Jump to content

Gottfrid Svartholm Trial: IT Experts Give Evidence


NelsonG

Recommended Posts

[img]http://torrentfreak.com/images/gottfrid1.jpg[/img]The hacking trial of Gottfrid Svartholm and his alleged 21-year-old Danish accomplice continued this week in Copenhagen, Denmark. While Gottfrid is well known as a founder of The Pirate Bay, his co-defendant’s identity is still being kept out of the media.

In what’s being described as the largest case of its kind ever seen in the Scandinavian country, both stand accused of hacking computer mainframes operated by US IT giant CSC. This week various IT experts have been taking the stand.

On Tuesday, IT investigator Flemming Grønnemose appeared for the third time and stated that during the summer and fall of 2012, Swedish police had tipped off Danish police about possible hacker attacks against CSC.

According to [url="https://www.dr.dk/Nyheder/Viden/Tech/2014/09/23/155421.htm"]DR.dk[/url], as part of Grønnemose’s questioning Gottfrid’s lawyer Luise Høj raised concerns over a number of changes that had taken place on her client’s computer since it had been taken into police custody.

Grønnemose admitted that when police installed programs of their own onto the device, security holes which could have been exploited for remote control access could have been closed. However, it appears police also have an exact copy of the machine in an unmodified state.

Further evidence centered around the IP addresses that were traced during the attacks. IP addresses from several countries were utilized by the attackers including those in Cambodia, Germany, Iran, Spain and the United States. German police apparently investigated the local IP address and found that it belonged to a hacked server in a hosting facility.

The server had not been rented out for long, but was still on and had been taken over by hackers, Grønnemose said. According to the prosecution, the same server also featured in last year’s Logica case in Sweden. Gottfrid was [url="http://torrentfreak.com/pirate-bay-founder-guilty-of-hacking-sentenced-to-two-years-in-prison-130620/"]found guilty[/url] in that case and sentenced to two years in jail.

Another IT expert called to give evidence on the same day was Allan Lund Hansen who had examined the files found on Gottfrid’s computer. Those files, garnered from the CSC hack, contained thousands of names, addresses and social security numbers of Danish citizens. Since the files were in an encrypted folder along with data from earlier attacks on IT company Logica and the Nordea bank, the prosecution are linking the files to Gottfrid.

On Thursday, [url="http://www.dr.dk/Nyheder/Viden/Tech/2014/09/25/113454.htm"]DR.dk[/url] reported that the debate over Gottfrid’s computer being remotely controlled continued. Previously Jacob Appelbaum [url="http://torrentfreak.com/jacob-appelbaum-gives-testimony-in-gottfrid-svartholm-trial-140914/"]argued[/url] that an outside attacker could have used the machine to carry out the attacks but defense experts from the Center for Cyber ​​Security disputed that.

This week Thomas Krismar from the Center said that Python scripts found on Gottfrid’s computer were able to carry out automated tasks but in this case remote control was unlikely to be one of them.

“There are two characteristics we always look for when we try to discover remote control features. The first is one that starts automatically when you turn on your computer since the attacker will always try to maintain their footing on the computer. The second is one that ‘phones home’ to indicate that it is ready to receive commands,” Krismar said.

The script in question on Gottfrid’s machine needed to be started manually and did not attempt to make contact with anything on the web, the expert said.

Also appearing Thursday were further witnesses including Joachim Persson of Stockholm police who investigated Gottfrid’s computers after his arrest in Cambodia.

Persson said he found a tool known as [url="http://en.wikipedia.org/wiki/Hercules_%28emulator%29"]Hercules[/url], a sophisticated piece of software that emulates the kind of systems that were hacked at CSC. Persson did note, however, that such tools have legitimate uses for those learning how to operate similar systems.

The trial continues.

Source: [url="http://torrentfreak.com"]TorrentFreak[/url], for the latest info on [url="http://torrentfreak.com/category/copyright-issues/"]copyright[/url], [url="http://torrentfreak.com/category/pirate-talk/"]file-sharing[/url] and [url="http://torrentfreak.com/which-vpn-services-take-your-anonymity-seriously-2014-edition-140315/"]anonymous VPN services[/url].

[url="http://feed.torrentfreak.com/~ff/Torrentfreak?a=u1MIaOyqqxg:TOfksl4VG2o:yIl2AUoC8zA"][img]http://feeds.feedburner.com/~ff/Torrentfreak?d=yIl2AUoC8zA[/img]</img>[/url] [url="http://feed.torrentfreak.com/~ff/Torrentfreak?a=u1MIaOyqqxg:TOfksl4VG2o:D7DqB2pKExk"][img]http://feeds.feedburner.com/~ff/Torrentfreak?i=u1MIaOyqqxg:TOfksl4VG2o:D7DqB2pKExk[/img]</img>[/url][img]http://feeds.feedburner.com/~r/Torrentfreak/~4/u1MIaOyqqxg[/img]

[url=http://feed.torrentfreak.com/~r/Torrentfreak/~3/u1MIaOyqqxg/]View the full article[/url]

Link to comment
Share on other sites

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Our picks

    • Wait, Burning Man is going online-only? What does that even look like?
      You could have been forgiven for missing the announcement that actual physical Burning Man has been canceled for this year, if not next. Firstly, the nonprofit Burning Man organization, known affectionately to insiders as the Borg, posted it after 5 p.m. PT Friday. That, even in the COVID-19 era, is the traditional time to push out news when you don't want much media attention. 
      But secondly, you may have missed its cancellation because the Borg is being careful not to use the C-word. The announcement was neutrally titled "The Burning Man Multiverse in 2020." Even as it offers refunds to early ticket buyers, considers layoffs and other belt-tightening measures, and can't even commit to a physical event in 2021, the Borg is making lemonade by focusing on an online-only version of Black Rock City this coming August.    Read more...
      More about Burning Man, Tech, Web Culture, and Live EventsView the full article
      • 0 replies
    • Post in What Are You Listening To?
      Post in What Are You Listening To?
    • Post in What Are You Listening To?
      Post in What Are You Listening To?
    • Post in What Are You Listening To?
      Post in What Are You Listening To?
    • Post in What Are You Listening To?
      Post in What Are You Listening To?
×
×
  • Create New...