Health

Take care of your health

Nature of life

It goes on.

Future

welcome to the future

Present

Future just ahed

Feel

Save Nature

Showing posts with label cyber crime. Show all posts
Showing posts with label cyber crime. Show all posts

Sunday, 22 January 2017

US Pushes Cybersecurity Acquisition Tools as Contracts Flow

Vendors of cyber security offerings are finding that the U.S. government is serious about improving the protection of federal IT assets. A steady stream of data protection contracts has been flowing to providers, including some notable high-value transactions during the last half of 2016.

One example is a Department of Homeland Security contract, with a potential value of US$395 million, for various cyber security protection services designed to prevent, detect, contain and eradicate cyber threats. While DHS went through the process of selecting a vendor last year, a final award is pending due to a legal challenge. Still, the magnitude of the DHS project indicates the significant level of potential federal investments in cyber security.

Federal contracting is never easy, of course, and the providers who have received cyber security contracts have had to meet all the requirements of doing business with the government. While those requirements remain in force, federal agencies, especially the General Services Administration, are trying to improve the processing of cyber protection acquisitions through expansions or enhancements to various federal procurement vehicles.

GSA's recently selected Adobe as a provider of data protection capabilities for federal agencies. The administration last month revealed it had engaged Adobe for a "new, government-wide enterprise software acquisition agreement for best-in-class, data-centric security and electronic signature solutions."

The agreement will help agencies "comply with current information security and electronic government policy recommendations and requirements," including the Cyber security National Action Plan, the Cyber security Strategy and Implementation Plan, the Cyber security Act of 2015, the Government Paperwork Elimination Act, and the E-Sign Act of 2000, according to GSA.
Contract Vehicle Available to All Agencies

As part of a government-wide initiative, all federal agencies will be able to use the GSA vehicle to acquire the various cyber protection capabilities offered by Adobe. GSA did not conduct a request for proposals to set up the acquisition. Instead, the administration used its existing IT contracting capability, known as "Schedule 70."

The agreement "came as a result of vendor engagement and market research conducted by our IT software category, with the goal of identifying software publishers that would be interested in a GSA IT Schedule 70 modification of this nature," said John Radziszewski, GSA IT software category manager.

"Adobe was identified at that time as a publisher who was interested in participating," he told the E-Commerce Times. The transaction was facilitated through Carahsoft, an existing Schedule 70 provider and designated re seller of Adobe offerings.

The agreement covers two basic Adobe products. One is an Enterprise Digital Rights Management Product Grouping, which allows only agency personnel with specific credentials to apply persistent protection to sensitive documents and information.

That level of protection allows agencies to revoke or change document permissions regardless of location, GSA noted, which is helpful in guarding against fraud. In addition, agencies can add certificate-based digital signatures to PDF documents used with Acrobat.

A second capability is the Adobe Document Cloud for Enterprise -- Premium eSign Services solution. It is a cloud-based, enterprise-class e-signature service that lets agencies replace paper and ink processes with fully automated electronic signature workflows, GSA said.

GSA's 'Win-Win' Program

The Adobe agreement also provides other benefits, according to GSA, such as assisting federal agencies in modernizing IT acquisitions and generally improving operational efficiency.

In addition, the negotiated offer with Adobe will provide government agencies with "significant savings over previous pricing," said Mary Davie, assistant commissioner for information technology in GSA's Federal Acquisition Service. GSA estimates the value of the potential savings at $350 million.

The pricing element is a significant benefit, observed David Wennergren, executive vice president at the Professional Services Council.

"This is an enterprise software agreement, which always is with a single company. These agreements are designed to provide an easy mechanism for agencies to get a good price on software licenses by leveraging the government's buying power," he told the E-Commerce Times.

"Enterprise software agreements can be win-wins. For the government, they aggregate demand and buying power to get the best price for buying software, and then make that good rate available for multiple agencies. For companies, they reduce the administrative burdens of negotiating and managing a plethora of licensing agreements and may help drive demand for their software and other products and services," Wennergren explained.

"There are enterprise licensing agreements in place with a number of software companies through GSA's SmartBuy program, the Defense Department's Enterprise Software Initiative, and other programs," he noted. The agreement with Adobe is just one of multiple initiatives and adds one more tool to federal acquisition capabilities, especially in the cybersecurity area.

Yet agencies will have alternatives to consider.

"There are ... similar types of products being provided by other software providers on IT Schedule 70," GSA's Radziszewski said.

Recent contract awards demonstrate the federal effort to utilize a variety of acquisition vehicles to pursue that goal. They include the following:

ManTech: GSA last summer awarded two contracts with a potential total value of $110 million to ManTech International on behalf of DHS. Tasks will include continuous diagnostic monitoring for cybersecurity purposes and protecting cloud operations.
The transaction vehicle was a government-wide acquisition contract through GSA's Alliant program. Mantech last fall received a contract from the National Geospatial-Intelligence Agency, which carried a potential value of $322 million over five years. The award included the provision of IT enterprise management services and enterprise cybersecurity services to NGA.

Iron Vale: The Center for Medicare and Medicaid Services last year awarded a contract to Iron Vale for providing a comprehensive cybersecurity support.
CMS used a competitive GSA schedule program procurement that simplifies the process of obtaining commercial supplies and services, the agency said. CMS used GSA's e-Buy website to post the opportunity.

The contract combined two existing agreements into a single entity and provided a one-year base period with four additional option years. Its total potential value is $67.6 million.

Advanced Concepts and Technologies International: The company last month received a contract to provide cyber acquisition support services to the DHS National Protection and Programs Directorate, Office of Cyber security and Communications, over a period of four years. Valued at $21 million, the contract was facilitated through the GSA OASIS Small Business Pool.
Defense Department Activities

In addition to civilian agencies, the Defense Department has remained active in the cyber technology market. For example, Engility Holdings will provide cyber-research, security assessments, and analysis for the U.S. Air Force under a $31 million contract awarded last month.

The contract was facilitated through the Defense Technical Information Center, a centralized agency within the Defense Department. The DTIC has a coordinating arrangement with the Air Force Life Cycle Management Center. Among other tasks, the Air Force unit tracks life cycle performance of weapons systems.

Also, the U.S. Army engaged Booz Allen Hamilton for cyber security enterprise support through a $13.2 million firm-fixed-price contract with options. The award was issued last year for a five-year period. It was facilitated through a conventional acquisition by the Army Contracting Command.

Whether through conventional acquisition vehicles or enhanced procurement procedures, it appears that federal agencies will continue to seek significant assistance to bolster their cybersecurity capabilities.

Saturday, 10 September 2016

Cyber crimes a big challenge, says Rajasthan DGP Manoj Bhatt

Cyber crime, Cyber crime rajasthan, DGP Manoj Bhatt cyber crime, cyber crime laws, cyber crime cases, jaipur news, india news

Rajasthan Director General of Police (DGP) Manoj Bhatt on Thursday said that increasing cyber crimes and financial frauds in various sectors of the country, especially in corporate companies, is proving to be a big challenge for investigative agencies.
“It is high time that cops and investigative agencies remain vigilant and curb such crimes, which hamper the growth of nation,” Bhatt said, during a two-day state level workshop on “Investigation of Financial Frauds”. The workshop is jointly organised by Rajasthan Police and Sardar Patel Police University of Police, Security, Criminal Justice, Jodhpur.
ADGP, Crime, P K Singh said the workshop aims to address types of measures to check frauds such as cloning of ATM cards, stock market irregularities, cyber crimes and how to deal with fake transactions and underworld activities too. Officials from Customs, Income Tax Department and Rajasthan Police are participating in the workshop. ADGP, State Crime Record Bureau (SCRB), Kapil Garg said that cyber crimes are on the rise in India. Participating agencies will prepare a draft and propose an amendment, if required, before the government in the current laws and rules.

Saturday, 5 December 2015

Indian Hackers Launch Massive Counter Attack

Mallu cyber hack

In an interesting chain of events, Indian hackers launched a massive counter attack on Pakistani websites, after a hacker group from across the border attacked one Kerala Govt. website.
More than 250 Pakistani websites, which included official website of Pakistan’s President, official website of Pakistani Govt., official website of Pakistani Railways were hacked within hours of the incident.
Indian hacking group which call themselves “The Mallu Cyber Soldiers” claimed the responsibility of this retaliation. On Twitter, Indian Hacker News described this retaliation as ‘massive payback’. Another hacking group “Hell shield Hackers” have also openly participated in this counter attack.
How It Started?
Late Saturday night, official website of Kerala Govt: Kerala.gov.in was hacked by a person, who named himself ‘Faisal 1337’.
The text on the homepage had an Indian flag burning, with text: “Official website of the RC Office,Govt of Kerala- New Delhi Hacked! Pakistan Zindabad”
Below it, it was mentioned: “We Are Team Pak Cyber Attacker. Security is just an illusion.”
Faisal’s Facebook page also mentioned this attack.
This caused a huge backlash of protest on social media, as it was a direct case of assault on the Indian Govt. by a Pakistani hacker.
Counter Attack By Indian Hackers
Within hours, groups of various Indian hackers collaborated on a huge scale, and the launched a counter attack, which can be described as one of the fiercest we have ever seen.
After a couple of hours, an Indian hacker group named “The Mallu Cyber Soldiers” announced that 100+ Pakistani websites have been hacked/defaced in retaliation of the Pakistani hacker’s attack on Kerala Govt’s website.
They posted this on their Facebook page: “!!Message to Script Kiddies of Pakistan ….Do not touch Indian Websites !!! Now your 46 Pakistan government websites got crashed and 4 educational websites got defaced. This is a small payback for hacking kerala.gov.in
Faisal 1337 go home kiddo, you are F*ucked.”
They also shared the list of all the websites which had been hacked by that time.
Later, as more hackers assembled virtually, more Pakistani websites were defaced. Within 24 hours of the incident, Indian hackers claimed that 250+ websites from Pakistan have been hacked.
Although most of these hacked websites have now been restored, few are still inaccessible even now.
Although this is not the first time that Indian and Pakistani hackers have confronted face-on, very few actually had an idea that the retaliation would be so quick and severe.
Both Indian and Pakistan Governments have refused to issue any statement in this regard.
Last year, there was a similar hacking war between Indian and Pakistani hackers, which took toll on several websites, on both the sides. In May this year, Pakistani hackers allegedly hacked Gaana.com database, and stole 12.5 million user accounts. Earlier this year, IT firm FireEye claimed that Pakistani hackers have stolen sensitive Govt. information; although no confirmation was received.
As we had shared earlier, we are against such cyber-violence. Virtual world is without any borders, and hate. Digital medium should be used for peace and harmony; not violence. We hope that better sense prevail on hackers, and they stop such cyber-wars which ultimately harm everyone.
"Indian Hackers Launch Massive Counter Attack; Hack 250+ Pakistani Websites After Attack On Kerala Govt. Website", 5 out of 5 based on 95 ratings.

Indian hackers bring down Pak websites on Independence day


A group of anonymous Indian hackers, called 'Hell Shield Hackers', claimed on Saturday to have taken down around 100 Pakistani business websites as a "tribute to Indian jawans" on the occasion of Independence Day.
Injector Devil, one of the hackers, told Hindustan Times, "We belong to Hell Shield Hackers, currently most active ‘black hat’ team in India. We have more than 1000 defaces registered on our team name. Our founder is L@z@rus and other members are psychotic_overloadD, indi-g3@r, Mr.404, poison operator are stated there in the deface page."
The term black hat refers to the hacking of a website with malicious intent, while white hat refers to ethical hacking. In the hacking terminology, defacing means taking down a website.
The hackers posted a message in all the websites asking Pakistani citizens to "be prepared for a full day of website attacks".
According to Injector Devil, Pakistan hackers had hacked many Indian sites on Friday (to mark Pakistan’s Independence Day on August 14) and this was payback.
"We want to pass the message that Pakistan hackers should not attack Indian cyber space without any reason. If they do it, we are ready to defend it. Cyber space needs peace but they keep on violating it. But Pakistan hackers were in full blown war on August 14. So it's a little payback from our side as we always do."
Some of the prominent sites that were defaced are:
nationalclubpk.com/rooms
http://www.skillscollege.com.pk/Vijay.html
http://www.paspk.org/root.html
http://www.online-akhbar.com
http://cityelectronics.pk/web/
The entire list of 'hacked' websites was published in Pastebin, a cloud space for storing text information.
http://pastebin.com/wiatQW5P
While some of the hacked websites have recovered, the others remain defaced.

Hacking triggers cyber war on Pak websites

THIRUVANANTHAPURAM: "Security is just an illusion," a suspected Pakistani hacker posted on the state government website after hacking it. Within hours, a group that identified itself as 'The Mallu Cyber Soldiers' retaliated and by evening, rendered more than 120 government and private Pakistani websites inaccessible.

The Indian hackers also tracked down the Facebook page of the suspected Pakistani national behind the cyber crime. It turned out that the hacker, Faisal Afzal, using the ID Faisal 1337, has been in the habit of hacking into the websites of governments, universities and other institutions.

On September 23, he had also hacked into the website of Chennai Customs and in August, the website of the Indian Boxing Federation.

The hacking of the government website, www.kerala.gov.in, was detected around 8am on Sunday. The hacker, besides the message on "security," also posted a picture of the Indian tricolor on fire. The site was restored after around 12 hours. The state cyber police have registered a case.

Later in the day, Faisal hacked another site, www.gokdelhi.kerala.gov.in.

The series of hacking, though appealing to the so-called cyber warriors and their followers, has left the officials worried.

State IT mission director K Mohammed Y Safirulla said the government was worried over a possible backlash following the afternoon's developments.

"I met the principal secretary and discussed the issue. Officials concerned have been asked to stay vigilant," he said. The framework of many government websites were not updated for the past five years.

"Hence, an immediate overall up-gradation is not possible," he said.

The hacking triggered a flurry of online activity, with 'The Mallu Cyber Soldiers' defacing Pakistani websites. Soon other groups, New World Hacktivists, Hell Shield Hackers and Interanon joined the 'cyber soldiers'.


In October last, Pakistani hackers had defaced actor Mohanlal's website. Though the website was restored in 20 minutes, hackers here retaliated and posted the actor's photographs on several Pakistani websites.

Friday, 4 December 2015

Indian hackers 'pay back' Pakistan for 26/11

A Pakistani government website hacked by Indian hackers.

A group of Indian hackers, calling themselves the Indian Black Hats have launched a symbolic cyber attack against Pakistan for the 26/11 Mumbai attacks, by hacking into two government sites and around 10 non-government domains on Thursday, the seventh anniversary of the terror attacks.

According to one of the hackers, the attack which began in the wee hours of Thursday was led by 'team Indian Black Hats', a group of like-minded hackers from across the country. The same team was in cyber space from 2011 to 2013 under the name Indian Cyber Devils, and after a brief lull with members continuing to be active with various other hackers’ groups, had revived itself from January 2015.

The websites that the Indian Black Hats hacked till evening on Thursday were www.csd.gov.pk and www.mona.gov.pk, while a variety of non-government domains, including www.metroshoes.com.pk, as well were hacked by the Black Hats. The "attack" was launched as a tribute to the martyrs of 26/11, they said, adding that the “payback” was still on.

Incidentally, a similar group, Mallu Cyber Soldiers, had earlier hacked several Pakistani government websites in retaliation to an attack by Pakistani hackers on the Kerala government's website in September apart from mounting a cyber war of sorts against websites that allegedly were part of online prostitution rackets.

Thursday, 26 November 2015

Indian hackers 'pay back' Pakistan for 26/11

A Pakistani government website hacked by Indian hackers.

A group of Indian hackers, calling themselves the Indian Black Hats have launched a symbolic cyber attack against Pakistan for the 26/11 Mumbai attacks, by hacking into two government sites and around 10 non-government domains on Thursday, the fourth anniversary of the terror attacks.

According to one of the hackers, the attack which began in the wee hours of Thursday was led by 'team Indian Black Hats', a group of like-minded hackers from across the country. The same team was in cyber space from 2011 to 2013 under the name Indian Cyber Devils, and after a brief lull with members continuing to be active with various other hackers’ groups, had revived itself from January 2015.

The websites that the Indian Black Hats hacked till evening on Thursday were www.csd.gov.pk and www.mona.gov.pk, while a variety of non-government domains, including www.metroshoes.com.pk, as well were hacked by the Black Hats. The "attack" was launched as a tribute to the martyrs of 26/11, they said, adding that the “payback” was still on.

Incidentally, a similar group, Mallu Cyber Soldiers, had earlier hacked several Pakistani government websites in retaliation to an attack by Pakistani hackers on the Kerala government's website in September apart from mounting a cyber war of sorts against websites that allegedly were part of online prostitution rackets.