p>&nbsp;</p>
<p><strong><em><br />
</em></strong></p>
<p><strong><em>Summary: The web site of the Israeli Institute for National Security Studies (INSS) has been compromised, and is currently serving client-side exploits and malware to its visitors.</em></strong></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<div>
<article><strong><em><a href="http://i.zdnet.com/blogs/inss_exploits_malware.png"><img src="http://i.zdnet.com/blogs/inss_exploits_malware.png" alt="" width="306" height="214" /></a></em></strong></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><strong><em>According to <a href="http://community.websense.com/blogs/securitylabs/archive/2012/05/02/the-israeli-institute-for-national-security-studies-lead-to-a-posionivy-infection-flow.aspx">security researchers from Websense</a>,  the web site of the Israeli Institute for National Security Studies (INSS) has been compromised, and is currently serving client-side exploits and malware to its visitors.</em></strong></p>
<p><strong><em>Upon visiting its web site, users are exposed to malicious iFrame redirects, ultimately serving the client-side exploit from the following IP &#8211; 194.183.224.73.</em></strong></p>
<p><strong><em>The campaign ultimately exploits the well known Java vulnerability <a href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-0507">CVE-2012-0507</a>, in an attempt to serve a copy of the Poison Ivy RAT (remote access tool).</em></strong></p>
<p>&nbsp;</p>
<p><strong><em>Detection rate:</em></strong></p>
<p><strong><em>svchost.exe</em></strong></p>
<p><strong><em><a href="https://www.virustotal.com/file/8cf6a52c313cf10e8489de95ca36b57d3a89158ee0820908b94c4605917be1ff/analysis/1336069800/">MD5: 52aa791a524b61b129344f10b4712f52</a></em></strong></p>
<p><strong><em>Detected by 29 out of 42 antivirus vendors as Backdoor.Win32.Poison.dizt.</em></strong></p>
<p><strong><em>Upon execution, the sample connects to a Dynamic DNS command and control address at: ids.ns01.us</em></strong></p>
<p><strong><em>Websense has notified the affected web site, but so far hasn’t heard back from its web master. According to the company, the attack appears to be isolated incident, and not part of a massive client-side exploits serving campaign currently circulating in the wild.</em></strong></p>
<p>&nbsp;</p>
<p>Direct Link:  <a title="Article Link" href="http://www.zdnet.com/blog/security/israeli-institute-for-national-security-studies-compromised-serving-poison-ivy-diy-malware/11870">http://www.zdnet.com/blog/security/israeli-institute-for-national-security-studies-compromised-serving-poison-ivy-diy-malware/11870</a></p>
</article>
</div>
]]></content:encoded>
			<wfw:commentRss>http://geinvestigations.com/blog/2012/05/israeli-institute-for-national-security-studies-compromised-serving-poison-ivy-diy-malware/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://geinvestigations.com/blog/2012/05/israeli-institute-for-national-security-studies-compromised-serving-poison-ivy-diy-malware/</feedburner:origLink></item>
		<item>
		<title>BEWARE: Facebook account cancellation is malware, not Adobe Flash</title>
		<link>http://feedproxy.google.com/~r/geinvestigations/~3/6HXO8GePdCg/</link>
		<comments>http://geinvestigations.com/blog/2012/05/beware-facebook-account-cancellation-is-malware-not-adobe-flash/#comments</comments>
		<pubDate>Wed, 30 May 2012 06:10:32 +0000</pubDate>
		<dc:creator>geadmin</dc:creator>
				<category><![CDATA[Articles of Interest]]></category>
		<category><![CDATA[Crimes & Criminal Activity (Organized Crime, Narcotics, Predators, Cyber Crime, Cyber Stalking, UnSolved)]]></category>
		<category><![CDATA[Firearms, Weapons & Personal Safety]]></category>
		<category><![CDATA[National security, Terrorism, Cyber Terrorism & Related Crimes]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Technology & Digital Security]]></category>
		<category><![CDATA[allowing remote hackers to spy on your activities and take control of your computer]]></category>
		<category><![CDATA[and chances are someone is looking to install malware on your computer]]></category>
		<category><![CDATA[Anti-Virus]]></category>
		<category><![CDATA[asked to confirm or deny a Facebook account cancellation request]]></category>
		<category><![CDATA[BEWARE: Facebook account cancellation is malware]]></category>
		<category><![CDATA[Cyber criminals are pushing malware to those who are looking to get rid of their Facebook account]]></category>
		<category><![CDATA[Cyber criminals know people value their Facebook accounts]]></category>
		<category><![CDATA[delete it. The message in question may contain malware or may link to malware]]></category>
		<category><![CDATA[ever receive an e-mail asking to confirm or deny that you wish to cancel your account]]></category>
		<category><![CDATA[G.E. Investigations Blog]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[If you do allow the applet to run]]></category>
		<category><![CDATA[ignore it. Facebook will never ask you this]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[not Adobe Flash]]></category>
		<category><![CDATA[such as Mal/SpyEye-B]]></category>
		<category><![CDATA[you will see a message telling you that Adobe Flash must be updated. This is of course nonsense. Instead of an Adobe Flash update]]></category>
		<category><![CDATA[you’ll get a backdoor Trojan installed]]></category>

		<guid isPermaLink="false">http://geinvestigations.com/blog/?p=2231</guid>
		<description><![CDATA[Facebook account cancellation is malware, not Adobe Flash &#160; &#160; ZDNET By Emil Protalinski May 21, 2012 &#160; &#160; &#160; Summary: If you’re asked to confirm or deny a Facebook account cancellation request, ignore it. Facebook will never ask you this, and chances are someone is looking to install malware on your computer. &#160; &#160; <a href='http://geinvestigations.com/blog/2012/05/beware-facebook-account-cancellation-is-malware-not-adobe-flash/' class='excerpt-more'>[...]</a>]]></description>
			<content:encoded><![CDATA[<h1>Facebook account cancellation is malware, not Adobe Flash</h1>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><em><strong>ZDNET</strong></em></p>
<p><em><strong>By Emil Protalinski</strong></em></p>
<p><em><strong> May 21, 2012</strong></em></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><img class="alignnone" title="Facebook" src="http://www.fondospantalla10.com/wp-content/uploads/2010/04/wallpapers-facebook-1920-1080.jpg" alt="" width="1920" height="1080" /></p>
<p>&nbsp;</p>
<p><em><strong><br />
</strong></em></p>
<p><em><strong>Summary: If you’re asked to confirm or deny a Facebook account cancellation request, ignore it. Facebook will never ask you this, and chances are someone is looking to install malware on your computer.</strong></em></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<div>
<article><em><strong><a href="http://www.zdnet.com/blog/security/facebook-account-cancellation-is-malware-not-adobe-flash/12253"><img title="Facebook account cancellation is malware, not Adobe Flash" src="http://i.zdnet.com/blogs/facebook_account_cancellation_malware.jpg" alt="" width="475" height="291" /></a></strong></em></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><em><strong>Cyber criminals are pushing malware to those who are looking to get rid of their Facebook accounts. If you ever receive an e-mail asking to confirm or deny that you wish to cancel your account, delete it. The message in question may contain malware or may link to malware, such as <a href="http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/Mal%7ESpyeye-B.aspx">Mal/SpyEye-B</a>.</strong></em></p>
<p><em><strong>Facebook will never ask you to confirm or deny an account cancellation request. The company gives you the option to deactivate your account at <a href="https://www.facebook.com/deactivate.php">facebook.com/deactivate.php</a>, after which you can eventually delete it. There is no such thing as cancelling a Facebook account.</strong></em></p>
<p>&nbsp;</p>
<p><em><strong>Above, you can see an example of such an e-mail, the body of which follows below, courtesy of <a href="http://nakedsecurity.sophos.com/2012/05/21/facebook-account-cancellation-malware-adobe-flash-update/">Sophos</a>:</strong></em></p>
<blockquote><p><em><strong>Hi [e-mail address]</strong></em></p>
<p><em><strong>We are sending you this email to inform you that we have received an account cancellation request from you. Please follow the link below to confirm or cancel this request</strong></em></p>
<p><em><strong>Thanks,</strong></em><br />
<em><strong> The Facebook Team</strong></em></p>
<p><em><strong>To confirm or cancel this request, follow the link below:</strong></em><br />
<em><strong> click here</strong></em></p>
<p>&nbsp;</p></blockquote>
<p><em><strong>The “click here” link takes you to a third-party Facebook app, but that doesn’t mean it’s from Facebook. If you go to the app’s page, you’re prompted to install an unknown Java applet on your computer. If you say no, it keeps pestering you to allow it.</strong></em></p>
<p><em><strong>Cyber criminals know people value their Facebook accounts, and many would be upset to lose them. As such, they may blindly agree to whatever the app tells them to do, in order to “cancel” the account cancellation request.</strong></em></p>
<p><em><strong>If you do allow the applet to run, you will see a message telling you that Adobe Flash must be updated. This is of course nonsense. Instead of an Adobe Flash update, you’ll get a backdoor Trojan installed, allowing remote hackers to spy on your activities and take control of your computer.</strong></em></p>
<p>&nbsp;</p>
<p><em><strong>See also:</strong></em></p>
<ul>
<li><em><strong><a href="http://www.zdnet.com/blog/security/malware-tricks-facebook-users-into-exposing-credit-cards/11297">Malware tricks Facebook users into exposing credit cards</a></strong></em></li>
<li><em><strong><a href="http://www.zdnet.com/blog/facebook/how-to-protect-your-facebook-account-from-stalkers/11330">How to protect your Facebook account from stalkers</a></strong></em></li>
<li><em><strong><a href="http://www.zdnet.com/blog/facebook/facebook-virus-or-account-hacked-heres-how-to-fix-it/5339">Facebook virus or account hacked? Here’s how to fix it.</a></strong></em></li>
<li><em><strong><a href="http://www.zdnet.com/blog/facebook/facebook-teaches-users-how-to-remove-adware-video/10894">Facebook teaches users how to remove adware (video)</a></strong></em></li>
<li><em><strong><a href="http://www.zdnet.com/blog/facebook/facebook-admits-it-needs-to-fight-scams-more-efficiently/8980">Facebook admits it needs to fight scams more efficiently</a></strong></em></li>
<li><em><strong><a href="http://www.zdnet.com/blog/facebook/facebook-immune-system-checks-25-billion-actions-every-day/4895">Facebook Immune System checks 25 billion actions every day</a></strong></em></li>
</ul>
<p>&nbsp;</p>
<p>Direct Link:  <a title="Article Link" href="http://www.zdnet.com/blog/security/facebook-account-cancellation-is-malware-not-adobe-flash/12253">http://www.zdnet.com/blog/security/facebook-account-cancellation-is-malware-not-adobe-flash/12253</a></p>
</article>
</div>
]]></content:encoded>
			<wfw:commentRss>http://geinvestigations.com/blog/2012/05/beware-facebook-account-cancellation-is-malware-not-adobe-flash/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://geinvestigations.com/blog/2012/05/beware-facebook-account-cancellation-is-malware-not-adobe-flash/</feedburner:origLink></item>
		<item>
		<title>New Twist to Anti-Virus Scam: Scam Leaves Computer Users Vulnerable To Hackers</title>
		<link>http://feedproxy.google.com/~r/geinvestigations/~3/7LsCjoZcCGE/</link>
		<comments>http://geinvestigations.com/blog/2012/05/new-twist-to-anti-virus-scam-scam-leaves-computer-users-vulnerable-to-hackers/#comments</comments>
		<pubDate>Wed, 30 May 2012 05:59:00 +0000</pubDate>
		<dc:creator>geadmin</dc:creator>
				<category><![CDATA[Articles of Interest]]></category>
		<category><![CDATA[Crimes & Criminal Activity (Organized Crime, Narcotics, Predators, Cyber Crime, Cyber Stalking, UnSolved)]]></category>
		<category><![CDATA[Firearms, Weapons & Personal Safety]]></category>
		<category><![CDATA[National security, Terrorism, Cyber Terrorism & Related Crimes]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Technology & Digital Security]]></category>
		<category><![CDATA[a fictional Microsoft help desk called "Microsoft Certified]]></category>
		<category><![CDATA[anti-virus package the scammers are trying to sell is Microsoft freeware available for no payment online]]></category>
		<category><![CDATA[download a file. Once downloaded]]></category>
		<category><![CDATA[G.E. Investigations Blog]]></category>
		<category><![CDATA[it allows the hacker total remote access to the computer]]></category>
		<category><![CDATA[Microsoft Certified does not exist]]></category>
		<category><![CDATA[Scam Leaves Computer Users Vulnerable To Hackers]]></category>
		<category><![CDATA[scammers are so invasive]]></category>
		<category><![CDATA[they can access your computer remotely and even shut it down from thousands of miles away]]></category>

		<guid isPermaLink="false">http://geinvestigations.com/blog/?p=2227</guid>
		<description><![CDATA[Scam Leaves Computer Users Vulnerable To Hackers Local News 8 (Idaho) By Caleb James UPDATED: May 29, 2012 IDAHO FALLS, Idaho &#8212; A new scam is reaching eastern Idahoans through the Web. This time the scammers are so invasive, they can access your computer remotely and even shut it down from thousands of miles away. <a href='http://geinvestigations.com/blog/2012/05/new-twist-to-anti-virus-scam-scam-leaves-computer-users-vulnerable-to-hackers/' class='excerpt-more'>[...]</a>]]></description>
			<content:encoded><![CDATA[<h1>Scam Leaves Computer Users Vulnerable To Hackers</h1>
<div></div>
<div><em><strong>Local News 8 (Idaho)</strong></em></div>
<div><em><strong>By Caleb James</strong></em></div>
<p><em><strong>UPDATED: May 29, 2012</strong></em></p>
<div></div>
<div></div>
<div><img class="alignnone" title="Microsoft Logo" src="http://www.blog.jbi.in/wp-content/uploads/2011/01/microsoft_certified.jpg" alt="" width="640" height="273" /></div>
<div></div>
<div></div>
<div></div>
<p><em><strong>IDAHO FALLS, Idaho &#8212; </strong></em></p>
<p><em><strong>A new scam is reaching eastern Idahoans through the Web. This time the scammers are so invasive, they can access your computer remotely and even shut it down from thousands of miles away.</strong></em></p>
<p><em><strong>Computer hackers target owners of Windows-based, non-Apple computers. A representative will call a computer user claiming to be from a fictional Microsoft help desk called &#8220;Microsoft Certified.</strong></em></p>
<p>&nbsp;</p>
<p><em><strong>&#8220;Microsoft Certified does not exist.&#8221;</strong></em></p>
<p>&nbsp;</p>
<p><em><strong>Basically from the time these guys call up and say hello, everything after that is a lie,&#8221; said Idaho Falls computer consultant Monte McCall.</strong></em></p>
<p><em><strong>McCall said he&#8217;s received several phone calls from clients complaining about the scam. He said the representative on the phone will ask the target of the scam to download a file. Once downloaded, it allows the hacker total remote access to the computer.</strong></em></p>
<p><em><strong>Then the representative walks the scam target through steps identifying a series of errors on the machine. McCall said all of the so-called errors are common diagnostic messages the hackers use to convince computer users they have a virus.&#8221;</strong></em></p>
<p><em><strong>Your computer&#8217;s gotten in touch with us, and it&#8217;s been sending us messages that you&#8217;re infected with a virus,&#8221; said McCall, as he gave an example of what the hackers will say on a call.</strong></em></p>
<p><em><strong>The fake customer service reps have been calling many eastern Idaho numbers lately. They direct a computer user to open a program called Error Log that lists internal errors on Microsoft computers.&#8221;</strong></em></p>
<p><em><strong>Those error messages &#8212; even a brand new machine gets those,&#8221; said McCall. &#8220;They&#8217;re nothing to worry about, (but) they use those errors to say, &#8216;Oh these are viruses.&#8217;&#8221;</strong></em></p>
<p><em><strong>Then comes the sales pitch.&#8221;Their final goal is to turn you over to a senior technician they call it, and then he comes in and takes over and sells you a software package of anti-virus and everything for $250 bucks a year,&#8221; said McCall.</strong></em></p>
<p><em><strong>McCall said the scammers get vicious if you get suspicious.&#8221;After I got to the senior tech I told them, &#8216;I know what you guys are saying is all lies.&#8217; He immediately went into my system, the virtual machine, and tried to disable it from starting up again, by deleting certain files it needs to boot up,&#8221; said McCall.</strong></em></p>
<p><em><strong>McCall said the anti-virus package the scammers are trying to sell is Microsoft freeware available for no payment online.</strong></em></p>
<p><em><strong>The Better Business Bureau knows about the scam. They request anyone who is contacted by the scammers to report it by calling 342-4649.</strong></em></p>
<p>&nbsp;</p>
<p>Direct Link: <a title="Article Link" href="http://www.localnews8.com/scams/31123352/detail.html">http://www.localnews8.com/scams/31123352/detail.html</a></p>
]]></content:encoded>
			<wfw:commentRss>http://geinvestigations.com/blog/2012/05/new-twist-to-anti-virus-scam-scam-leaves-computer-users-vulnerable-to-hackers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://geinvestigations.com/blog/2012/05/new-twist-to-anti-virus-scam-scam-leaves-computer-users-vulnerable-to-hackers/</feedburner:origLink></item>
		<item>
		<title>Romanian authorities dismantle hacker group targeting government websites</title>
		<link>http://feedproxy.google.com/~r/geinvestigations/~3/EUdNEmg17UU/</link>
		<comments>http://geinvestigations.com/blog/2012/05/romanian-authorities-dismantle-hacker-group-targeting-government-websites/#comments</comments>
		<pubDate>Wed, 30 May 2012 05:39:36 +0000</pubDate>
		<dc:creator>geadmin</dc:creator>
				<category><![CDATA[Articles of Interest]]></category>
		<category><![CDATA[Crimes & Criminal Activity (Organized Crime, Narcotics, Predators, Cyber Crime, Cyber Stalking, UnSolved)]]></category>
		<category><![CDATA[Firearms, Weapons & Personal Safety]]></category>
		<category><![CDATA[National security, Terrorism, Cyber Terrorism & Related Crimes]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Technology & Digital Security]]></category>
		<category><![CDATA[24-year-old man named Gabriel Baleasa from the city of Piatra Neamt]]></category>
		<category><![CDATA[anonsboat]]></category>
		<category><![CDATA[anonsweb and cartman]]></category>
		<category><![CDATA[copying confidential data stored on them and publishing the captured information online]]></category>
		<category><![CDATA[cyber criminal group]]></category>
		<category><![CDATA[DDoS]]></category>
		<category><![CDATA[dismantled a criminal group consisting of 14 members]]></category>
		<category><![CDATA[hack]]></category>
		<category><![CDATA[hacked]]></category>
		<category><![CDATA[Hackers]]></category>
		<category><![CDATA[Hacking]]></category>
		<category><![CDATA[including one using the lulzcart Twitter handle]]></category>
		<category><![CDATA[including the Bucharest City Hall]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[online aliases lulzcart]]></category>
		<category><![CDATA[Prosecutors from the Romanian Directorate for Investigating Organized Crime and Terrorism (DIICOT)]]></category>
		<category><![CDATA[Romanian authorities dismantle hacker group targeting government websites]]></category>
		<category><![CDATA[Romanian public institutions]]></category>
		<category><![CDATA[several hackers who claimed affiliation with Anonymous]]></category>
		<category><![CDATA[The Romanian Intelligence Service (SRI)]]></category>
		<category><![CDATA[the Romanian National Institute of Research and Development for Optoelectronics and the Romanian National Institute of Physics and Nuclear Engineering]]></category>
		<category><![CDATA[the Romanian Social Services and Child Protection Agency]]></category>
		<category><![CDATA[The twelve suspects are believed to be associated with the Anonymous hacktivist collective]]></category>
		<category><![CDATA[trojan]]></category>
		<category><![CDATA[Twelve individuals were detained by Romanian authorities]]></category>
		<category><![CDATA[who engaged in cyber criminal activities that included accessing computer systems without authorization]]></category>

		<guid isPermaLink="false">http://geinvestigations.com/blog/?p=2224</guid>
		<description><![CDATA[Romanian authorities dismantle hacker group targeting government websites Romania&#8217;s organized crime prosecutors detained 12 individuals suspected of hacking into official websites Computer World By Lucian Constantin May 29, 2012 IDG News Service &#8211; Twelve individuals were detained by Romanian authorities on Tuesday, suspected of being members of a cyber criminal group that hacked into the <a href='http://geinvestigations.com/blog/2012/05/romanian-authorities-dismantle-hacker-group-targeting-government-websites/' class='excerpt-more'>[...]</a>]]></description>
			<content:encoded><![CDATA[<h1>Romanian authorities dismantle hacker group targeting government websites</h1>
<h2></h2>
<h2>Romania&#8217;s organized crime prosecutors detained 12 individuals suspected of hacking into official websites</h2>
<div id="byline"></div>
<div></div>
<div><em><strong>Computer World</strong></em></div>
<div><em><strong>By Lucian Constantin</strong></em></div>
<div id="date"><em><strong>May 29, 2012</strong></em></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div><img class="alignnone" title="SRI" src="http://upload.wikimedia.org/wikipedia/commons/thumb/e/e9/Sigla_SRI.svg/432px-Sigla_SRI.svg.png" alt="" width="432" height="432" /></div>
<div></div>
<div><em><strong><br />
</strong></em></div>
<p id="first_paragraph"><em><strong>IDG News Service &#8211; </strong></em></p>
<p><em><strong>Twelve individuals were detained by Romanian authorities on Tuesday, suspected of being members of a cyber criminal group that hacked into the websites of various Romanian and foreign public institutions and government agencies.</strong></em></p>
<p><em><strong>Prosecutors from the Romanian Directorate for Investigating Organized Crime and Terrorism (DIICOT) have dismantled a criminal group consisting of 14 members, who engaged in cyber criminal activities that included accessing computer systems without authorization, copying confidential data stored on them and publishing the captured information online, DIICOT said on Tuesday.</strong></em></p>
<p><em><strong>Supported by the Romanian Police forces and the Romanian Gendarmerie, the DIICOT prosecutors executed 12 search warrants at residential addresses in 10 different cities and detained 12 suspects. The detained individuals will be taken to DIICOT&#8217;s central office in Bucharest for questioning.</strong></em></p>
<p><em><strong>The twelve suspects are believed to be associated with the Anonymous hacktivist collective, local media reports said. However, DIICOT declined to confirm this.</strong></em></p>
<p><em><strong>DIICOT believes that the leader of the criminal group is a 24-year-old man named Gabriel Baleasa from the city of Piatra Neamt, who used the online aliases lulzcart, anonsboat, anonsweb and cartman.</strong></em></p>
<p><em><strong>During the past few months, several hackers who claimed affiliation with Anonymous, including one using the lulzcart <a title="Computerworld coverage of Twitter" href="http://www.computerworld.com/s/article/9157658/Twitter_update_News_blogs_opinions_and_more_about_the_microblogging_service">Twitter</a> handle &#8212; which is now disabled &#8212; have taken credit for hacking into the websites of several Romanian public institutions, including the Bucharest City Hall, the Romanian Social Services and Child Protection Agency, the Romanian National Institute of Research and Development for Optoelectronics and the Romanian National Institute of Physics and Nuclear Engineering.</strong></em></p>
<p><em><strong>Baleasa is believed to have created the hacker group together with two men named Fabian Gabor and Mihai Emil Picos, with other members joining at a later time, DIICOT said.</strong></em></p>
<p><em><strong>The hackers allegedly broke into 29 websites by using publicly available SQL injection tools like Havij and SQL Map. In the majority of cases, they defaced the compromised websites by inserting images and messages that promoted their group, DIICOT said.</strong></em></p>
<p><em><strong>The hackers also copied confidential information found on the servers hosting those websites and published that information online as proof of their success. Their activities resulted in significant financial losses associated with data recovery and the implementation of new <a title="Computerworld coverage of security" href="http://www.computerworld.com/s/topic/17/Security">security</a> measures, DIICOT said.</strong></em></p>
<p><em><strong>The 12 suspects are being investigated for criminal offenses that include obtaining unauthorized access to a computer system by circumventing security measures with the intention of accessing confidential data, modifying electronic data without authorization and transferring data from a computer system without authorization.</strong></em></p>
<p><em><strong>The Romanian Intelligence Service (SRI) &#8212; the country&#8217;s domestic intelligence service&#8211; has provided the investigation with technical and informational support, DIICOT said.</strong></em></p>
<p>&nbsp;</p>
<p>Direct Link:  <a title="Article Link" href="http://www.computerworld.com/s/article/9227550/Romanian_authorities_dismantle_hacker_group_targeting_government_websites">http://www.computerworld.com/s/article/9227550/Romanian_authorities_dismantle_hacker_group_targeting_government_websites</a></p>
]]></content:encoded>
			<wfw:commentRss>http://geinvestigations.com/blog/2012/05/romanian-authorities-dismantle-hacker-group-targeting-government-websites/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://geinvestigations.com/blog/2012/05/romanian-authorities-dismantle-hacker-group-targeting-government-websites/</feedburner:origLink></item>
		<item>
		<title>Bounty Hunters (wanted on warrants themselves), Arrested After Entering West Tulsa Home</title>
		<link>http://feedproxy.google.com/~r/geinvestigations/~3/rQZDoAuUep4/</link>
		<comments>http://geinvestigations.com/blog/2012/05/bounty-hunters-wanted-on-warrants-themselves-arrested-after-entering-west-tulsa-home/#comments</comments>
		<pubDate>Wed, 23 May 2012 03:09:16 +0000</pubDate>
		<dc:creator>geadmin</dc:creator>
				<category><![CDATA[Articles of Interest]]></category>
		<category><![CDATA[Bail Recovery]]></category>
		<category><![CDATA[Crimes & Criminal Activity (Organized Crime, Narcotics, Predators, Cyber Crime, Cyber Stalking, UnSolved)]]></category>
		<category><![CDATA[Firearms, Weapons & Personal Safety]]></category>
		<category><![CDATA[Investigative]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Technology & Digital Security]]></category>
		<category><![CDATA[WANTED CRIMINALS & POI]]></category>
		<category><![CDATA[" . "I recommend to people — and I always have — don't quit your day job."]]></category>
		<category><![CDATA["It's a tough business]]></category>
		<category><![CDATA[Agents]]></category>
		<category><![CDATA[Arrested After Entering West Tulsa Home]]></category>
		<category><![CDATA[Bail]]></category>
		<category><![CDATA[bail agents]]></category>
		<category><![CDATA[bounty hunter with criminal record raided the wrong home and fatally shot an innocent man]]></category>
		<category><![CDATA[Bounty Hunters]]></category>
		<category><![CDATA[Bounty Hunters (wanted on warrants themselves)]]></category>
		<category><![CDATA[Bounty Hunters Cleaning Up Their Image]]></category>
		<category><![CDATA[carried guns]]></category>
		<category><![CDATA[Criminal activity]]></category>
		<category><![CDATA[dog the bounty hunter]]></category>
		<category><![CDATA[federal agent]]></category>
		<category><![CDATA[felons with guns]]></category>
		<category><![CDATA[G.E. Investigations Blog]]></category>
		<category><![CDATA[lack of training]]></category>
		<category><![CDATA[Lawmen]]></category>
		<category><![CDATA[licened investigator's only]]></category>
		<category><![CDATA[MORONS]]></category>
		<category><![CDATA[Need real training]]></category>
		<category><![CDATA[Only P.I.s Cops and bail bondsman should be allowed]]></category>
		<category><![CDATA[Ronnie Shaw and Cecil Deere]]></category>
		<category><![CDATA[tasers and badges]]></category>
		<category><![CDATA[Taylor vs Taintor]]></category>
		<category><![CDATA[The felon]]></category>
		<category><![CDATA[The law must be respected and adhered to. Bail bond agents should not use or condone the use of recovery agents (bounty hunters) who fail to follow the law or fail to respect the rights of citizens to]]></category>
		<category><![CDATA[warrants out for their arrests]]></category>
		<category><![CDATA[Wild West]]></category>

		<guid isPermaLink="false">http://geinvestigations.com/blog/?p=2221</guid>
		<description><![CDATA[Bounty Hunters Arrested After Entering West Tulsa Home News On 6 By Lori Fullbright May 14, 2012  &#160; TULSA, Oklahoma - Bounty hunters kicked in the door of a woman in her 70s in West Tulsa last week. Once inside, they realized they had the wrong address. &#160; *** News Video Segment &#160; She asked <a href='http://geinvestigations.com/blog/2012/05/bounty-hunters-wanted-on-warrants-themselves-arrested-after-entering-west-tulsa-home/' class='excerpt-more'>[...]</a>]]></description>
			<content:encoded><![CDATA[<div id="WNStoryHeader">
<h3>Bounty Hunters Arrested After Entering West Tulsa Home</h3>
<p><em></em><em></em></p>
<div id="WNStoryByline">
<div></div>
<div></div>
<div><em><strong>News On 6 </strong></em></div>
</div>
<div><em><strong>By Lori Fullbright</strong></em></div>
<div><em><strong>May 14, 2012  </strong></em></div>
<div id="WNDS37"></div>
</div>
<div id="WNStoryRelatedBox">
<div>
<div>
<h6></h6>
<p>&nbsp;</p>
<p><em><strong>TULSA, Oklahoma -</strong></em></p>
<p><em><strong>Bounty hunters kicked in the door of a woman in her 70s in West Tulsa last week. Once inside, they realized they had the wrong address.</strong></em></p>
<p>&nbsp;</p>
<p><em><strong><a href="http://www.newson6.com/story/18391006/bounty-hunters-arrested-after?autoStart=true&amp;topVideoCatNo=default&amp;clipId=7253432">*** News Video Segment</a></strong></em></p>
<p>&nbsp;</p>
</div>
</div>
<div></div>
<div><img class="alignnone" title="She asked the dispatcher if she could put the phone down long enough to get her gun, but was told to stay on the line. Just then, two men kicked in her back door." src="http://kotv.images.worldnow.com/images/18391006_BG1.jpg" alt="" width="650" height="366" /></div>
<div></div>
<div><em>She asked the dispatcher if she could put the phone down long enough to get her gun, but was told to stay on the line. Just then, two men kicked in her back door.</em></div>
<div>
<div>
<h6></h6>
<p>&nbsp;</p>
<p>&nbsp;</p>
</div>
</div>
<div></div>
<div><img class="alignnone" title="Police found the three bounty hunters and realized two of them, Ronnie Shaw and Cecil Deere, had warrants out for their arrests." src="http://kotv.images.worldnow.com/images/18391006_BG2.jpg" alt="" width="650" height="366" /></div>
<div></div>
<div><em>Police found the three bounty hunters and realized two of them, Ronnie Shaw and Cecil Deere, had warrants out for their arrests.</em></div>
</div>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p><em><strong>The elderly woman was terrified and had no idea who the men were. But that wasn&#8217;t the worst of it. She learned something about the two men from police that made her upset.</strong></em></p>
<p><em><strong>Mary was about to take a bath last Wednesday night when someone began banging on her front door.</strong></em></p>
<p><em><strong>&#8220;He said, ‘you better open the door. I told you we were bounty hunters,&#8217;&#8221; Mary said. &#8220;I said, ‘you could tell me you&#8217;re anybody.&#8217;&#8221;</strong></em></p>
<p><em><strong>He kept demanding and threatened to kick in the door. So she called 911. She asked the dispatcher if she could put the phone down long enough to get her gun, but was told to stay on the line.</strong></em></p>
<p><em><strong>Just then, two men kicked in her back door.</strong></em></p>
<p><em><strong>&#8220;I could hear the wood crushing,&#8221; Mary explained. &#8220;It was scary.&#8221;</strong></em></p>
<p><em><strong>The men came in and looked through her house. They demanded to know where Donnie was. But she repeatedly told them she lived alone and didn&#8217;t know a Donnie.</strong></em></p>
<p><em><strong>That&#8217;s when they realized their mistake.</strong></em></p>
<p><em><strong>&#8220;He said, ‘is this 124?&#8217; I said, ‘no, it&#8217;s not 124,&#8221; Mary said. &#8220;&#8216;My letters are on my mailbox in big white letters. You couldn&#8217;t have missed it.&#8217;&#8221;</strong></em></p>
<p><em><strong>The two men left with barely a word, leaving her backdoor still broken with a big footprint on it.</strong></em></p>
<p><em><strong>Police found the three bounty hunters and realized two of them, Ronnie Shaw and Cecil Deere, had warrants out for their arrests. So they were booked into jail.</strong></em></p>
<p><em><strong>All three men got tickets for breaking and entering without permission.</strong></em></p>
<p><em><strong>&#8220;That ain&#8217;t right to be looking for somebody else, kick in someone&#8217;s door in to get that person,&#8221; Mary said. &#8220;And here you&#8217;ve got two warrants out on yourself and your friend with you.&#8221;</strong></em></p>
<p><em><strong>Mary believes bounty hunters should be licensed and bonded. In hindsight, she&#8217;s glad she didn&#8217;t have her gun, because she believes she would&#8217;ve killed them.</strong></em></p>
<p><em><strong>&#8220;I&#8217;m still nervous,&#8221; Mary said. &#8220;I get knots thinking about it. That scared the liver out of me.&#8221;</strong></em></p>
<p><em><strong>The bondsmen who wanted the fugitive said he didn&#8217;t know the three men. He said they just called and offered to pick up the guy for him, which is pretty standard.</strong></em></p>
<p><em><strong>He was shocked to learn they had warrants, and one of the men had served eight years in prison. He believes bounty hunters should be licensed, like bail bondsmen are.</strong></em></p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<div><img title="Mary believes bounty hunters should be licensed and bonded. In hindsight, she's glad she didn't have her gun, because she believes she would've killed them." src="http://kotv.images.worldnow.com/images/18391006_BG3.jpg" alt="" width="650" height="366" /></div>
<div></div>
<div><em>Mary believes bounty hunters should be licensed and bonded. In hindsight, she&#8217;s glad she didn&#8217;t have her gun, because she believes she would&#8217;ve killed them.</em></div>
<div></div>
<div></div>
<div></div>
<div></div>
<p><em><strong>An Oklahoma senator proposed a law last year and this year, but both bills died.</strong></em></p>
<p>&nbsp;</p>
<p>Direct Link:   <a title="Article Link" href="http://www.newson6.com/story/18391006/bounty-hunters-arrested-after">http://www.newson6.com/story/18391006/bounty-hunters-arrested-after</a></p>
]]></content:encoded>
			<wfw:commentRss>http://geinvestigations.com/blog/2012/05/bounty-hunters-wanted-on-warrants-themselves-arrested-after-entering-west-tulsa-home/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://geinvestigations.com/blog/2012/05/bounty-hunters-wanted-on-warrants-themselves-arrested-after-entering-west-tulsa-home/</feedburner:origLink></item>
		<item>
		<title>Bounty Hunters Cleaning Up Their Image</title>
		<link>http://feedproxy.google.com/~r/geinvestigations/~3/ejgPSOKTxfE/</link>
		<comments>http://geinvestigations.com/blog/2012/05/bounty-hunters-cleaning-up-their-image/#comments</comments>
		<pubDate>Wed, 23 May 2012 02:55:24 +0000</pubDate>
		<dc:creator>geadmin</dc:creator>
				<category><![CDATA[Articles of Interest]]></category>
		<category><![CDATA[Bail Recovery]]></category>
		<category><![CDATA[Crimes & Criminal Activity (Organized Crime, Narcotics, Predators, Cyber Crime, Cyber Stalking, UnSolved)]]></category>
		<category><![CDATA[Firearms, Weapons & Personal Safety]]></category>
		<category><![CDATA[Investigative]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Technology & Digital Security]]></category>
		<category><![CDATA[" . "I recommend to people — and I always have — don't quit your day job."]]></category>
		<category><![CDATA["It's a tough business]]></category>
		<category><![CDATA[Agents]]></category>
		<category><![CDATA[Bail]]></category>
		<category><![CDATA[bail agents]]></category>
		<category><![CDATA[bounty hunter with criminal record raided the wrong home and fatally shot an innocent man]]></category>
		<category><![CDATA[Bounty Hunters]]></category>
		<category><![CDATA[Bounty Hunters Cleaning Up Their Image]]></category>
		<category><![CDATA[carried guns]]></category>
		<category><![CDATA[Criminal activity]]></category>
		<category><![CDATA[dog the bounty hunter]]></category>
		<category><![CDATA[federal agent]]></category>
		<category><![CDATA[felons with guns]]></category>
		<category><![CDATA[G.E. Investigations Blog]]></category>
		<category><![CDATA[killing of a Virginia man]]></category>
		<category><![CDATA[lack of training]]></category>
		<category><![CDATA[Lawmen]]></category>
		<category><![CDATA[licened investigator's only]]></category>
		<category><![CDATA[MORONS]]></category>
		<category><![CDATA[Need real training]]></category>
		<category><![CDATA[not Black Suspect]]></category>
		<category><![CDATA[Only P.I.s Cops and bail bondsman should be allowed]]></category>
		<category><![CDATA[Six men dressed as police officers]]></category>
		<category><![CDATA[tasers and badges]]></category>
		<category><![CDATA[Taylor vs Taintor]]></category>
		<category><![CDATA[The felon]]></category>
		<category><![CDATA[The law must be respected and adhered to. Bail bond agents should not use or condone the use of recovery agents (bounty hunters) who fail to follow the law or fail to respect the rights of citizens to]]></category>
		<category><![CDATA[Wild West]]></category>

		<guid isPermaLink="false">http://geinvestigations.com/blog/?p=2217</guid>
		<description><![CDATA[&#160; Bounty Hunters Cleaning Up Their Image &#160; &#160; &#160; By Oliver Libaw Jan. 30 Bounty Hunter Billy Wells admits his profession has an image problem. &#8220;There&#8217;s a picture that pops up your mind when you say &#8216;bounty hunter,&#8217;&#8221; he said. &#8220;You think of a thug.&#8221; It&#8217;s an image that is not helped by regular <a href='http://geinvestigations.com/blog/2012/05/bounty-hunters-cleaning-up-their-image/' class='excerpt-more'>[...]</a>]]></description>
			<content:encoded><![CDATA[<p>&nbsp;</p>
<h1>Bounty Hunters Cleaning Up Their Image</h1>
<p>&nbsp;</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<div><img src="http://a.abcnews.com/images/Site/byline_abcnews.gif" alt="" border="0" /></p>
<div id="share-left">
<div>
<div></div>
</div>
</div>
</div>
<div>
<div>
<div><em><strong>By Oliver Libaw</strong></em></div>
<div><em><strong>Jan. 30</strong></em></div>
</div>
<div></div>
</div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div><img class="alignnone" title="Bounty Hunter Gear" src="http://www.ehow.com/images/a04/6a/64/certification-carry-bounty-hunter-equipment-800X800.jpg" alt="" width="720" height="480" /></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div></div>
<div id="sponsoredByAd"></div>
<p><em><strong>Bounty Hunter Billy Wells admits his profession has an image problem.</strong></em></p>
<p><em><strong>&#8220;There&#8217;s a picture that pops up your mind when you say &#8216;bounty hunter,&#8217;&#8221; he said. &#8220;You think of a thug.&#8221;</strong></em></p>
<p><em><strong>It&#8217;s an image that is not helped by regular — if infrequent — horror stories of bounty hunters&#8217; apparent abuses and mistakes, such as the killing of a Virginia man last month. Police say a bounty hunter with criminal record raided the wrong home and fatally shot an innocent man.</strong></em></p>
<p><em><strong>And it&#8217;s more than just an image problem for those who make their living as skip tracers. Pressure from lawmakers is slowly reining in the storied profession, eroding unparalleled freedoms born in the days of the Wild West.</strong></em></p>
<p>&nbsp;</p>
<p><em><strong>Reality vs. ‘The Wild Bunch’</strong></em></p>
<p><em><strong>Bounty hunters are hired by bail bond agents to track down and arrest clients who have failed to appear in court as required. They haul in an estimated 30,000 bail jumpers every year, earning a typical fee of about 10 percent of the bail amount.</strong></em></p>
<p><em><strong>The thousands of agents working in business range from private investigators and former police officers, to people like Crystal McElroy, a 26-year-old mother of three who works as a bounty hunter in Santa Fe, N.M.</strong></em></p>
<p><em><strong>The profession has long been a fixture of the American imagination, appearing in movies such as The Wild Bunch, Midnight Run, and even Star Wars. But the reality is usually not very glamorous, those in the industry say.</strong></em></p>
<p><em><strong>Bounty hunters spend days tracking down and staking out their prey. Professionals admit chases and high drama are rare, and many seasoned agents say they often just call the police when they&#8217;ve tracked down a particularly dangerous fugitive.</strong></em></p>
<p><em><strong>Only a few hundred agents around the country are able to support themselves as full-time bounty hunters, experts say.</strong></em></p>
<p><em><strong>&#8220;It&#8217;s a tough business,&#8221; said Wells. &#8220;I recommend to people — and I always have — don&#8217;t quit your day job.&#8221;</strong></em></p>
<p>&nbsp;</p>
<p><em><strong>The ‘Rambo Approach’</strong></em></p>
<p><em><strong>Most bounty hunters are responsible professionals, but traditionally, virtually anyone could enter the field, and under a Supreme Court decision in 1872, they have enjoyed police-like powers.</strong></em></p>
<p><em><strong>It&#8217;s the freedom and the racy image that have attracted some of the wrong sorts of people.</strong></em></p>
<p><em><strong>&#8220;There&#8217;s a lot of people who take the &#8216;Rambo&#8217; approach,&#8221; admits Dennis Bartlett, the executive director of the American Bail Coalition.</strong></em></p>
<p><em><strong>Something like that apparently is what happened in Virginia.</strong></em></p>
<p><em><strong>A bounty hunter named James Dickerson allegedly went to the wrong home on Christmas Eve while pursuing a fugitive. Dickerson and another man broke down the door, dragged a man outside and killed him, police said.</strong></em></p>
<p><em><strong>Dickerson had a criminal record; his alleged victim, Roberto Martinez, did not.</strong></em></p>
<p><em><strong>In Virginia, as has been the case in many states, virtually anyone can work as a bounty hunter, without obtaining a license or undergoing a background check.</strong></em></p>
<p><em><strong>Horror stories like the Martinez case are not new.</strong></em></p>
<p><em><strong>Earlier this year, two bail bondsmen in Fairfax, Va., were arrested after allegedly taking money from a couple they had recaptured after posting bond for them, police there reported.</strong></em></p>
<p><em><strong>In Houston last month, Thang Quoc Le pleaded not guilty to hiring a bounty hunter to kill a man who had been seeing his wife.</strong></em></p>
<p><em><strong>Last June, a 23-year-old man died after struggling with three bounty hunters in Kansas City. One of the men was charged with involuntary manslaughter and pleaded not guilty.</strong></em></p>
<p>&nbsp;</p>
<p><em><strong>Breaking Down the Door to Your Home — Legally</strong></em></p>
<p><em><strong>The extensive power granted to bounty hunters stems from an 1872 U.S. Supreme Court decision, Taylor vs.Taintor. The high court ruled that a bail bond agent or bounty hunter can pursue bail jumpers across state lines, break into their homes, and arrest him or her at anytime.</strong></em></p>
<p><em><strong>These cases and others have highlighted the unusual police-like power and latitude given to bounty hunters.</strong></em></p>
<p><em><strong>Last year, the Ohio Supreme Court granted bounty hunter Michael Kole a new trial, on the grounds that he had the legal authority to arrest a defendant &#8220;at any time or place.&#8221; Kole had been convicted of abduction and burglary after he and a partner had entered a fugitive&#8217;s home and held the man at gunpoint.</strong></em></p>
<p>&nbsp;</p>
<p><em><strong>With Little Success Curtailing Their Power…</strong></em></p>
<p><em><strong>Lawmakers have repeatedly tried to curtail bounty hunters&#8217; powers, generally without success.</strong></em></p>
<p><em><strong>Efforts were jumpstarted in 1997, after a young couple was killed in their Phoenix, Ariz., home by men who claimed to be bounty hunters. The case prompted Arizona to pass a law requiring bounty hunters to be licensed and to obtain permission before entering a home.</strong></em></p>
<p><em><strong>Similar cases have periodically renewed interest in cracking down on the profession in other states, but bounty hunters have fiercely fought such efforts.</strong></em></p>
<p><em><strong>Bartlett and other bounty hunter advocates insist it would be impossible to do the job without the power to make arrests and enter home without warrants.</strong></em></p>
<p><em><strong>&#8220;If you don&#8217;t have some sort of coercive authority you&#8217;re never going to pick the guy up,&#8221; said Wells.</strong></em></p>
<p><em><strong>Bounty hunters insist they are performing an important public function. The bail system helps combat jail overcrowding, they argue. Police are rarely interested in pursuing bail jumpers charged with relatively minor offenses, so the job is left to skip tracers, industry officials say.</strong></em></p>
<p>&nbsp;</p>
<p><em><strong>…States Cracks Down on the ‘Scumbag Element’</strong></em></p>
<p><em><strong>Instead of drastically limiting bounty hunters&#8217; capabilities, many states have imposed restrictions on who can become a bail enforcement agent, as those in the industry prefer to be called.</strong></em></p>
<p><em><strong>California, for example, passed legislation in 2000 requiring bail-enforcement agent to receive about two weeks of training and undergo a background check for felony convictions.</strong></em></p>
<p><em><strong>The various state restrictions create a tangle of confusion for those in the business, though. In Texas, bounty hunters cannot carry fire arms, for example, but in California they can. In some states they cannot carry a badge and wear identifying clothing, but in others they are required to do so.</strong></em></p>
<p><em><strong>&#8220;There&#8217;s so much gray area. Even the cops don&#8217;t know what we can or can&#8217;t do,&#8221; complains Wells.</strong></em></p>
<p><em><strong>For many in the industry, some restrictions such as criminal background checks are welcome.</strong></em></p>
<p><em><strong>&#8220;What it&#8217;s done is sort of driven the scumbag element out of the picture,&#8221; says Bartlett, the executive director of the American Bail Coalition.</strong></em></p>
<p>&nbsp;</p>
<p>Direct Link:  <a title="Article Link" href="http://abcnews.go.com/US/story?id=90553&amp;page=1#.T7xCzFIuVI6">http://abcnews.go.com/US/story?id=90553&amp;page=1#.T7xCzFIuVI6</a></p>
]]></content:encoded>
			<wfw:commentRss>http://geinvestigations.com/blog/2012/05/bounty-hunters-cleaning-up-their-image/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://geinvestigations.com/blog/2012/05/bounty-hunters-cleaning-up-their-image/</feedburner:origLink></item>
		<item>
		<title>Police Identify Bounty Hunters Who Terrorized MWC Family</title>
		<link>http://feedproxy.google.com/~r/geinvestigations/~3/4rfWqwWKLWw/</link>
		<comments>http://geinvestigations.com/blog/2012/05/police-identify-bounty-hunters-who-terrorized-mwc-family/#comments</comments>
		<pubDate>Wed, 23 May 2012 02:39:13 +0000</pubDate>
		<dc:creator>geadmin</dc:creator>
				<category><![CDATA[Articles of Interest]]></category>
		<category><![CDATA[Bail Recovery]]></category>
		<category><![CDATA[Crimes & Criminal Activity (Organized Crime, Narcotics, Predators, Cyber Crime, Cyber Stalking, UnSolved)]]></category>
		<category><![CDATA[Firearms, Weapons & Personal Safety]]></category>
		<category><![CDATA[Investigative]]></category>
		<category><![CDATA[Social Media]]></category>
		<category><![CDATA[Technology & Digital Security]]></category>
		<category><![CDATA[Agents]]></category>
		<category><![CDATA[and describe themselves as reality actors]]></category>
		<category><![CDATA[Bail]]></category>
		<category><![CDATA[bail agents]]></category>
		<category><![CDATA[BOUNTY BOYS]]></category>
		<category><![CDATA[Bounty Hunters]]></category>
		<category><![CDATA[but victims would never testify in court. The Bounty Boys have posted some of their actions on YouTube]]></category>
		<category><![CDATA[carried guns]]></category>
		<category><![CDATA[Criminal activity]]></category>
		<category><![CDATA[Davidson County Circuit Court]]></category>
		<category><![CDATA[dog the bounty hunter]]></category>
		<category><![CDATA[federal agent]]></category>
		<category><![CDATA[felons with guns]]></category>
		<category><![CDATA[G.E. Investigations Blog]]></category>
		<category><![CDATA[Kevin Houston]]></category>
		<category><![CDATA[lack of training]]></category>
		<category><![CDATA[Lawmen]]></category>
		<category><![CDATA[Midwest City Police]]></category>
		<category><![CDATA[MORONS]]></category>
		<category><![CDATA[Need real training]]></category>
		<category><![CDATA[not Black Suspect]]></category>
		<category><![CDATA[Oklahoma County District Attorney]]></category>
		<category><![CDATA[Police Identify Bounty Hunters Who Terrorized MWC Family]]></category>
		<category><![CDATA[Police say there have been other complaints made against the group]]></category>
		<category><![CDATA[Six men dressed as police officers]]></category>
		<category><![CDATA[tasers and badges]]></category>
		<category><![CDATA[Taylor vs Taintor]]></category>
		<category><![CDATA[the Bounty Boys]]></category>
		<category><![CDATA[The felon]]></category>
		<category><![CDATA[The law must be respected and adhered to. Bail bond agents should not use or condone the use of recovery agents (bounty hunters) who fail to follow the law or fail to respect the rights of citizens to]]></category>
		<category><![CDATA[White suspect]]></category>

		<guid isPermaLink="false">http://geinvestigations.com/blog/?p=2214</guid>
		<description><![CDATA[Police Identify Bounty Hunters Who Terrorized MWC Family News9.com by Dana Hertneky  by LaShauna Sewell Aug 04, 2011 &#160; Midwest City Police have identified the bounty hunters who held the wrong family hostage last week. Charges are being considered. *** Video Segment &#160; MIDWEST CITY, Oklahoma  – Midwest City police say a group of bounty <a href='http://geinvestigations.com/blog/2012/05/police-identify-bounty-hunters-who-terrorized-mwc-family/' class='excerpt-more'>[...]</a>]]></description>
			<content:encoded><![CDATA[<div id="WNStoryHeader">
<h3>Police Identify Bounty Hunters Who Terrorized MWC Family</h3>
<p><em></em><em></em></p>
<div id="WNDS37"></div>
<div></div>
<div><em><strong>News9.com </strong></em></div>
<div><em><strong>by Dana Hertneky </strong></em></div>
</div>
<div><em><strong>by LaShauna Sewell</strong></em></div>
<div><em><strong>Aug 04, 2011 </strong></em></div>
<div id="WNStoryRelatedBox">
<div>
<div>
<p>&nbsp;</p>
</div>
</div>
<div></div>
<div></div>
<div><img class="alignnone" title="Article Image" src="http://kwtv.images.worldnow.com/images/15206065_BG1.jpg" alt="" width="640" height="360" /></div>
<div></div>
<div><em>Midwest City Police have identified the bounty hunters who held the wrong family hostage last week. </em></div>
<div><em>Charges are being considered.</em></div>
</div>
<p><em><br />
</em></p>
<p><em><strong></strong><strong><a href="http://www.news9.com/story/15206065/police-identify-bounty-hunters-who-terrorized-mwc-family?autoStart=true&amp;topVideoCatNo=default&amp;clipId=6118088">*** Video Segment</a></strong></em></p>
<p>&nbsp;</p>
<p><em><strong>MIDWEST CITY, Oklahoma  – </strong></em></p>
<p><em><strong>Midwest City police say a group of bounty hunters who forced their way into a family&#8217;s apartment have been identified as the Bounty Boys.</strong></em></p>
<p>&nbsp;</p>
<p><img class="alignnone" title="Bounty Boys" src="http://kwtv.images.worldnow.com/images/15231830_BG2.jpg" alt="" width="640" height="360" /></p>
<p>&nbsp;</p>
<p><em><strong>Kevin Houston says someone pounded on his door just before midnight on July 25. The 51-year-old man jumped out of bed.</strong></em></p>
<p><em><strong>&#8220;I said ‘Who is it?&#8217; And they never did say,&#8221; said Houston. &#8220;They were just like &#8216;Open the door.&#8217;&#8221;</strong></em></p>
<p>&nbsp;</p>
<p><em><strong>7/29/11 Related Story: <a href="http://www.news9.com/story/15174626/police-looking-for-a-group-of-bounty-hunters-that-terrorized-a-mwc-family">Police Looking For Bounty Hunters That Terrorized A MWC Family</a></strong></em></p>
<p>&nbsp;</p>
<p><em><strong>7/29/11 Related Story: <a href="http://www.news9.com/category/116601/video-page?clipId=6102871&amp;autostart=true">MWC Police Search For Bounty Hunters Terrorizing Innocent People</a></strong></em></p>
<p>&nbsp;</p>
<p><em><strong>Houston says six men dressed as police officers rushed into his apartment. They were wearing vests labeled with the word &#8220;Fugitive&#8221; on the back. They also carried guns, tasers and badges. Houston says he did what they told him to do because he assumed they were police. Houston, his fiancé and two children were terrified.</strong></em></p>
<p><em><strong>&#8220;They had on all black with all these guns and tasers and stuff and they pointed the gun at him and I thought ‘oh God they&#8217;re going shoot him,&#8221; Houston&#8217;s fiancé April Frost said.</strong></em></p>
<p><em><strong>After detaining the family for 45 minutes, the bounty hunters realized they were at the wrong home. The fugitive they were searching for is white. Houston is black.</strong></em></p>
<p><em><strong>Houston says the men simply walked out, and never apologized.</strong></em></p>
<p><em><strong>Midwest City police have now identified the men as the Bounty Boys, a local bounty hunter group. After the original story aired, several law enforcement agencies and legitimate bounty hunters called police and said the &#8220;Bounty Boys&#8221; were likely the culprits.</strong></em></p>
<p><em><strong>Police say there have been other complaints made against the group, but victims would never testify in court. The Bounty Boys have posted some of their actions on YouTube, and describe themselves as reality actors.</strong></em></p>
<p><em><strong>A Midwest City Police Department investigator contacted one member of the Bounty Boys, who admitted the group entered Houston&#8217;s apartment. However, the member refused to speak more with the investigator, and referred him to the group&#8217;s attorney. The attorney has arranged interviews with the bounty hunters for next week.</strong></em></p>
<p><em><strong>&#8220;They made a mistake, but it&#8217;s not a mistake that should involve filing criminal charges,&#8221; said the group&#8217;s attorney Irvin Box. &#8220;If someone has some sort of civil litigation that&#8217;s up to them, but we don&#8217;t believe it rose to that degree.&#8221;</strong></em></p>
<p><em><strong>Police say the Bounty Boys could be charged with kidnapping, pointing a firearm, and entering a building with certain intent. It&#8217;s up to the Oklahoma County District Attorney to decide if charges will be filed.</strong></em></p>
<p><em><strong>&#8220;This incident has raised some concerns with the law enforcement community regarding a few rogue bounty hunters,&#8221; said Midwest City Police Chief Brandon Clabes. &#8220;As I said earlier, I don&#8217;t want to stereotype all good people who work in this field but we know there are some who need oversight and statutory regulation to ensure they don&#8217;t violate criminal law or civil rights.&#8221;</strong></em></p>
<p><em><strong>Dudley Goolsby, president of the Oklahoma Bondsmans Association issued this statement in regards to the incident:</strong></em></p>
<p><em><strong>&#8220;The law must be respected and adhered to. Bail bond agents should not use or condone the use of recovery agents (bounty hunters) who fail to follow the law or fail to respect the rights of citizens to be secure in their own homes.&#8221;</strong></em></p>
<p>&nbsp;</p>
<p>Direct Link:  <a title="Article Link" href="http://www.news9.com/story/15206065/police-identify-bounty-hunters-who-terrorized-mwc-family">http://www.news9.com/story/15206065/police-identify-bounty-hunters-who-terrorized-mwc-family</a></p>
]]></content:encoded>
			<wfw:commentRss>http://geinvestigations.com/blog/2012/05/police-identify-bounty-hunters-who-terrorized-mwc-family/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://geinvestigations.com/blog/2012/05/police-identify-bounty-hunters-who-terrorized-mwc-family/</feedburner:origLink></item>
	</channel>
</rss>

