Newsletters
The Enterprise Security Supersite NewsFactor Sites:       NewsFactor.com     Enterprise Security Today     CRM Daily     Business Report     Sci-Tech Today  
   
Home Network Security Viruses & Malware Cybercrime Security Solutions More Topics...
Network Security
24/7/365 Network Uptime!
Average Rating:
Rate this article:  
Hacktivist Group Targeting Healthcare.gov
Hacktivist Group Targeting Healthcare.gov

By Jennifer LeClaire
November 8, 2013 1:50PM

Bookmark and Share
The government should be using some readily available high-grade mitigation tools like CloudFlare to stop the hacktivists from taking down the Healthcare.gov Web site. There are very sophisticated companies that design tools that can stop this group from destroying Healthcare.gov pretty easily, said technologist Joseph Lorenzo Hall.
 


The Obamacare Web site debacle has angered many citizens, but one hacking group has vowed to “Destroy Obama Care!” Actually, the hacktivists go by that very name.

Destroy Obama Care has created a distributed-denial-of-service (DDoS) tool that’s available for free download online. The hacker code aims to bring down the Healthcare.gov Web site, which has already had a slew of challenges servicing citizens.

“This program continually displays alternate page of the ObamaCare Web site. It has no virus, Trojans, worms, or cookies,” according to the group’s home page. “The purpose is to overload the ObamaCare Web site, to deny serivce [sic] to users and perhaps overload and crash the system. You can open as many copies of this program as you want. Each copy opens multiple links to the site."

Could it Backfire?

Destroy Obama Care isn’t doing anything entirely new here. The nefarious hacktivist group Anonymous took a similar approach with Low Orbit Ion Cannon (LOIC), which is essentially an open source network stress testing and DDoS attack app. Anybody can download and use it. Anonymous used LOIC to spark a widespread attack against PayPal.

We asked Joseph Lorenzo Hall, a senior staff technologist at the Center for Democracy & Technology, for his feedback on Destroy Obama Care. He told us the group could be asking for trouble.

“People need to realize that just because you hate Obamacare doesn’t mean you can engage in criminal activity to try to affect the technical functionality of Healthcare.gov. It sounds like this group is masterminding this type of campaign,” Hall said.

“Even if they claim that they are doing it on the up and up just by loading web pages, the intent is there. They are essentially distributing an attack tool. That’s going to get someone in trouble. The FBI is probably on it already,” he added.

How Serious Is It?

In a blog post, Marc Eisenbarth, an analyst at security firm Abor Networks, said the hacking tool is written in Delphi and performs layer seven requests to get the Healthcare.gov Web pages. As he sees it, “the request rate, the non-distributed attack architecture and many other limitations make this tool unlikely to succeed in affecting the availability of the Healthcare.gov site. It appears this application is available for download from a few a sources and has been mentioned on social media.”

Hall doesn’t think it would be too difficult for the government to stop because the in-progress attack likely gives off a regular signal that can be easily detected. Then again, he said, he’s not sure if the government has the security chops to see these types of issues.

“There have been so many egregious security flaws and the ones that have been exposed lately are not hypothetical. They are actually pretty serious,” Hall said. “I’d like to think the government is using some readily available high-grade mitigation tools like CloudFlare. There are very sophisticated companies that design tools that can stop this stuff pretty easily.”
 

Tell Us What You Think
Comment:

Name:



Salesforce.com is the market and technology leader in Software-as-a-Service. Its award-winning CRM solution helps 82,400 customers worldwide manage and share business information over the Internet. Experience CRM success. Click here for a FREE 30-day trial.


 Network Security
1.   Banks Hit by Android-Skirting Malware
2.   New Technology Defeats Privacy Efforts
3.   Juniper DDoS for High-IQ Networks
4.   Big DDoS Attacks Hit Record in 2014
5.   Can Google Stop Zero Day Flaws?


advertisement
Android SMS Worm on the Loose
Malware lets bad actors cash in.
Average Rating:
Banks Hit by Android-Skirting Malware
34 institutions, four European countries
Average Rating:
New Technology Defeats Privacy Efforts
Study identifies 3 browser techniques.
Average Rating:
Product Information and Resources for Technology You Can Use To Boost Your Business

Network Security Spotlight
34 European Banks Hit by Android-Skirting Malware
Criminals have been finding gaping holes in Android-based two-factor authentication systems that banks around the world are using. The result: 34 banks in four European countries have been hit.
 
New Web Tracking Technologies Defeat Privacy Protections
Recently developed Web tracking tools are able to circumvent even the best privacy defenses, according to a new study by researchers at Princeton and the University of Leuven in Belgium.
 
Juniper DDoS Solution Aims at High-IQ Networks
In the face of more complex attacks, Juniper Networks is boosting its DDoS Secure solution to help companies mitigate the threats with more effective security intelligence throughout the network fabric.
 

Enterprise Hardware Spotlight
Contrary to Report, Lenovo's Staying in Small Windows Tablets
Device maker Lenovo has clarified a report that indicated it is getting out of the small Windows tablet business -- as in the ThinkPad 8 and the 8-inch Miix 2. But the firm said it is not exiting that market.
 
Seagate Unveils Networked Drives for Small Businesses
Seagate is out with five new networked attached storage products aimed at small businesses. The drives are for companies with up to 50 workers, and range in capacity from two to 20 terabytes.
 
Another Day, Another Internet of Things Consortium Is Born
In the emerging Internet of Things, zillions of devices will be talking to each other. Samsung, Intel and Dell just formed a consortium to ensure each thing can understand what others are saying.
 

Navigation
Enterprise Security Today
Home/Top News | Network Security | Viruses & Malware | Cybercrime | Security Solutions | Mobile Security | Disaster Recovery | Windows Security
Data Security | EST Press Releases
NewsFactor Network Enterprise I.T. Sites
NewsFactor Technology News | Enterprise Security Today | CRM Daily

NewsFactor Business and Innovation Sites
Sci-Tech Today | NewsFactor Business Report

NewsFactor Services
FreeNewsFeed | Free Newsletters

About NewsFactor Network | How To Contact Us | Article Reprints | Careers @ NewsFactor | Services for PR Pros | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2014 NewsFactor Network. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.