May 13th, 2013

Hacker Andrew Auernheimer Placed In Solitary Confinement For Tweeting From Prison

Weevilicious

Andrew “Weev” Auernheimer has been placed in “administrative segregation,” prison shorthand for solitary confinement for “investigative purposes.” Supporters believe he was locked down and given no Internet access because of his ability to send Tweets to a third party who relayed them on his private account. Auernheimer has not sent electronic messages since April 8. → Read More

March 19th, 2013

Watch Weev’s Angry Pre-Sentencing Speech About The Failure Of Our Nation

Yesterday, Andrew “weev” Auernheimer was sentenced to 41 months in prison, three years of probation, and restitution of $73,000 after being convicted on conspiracy and fraud charges. His actions had revealed a security flaw in AT&T’s user data base.

In essence, weev added a number to the end of a URL on AT&T’s public database and realized that he was moving from one user’s information… → Read More

March 18th, 2013

Andrew Auernheimer AKA “The AT&T Hacker” Sentenced To 41 Months In Prison, 3 Years Probation And Restitution Of $73K

andrwe

Andrew Auernheimer, commonly known as AT&T Hacker Weev, has just received sentencing on one charge of conspiracy to access a computer without authorization (18 U.S.C. § 1030(a)(2)(C) part of the Computer Fraud and Abuse Act of 1986) and fraud in connection with personal information (18 U.S.C. § 1028(a)(7)). → Read More

February 28th, 2013

AT&T “Hacker” Andrew Auernheimer’s Sentencing Scheduled For March 18

Internet activist (and Crunchies winner) Andrew Auernheimer’s sentencing trial will take place on March 18, 2013 at 10:30am. Auernheimer aka Weev revealed a security flaw in AT&T’s iPad user database, allowing him to scrape the data from 114,000 iPad users. He later published the data. The FBI investigated and filed a criminal complaint in January 2011. A full recounting of his arrest can be… → Read More

February 13th, 2013

You May Take Away My Freedom, But I’ll Always Have My Crunchie!

On June 14th, 2010, Michael Arrington awarded a Crunchie to two members of Goatse Security via a blog post for discovering, publishing and trying to fix a pretty egregious security flaw that they discovered on AT&T’s public website. Before going to jail, Andrew Auernheimer’s (aka “weev”) bucket list of what he wanted was the Crunchie that TechCrunch awarded to him. → Read More

January 21st, 2013

iPad Hack Statement Of Responsibility

Andrew Auernheimer

Editor’s note: Andrew Auernheimer, also known by his pseudonym weev, is an American grey hat hacker and self-described Internet troll. Follow him on Twitter @rabite.

In June of 2010 there was an AT&T webserver on the open Internet. There was an API on this server, a URL with a number at the end. If you incremented this number, you saw the next iPad 3G user email address. I thought it was… → Read More

December 1st, 2012

Security Is Hard, But That Doesn’t Mean You Should Ignore It

no-trespassing

Six weeks ago I was out drinking in a Kipling-themed bar in Rangoon, Myanmar–as you do–and happened to find myself next to a table of high-powered international telecommunications consultants, overhearing juicy lines like “Skype and Viber are going to kill us.” Needless to say I told Twitter right away. Then an old friend who’s also a genuine International Man Of Mystery got in touch and asked… → Read More

November 21st, 2012

Goatse Security’s Auernheimer Convicted In iPad Website Hacking Case

court-ruling

Tuesday afternoon in federal court in Newark, NJ, a jury convicted Andrew “Weev” Auernheimer for his role in a 2010 exploit that caused an AT&T account maintenance website to leak 114,000 email addresses of iPad owners. Auernheimer was convicted on both counts for which he was charged. → Read More

November 18th, 2012

GoatSec iPad Hacking Case Underway, Ruling Could Address Ancient Computer Law

court-ruling

Editor’s note: Ansel Halliburton is a lawyer at ComputerLaw Group.

In the summer of 2010, a group called Goatse Security discovered a security hole in an AT&T website catering to users of the recently launched iPad with 3G connectivity. Depending on who you ask, GoatSec is either composed of trolls in it for the lulz or grey-hat hackers. → Read More

June 14th, 2010

We’re Awarding Goatse Security A Crunchie Award For Public Service

This iPad security breach story from last week continues to spin way out of control, and in our opinion fingers are being pointed in the wrong direction. The FBI is investigating the incident, and a few hours ago AT&T finally communicated with customers to tell them about the breach (I’ve reprinted the AT&T email below).

Here’s what happened: Goatse Security discovered a rather stupid… → Read More

June 9th, 2010

AT&T security breach leaks thousands of iPad owners’ emails (but luckily, little else)

A security flaw in one of AT&T’s customer-identification scripts has allowed a group of 4chan hackers to extract as many as 114,000 email addresses of iPad owners, according to Gawker. AT&T has apologized and explained the flaw and data leaked. Essentially, a bit of open information (the SIM card’s ICC-ID) was tied to a piece of private information (the iPad owner’s email address) so that… → Read More