Anonymous SriLanka not anonymous for long

kosandpol

Well-known member
  • Jun 10, 2008
    45,329
    1,492
    113
    The group or individual calling themselves Anonymous SriLanka will not be anonymous for long as they've made some grave mistakes in posting their exploits.

    Here's one that I noticed.
    http://pastebin.com/8U0vqmLs

    This is : University Colombo - Sri Lanka SSH/RSA Login Key Dump

    Mistake no 1 :
    Scanning 10.16.16.2 [100 ports]

    Ask anyone who knows network basics and they'll tell you that this is private IP which is not accessible over the internet. Which means these 'hackers' ran this port scan from within the campus network.

    And here's biggest mistake of all :
    1. TRACEROUTE (using port 587/tcp)
    2. HOP RTT ADDRESS
    3. 1 0.10 ms 192.168.159.2
    4. 2 0.35 ms 10.16.16.2
    They've posted the complete results of a trace route they've run.
    In a traceroute (tracert for windows), the first result is the Local gateway. This means 192.168.159.2 is the local gateway for the 'hackers' PC. The campus network admins can isolate the actual computer network the 'hackers' used with this information and they can easily figure out from there, who these 'hackers' really are.

    My guess is this is a bunch of campus students who had just started learning about networks and if the campus authorities decide to take action, they'll be ex-students pretty soon.
     
    • Like
    Reactions: plusone

    kosandpol

    Well-known member
  • Jun 10, 2008
    45,329
    1,492
    113
    maybe it could be a trick to Embarrass the university...:rolleyes:.
    still why post the local IPs ? thats a dead give away. Post only the RSA keys and the campus will be embarrassed. post the local IPs and they'll hunt you down.
     

    4keven4

    Well-known member
  • May 31, 2007
    7,739
    212
    63
    GMT +1
    in that website i saw some basic english grammatical mistakes as well...
    i figured they were bunch of noobs...
     

    RuZZa

    Well-known member
  • Jul 27, 2009
    4,648
    873
    113
    34
    still why post the local IPs ? thats a dead give away. Post only the RSA keys and the campus will be embarrassed. post the local IPs and they'll hunt you down.

    i don't understand these bloody IP things...:P.
    i just expressed what i felt....
    better if you can give good explanations about these RSA KEYS/LOCAL IPs
    ....
     

    plusone

    Member
    Jul 15, 2011
    280
    27
    0
    ර්‍ගීස් යකෙක්!

    ZSchA.jpg


    http://sameeradealwis.wordpress.com
     

    Rovin

    Well-known member
  • Aug 27, 2008
    56,440
    2,081
    113
    ෴*On Earth*෴
    "සිරාම සීන් එක කියන්නෙ බුවා හැක් කරා කියල දාල තියෙන ඉන්ෆොමේශන් ඕනෙම දෙයක් ගූගල් එකේ සර්ච් කරලා, එහෙමත් නැත්නම් රිවර්ස් DNS ලුක් අප් එකක් කරල හොයා ගන්න පුලුවන්"

    FAIL :lol:
     

    SIRUS3001

    Well-known member
  • Jan 23, 2008
    13,222
    95
    48
    mama hithanne real life eke mokuth bari nisa thama PC ekak pitipasse idagena uda paninne D: 2x5 pollak aragena gihin apitath puluwan niyama hack ekak karanna :P