Nik Cubrilovic

Last updated

Nik Cubrilovic
NationalityAustralian
Known forComputer hacking

Nik Cubrilovic is an Australian former[ citation needed ] hacker and leading internet security blogger. [1]

Contents

Personal life

Nik Cubrilovic (Serbian : Čubrilović) is an ethnic Serb. [2]

Work

In 2011 he successfully forced Facebook to address a privacy flaw whereby the site would continue to track your web surfing habits even when logged out. [3] [4]

In May 2014 he published research into the weakness of the Australian government's my.gov.au websites illustrating a number of flaws allowing user impersonation, [5] issues that were finally fixed in January 2015. [6]

In September 2014 he provided analysis into the various security vectors such as phishing, searching of public social media sites and weaknesses in Apple's iCloud software which may have been used in the 2014 celebrity photo hack [1] going on to consult for a number of other publications on the matter. [7] [8]

In November 2014 his analysis of hidden services seized in Operation Onymous cast doubt on the official figures from law enforcement about the effectiveness of the operation, claiming a 276 services not 400 were seized, and that 153 of those were scam or clone sites. [9] [10]

He has provided various coverage and commentary on Tor and the Dark Web on matters such as the Silk Road trial. [11]

In January 2018 he was arrested for alleged hacking GoGet, a car sharing company. [12]

Related Research Articles

<span class="mw-page-title-main">Chaos Computer Club</span> Germany based hackers organization

The Chaos Computer Club (CCC) is Europe's largest association of hackers with 7,700 registered members. Founded in 1981, the association is incorporated as an eingetragener Verein in Germany, with local chapters in various cities in Germany and the surrounding countries, particularly where there are German-speaking communities. Since 1985, some chapters in Switzerland have organized an independent sister association called the Chaos Computer Club Schweiz (CCC-CH) instead.

Single sign-on (SSO) is an authentication scheme that allows a user to log in with a single ID to any of several related, yet independent, software systems.

<span class="mw-page-title-main">Christopher Soghoian</span> American computer scientist

Christopher Soghoian is a privacy researcher and activist. He is currently working for Senator Ron Wyden as the senator’s Senior Advisor for Privacy & Cybersecurity. From 2012 to 2016, he was the principal technologist at the American Civil Liberties Union.

Serbian Australians, are Australians of ethnic Serb ancestry. In the 2021 census there were 94,997 people in Australia who identified as having Serb ancestry, making it a significant group with the global Serb diaspora.

<span class="mw-page-title-main">Imagery of nude celebrities</span> Topic of visual depiction of nude celebrities

There has been demand for imagery of nude celebrities for many decades. It is a lucrative business exploited by websites and magazines.

<span class="mw-page-title-main">Tor (network)</span> Free and open-source anonymity network based on onion routing

Tor, short for The Onion Router, is free and open-source software for enabling anonymous communication. It directs Internet traffic via a free, worldwide volunteer overlay network that consists of more than seven thousand relays.

weev Internet troll and hacker

Andrew Alan Escher Auernheimer, best known by his pseudonym weev, is an American computer hacker and professional Internet troll. Affiliated with the alt-right, he has been described by the Southern Poverty Law Center as a neo-Nazi, white supremacist, and antisemitic conspiracy theorist. He has used many aliases when he has contacted the media, but most sources state that his real first name is Andrew.

RockYou was a company that developed widgets for MySpace and implemented applications for various social networks and Facebook. Since 2014, it has engaged primarily in the purchases of rights to classic video games; it incorporates in-game ads and re-distributes the games.

<span class="mw-page-title-main">Silk Road (marketplace)</span> 2011–2013 darknet market known for the sale of illegal drugs

Silk Road was an online black market and the first modern darknet market. It was launched in 2011 by its American founder Ross Ulbricht under the pseudonym "Dread Pirate Roberts." As part of the dark web, Silk Road operated as a hidden service on the Tor network, allowing users to buy and sell products and services between each other anonymously. All transactions were conducted with bitcoin, a cryptocurrency which aided in protecting user identities. The website was known for its illegal drug marketplace, among other illegal and legal product listings. Between February 2011 and July 2013, the site facilitated sales amounting to 9,519,664 Bitcoins.

<span class="mw-page-title-main">WhatsApp</span> Messaging and VoIP service owned by Meta Platforms

WhatsApp is an instant messaging (IM) and voice-over-IP (VoIP) service owned by technology conglomerate Meta. It allows users to send text, voice messages and video messages, make voice and video calls, and share images, documents, user locations, and other content. WhatsApp's client application runs on mobile devices, and can be accessed from computers. The service requires a cellular mobile telephone number to sign up. In January 2018, WhatsApp released a standalone business app called WhatsApp Business which can communicate with the standard WhatsApp client.

The dark web is the World Wide Web content that exists on darknets: overlay networks that use the Internet but require specific software, configurations, or authorization to access. Through the dark web, private computer networks can communicate and conduct business anonymously without divulging identifying information, such as a user's location. The dark web forms a small part of the deep web, the part of the web not indexed by web search engines, although sometimes the term deep web is mistakenly used to refer specifically to the dark web.

Mass surveillance in Australia takes place in several network media, including telephone, internet, and other communications networks, financial systems, vehicle and transit networks, international travel, utilities, and government schemes and services including those asking citizens to report on themselves or other citizens.

On August 31, 2014, a collection of nearly five hundred private pictures of various celebrities, mostly women, with many containing nudity, were posted on the imageboard 4chan, and swiftly disseminated by other users on websites and social networks such as Imgur and Reddit. The leak was dubbed "The Fappening" or "Celebgate" by the public. The images were initially believed to have been obtained via a breach of Apple's cloud services suite iCloud, or a security issue in the iCloud API which allowed them to make unlimited attempts at guessing victims' passwords. Apple claimed in a press release that access was gained via spear phishing attacks.

<span class="mw-page-title-main">Operation Onymous</span> International police operation targeting darknet markets

Operation Onymous was an international law enforcement operation targeting darknet markets and other hidden services operating on the Tor network.

<span class="mw-page-title-main">Evolution (marketplace)</span> Former darknet market

Evolution was a darknet market operating on the Tor network. The site was founded by an individual known as 'Verto' who also founded the now defunct Tor Carding Forum. Evolution was active between 14 January 2014 and mid March 2015.

Project Zero is a team of security analysts employed by Google tasked with finding zero-day vulnerabilities. It was announced on 15 July 2014.

<span class="mw-page-title-main">Doxbin (darknet)</span> Defunct document sharing website

Doxbin was an onion service. It was a pastebin primarily used by people posting personal data of any person of interest.

<span class="mw-page-title-main">OurMine</span> Hacker group

OurMine is a hacker group that is known for hacking popular accounts and websites, such as Jack Dorsey and Mark Zuckerberg's Twitter accounts. The group often causes cybervandalism to advertise their commercial services, which is among the reasons why they are not widely considered to be a "white hat" group.

<span class="mw-page-title-main">Reception and criticism of WhatsApp security and privacy features</span> Reception and criticism of security and privacy features in the WhatsApp messaging service

This article provides a detailed chronological account of the historical reception and criticism of security and privacy features in the WhatsApp messaging service.

References

  1. 1 2 Pearl, Mike (23 September 2014). "The 'Hacking' Involved in Stealing Celebrity Nude Photos Isn't Even Impressive" . Retrieved 29 August 2015.
  2. "One Serb's Crusade Against his Privacy Being Invaded by Facebook". Britić.
  3. Tweny, Dylan (25 September 2011). "Facebook tracks what you do online, even when you're logged out" . Retrieved 29 August 2015.
  4. O. Gilbert, Jason (29 September 2011). "Facebook Logout Tracking: Privacy Concerns Arise Over Alleged Cookie Snooping" . Retrieved 30 August 2015.
  5. Grubb, Ben (15 May 2014). "Revealed: serious flaws in myGov site exposed millions of Australians' private information" . Retrieved 30 August 2015.
  6. Grubb, Ben (2 January 2015). "Security bolstered on myGov website after dire warnings" . Retrieved 30 August 2015.
  7. Pearl, Mike (3 October 2014). "Your Password Is Not Secure, and It's Not Your Fault" . Retrieved 30 August 2015.
  8. Popper, Ben (4 September 2014). "Inside the strange and seedy world where hackers trade celebrity nudes" . Retrieved 30 August 2015.
  9. Gold, Steve (19 November 2014). "Operation Onymous - are the FBI's claims transparent enough?" . Retrieved 29 August 2015.
  10. Cuthbertson, Anthony (19 November 2014). "Cryptocurrency Round-Up: Onymous Dark Website Clones and Coinbase Bitcoin Tipping" . Retrieved 30 August 2015.
  11. Charlton, Alistair (5 January 2015). "Alleged Silk Road kingpin Ross Ulbricht goes on trial: Everything you need to know" . Retrieved 29 August 2015.
  12. Chau, David. "'Self-confessed' hacker faces court over alleged theft of 33 GoGet rides". ABC. Retrieved 31 January 2018.