The Jester (hacktivist)

Last updated
The Jester
th3j35t3r
Nationality American
Occupation Grey hat hacktivist
Known forHacking anti-American, jihadist, and homophobic websites


The Jester (also known by the leetspeak handle th3j3st3r [1] ) is a self-identified grey hat hacktivist. He claims to be responsible for attacks on WikiLeaks [2] and Islamist websites. [3] He claims to be acting out of American patriotism. [2]

Contents

Identity

The Jester has stated that he was a former soldier and had served in Afghanistan and elsewhere. [3] A former defense operative claimed that The Jester was a former military contractor involved in US Special Operations Command projects. [2]

Activities

On January 1, 2010, The Jester began a campaign against Jihadist websites. His first target was alemarah.info, which was the Taliban's website at the time. [4] [5] The Jester posted several tweets claiming to be responsible for the downtime WikiLeaks was experiencing. [2]

On November 29, 2010, someone claiming to be The Jester stated that he had been raided by the U.S. and attempted to solicit money for legal fees. The Jester purported that the person was an impostor, though writers at InfoSecIsland believe the hoax was created by The Jester himself. [6] [ self-published source ] [7]

In February 2011, The Jester claimed credit for a DoS attack on several sites belonging to the Westboro Baptist Church for celebrating the death of homosexual U.S. servicemen. [8]

In June 2011 The Jester vowed to find and expose members of LulzSec. [9] He attempted to obtain and publish personally identifiable information of key members within the group, whom he described as "childish". [10] In March 2011, Barrett Brown said The Jester was trying to identify members of Anonymous with Backtrace Security, a group of former members of Anonymous who disagreed with the current Anonymous. [11] [12] [13] On June 24, 2011, he incorrectly claimed to have revealed the identity of LulzSec leader Sabu as an information technology consultant possibly from New York City. [14] In July of the same year, he falsely accused a Portuguese IT professional of also being Sabu, leaving The Jester's outing claims to be considered suspect. [15] However, in a post on his blog in November 2011, The Jester retracted his prior identifications for "Sabu", issued an apology and correctly identified "Sabu" as Hector Xavier Monsegur, 28, of New York. [16] Sabu's identity was confirmed on March 6, 2012, when Monsegur was arrested by the FBI and it was revealed that he had been acting as an FBI informant in the interim. [17] [18]

On March 5, 2012, The Jester changed his Twitter account avatar from his signature Jester icon to a QR code without comment or explanation. [19] Scanning a QR code redirects a browser to a website. Scanning The Jester's icon led to a URL where he had an image of his signature Jester icon and an embedded, hidden code that allegedly exploited a vulnerability that affects Safari, Chrome and Android browsers. [19] "When anyone scanned the original QR code using an iPhone or Android device, their device would silently make a TCP shell connection back to my remote server," The Jester wrote. [19] [20] This was however exposed to be fake [21] and the exploit was stolen from a 2-year-old CVE advisory. [22]

On May 14, 2012, The Jester's Twitter account appeared to have been deleted, along with all posts on his WordPress blog. [23] However, the Twitter account and WordPress blog were merely temporarily deactivated and were subsequently restored May 16, 2012. [24]

On July 2, 2013, The Jester took responsibility for a series of DoS cyberattacks against the Ecuadorean stock exchange and the country's tourism website, and promised to attack any other governments considering granting asylum to NSA leaker Edward Snowden. In tweets, The Jester also alluded to a plan to seize control of the fire alarms at the Ecuadorean embassy in London, which would force WikiLeaks founder Julian Assange to set foot on UK soil and face potential extradition to Sweden to face sexual assault charges. [25]

On October 21, 2016, The Jester took responsibility for "defacing" the official website of the Russian Ministry of Foreign Affairs. The "hack" was later shown to be fake. [26]

Related Research Articles

<span class="mw-page-title-main">Hacktivism</span> Computer-based activities as a means of protest

Internet activism, hacktivism, or hactivism, is the use of computer-based techniques such as hacking as a form of civil disobedience to promote a political agenda or social change. With roots in hacker culture and hacker ethics, its ends are often related to free speech, human rights, or freedom of information movements.

<span class="mw-page-title-main">Stratfor</span> American geopolitical advising firm

Strategic Forecasting Inc., commonly known as Stratfor, is an American strategic intelligence publishing company founded in 1996. Stratfor's business model is to provide individual and enterprise subscriptions to Stratfor Worldview, its online publication, and to perform intelligence gathering for corporate clients. The focus of Stratfor's content is security issues and analyzing geopolitical risk.

<span class="mw-page-title-main">Jeremy Hammond</span> American political activist and hacker

Jeremy Alexander Hammond, also known by his online moniker sup_g, is an American anarchist activist and former computer hacker from Chicago. He founded the computer security training website HackThisSite in 2003. He was first imprisoned over the Protest Warrior hack in 2005 and was later convicted of computer fraud in 2013 for hacking the private intelligence firm Stratfor and releasing data to WikiLeaks, and sentenced to 10 years in prison.

<span class="mw-page-title-main">WikiLeaks</span> News leak publishing organisation

WikiLeaks is a non-profit media organisation and publisher of leaked documents. It is funded by donations and media partnerships. It has published classified documents and other media provided by anonymous sources. It was founded in 2006 by Julian Assange. Kristinn Hrafnsson is its editor-in-chief. Its website states that it has released more than ten million documents and associated analyses. WikiLeaks' most recent publication of original documents was in 2019 and its most recent publication was in 2021. From November 2022, numerous documents on the organisation's website became inaccessible. In 2023, Assange said that WikiLeaks is no longer able to publish due to his imprisonment and the effect that US government surveillance and WikiLeaks' funding restrictions were having on potential whistleblowers.

<span class="mw-page-title-main">Anonymous (hacker group)</span> Decentralized hacktivist group

Anonymous is a decentralized international activist and hacktivist collective and movement primarily known for its various cyberattacks against several governments, government institutions and government agencies, corporations and the Church of Scientology.

Michael Gregory Hoglund is an American author, researcher, and serial entrepreneur in the cyber security industry. He is the founder of several companies, including Cenzic, HBGary and Outlier Security. Hoglund contributed early research to the field of rootkits, software exploitation, buffer overflows, and online game hacking. His later work focused on computer forensics, physical memory forensics, malware detection, and attribution of hackers. He holds a patent on fault injection methods for software testing, and fuzzy hashing for computer forensics. Due to an email leak in 2011, Hoglund is well known to have worked for the U.S. Government and Intelligence Community in the development of rootkits and exploit material. It was also shown that he and his team at HBGary had performed a great deal of research on Chinese Government hackers commonly known as APT. For a time, his company HBGary was the target of a great deal of media coverage and controversy following the 2011 email leak. HBGary was later acquired by a large defense contractor.

HBGary is a subsidiary company of ManTech International, focused on technology security. In the past, two distinct but affiliated firms had carried the HBGary name: HBGary Federal, which sold its products to the US Government, and HBGary, Inc. Its other clients included information assurance companies, computer emergency response teams, and computer forensic investigators. On 29 February 2012, HBGary, Inc. announced it had been acquired by IT services firm ManTech International. At the same time, HBGary Federal was reported to be closed.

WikiLeaks, a whistleblowing website founded by Julian Assange, has received praise as well as criticism from the public, hacktivists, journalist organisations and government officials. The organisation has revealed human rights abuses and was the target of an alleged "cyber war". Allegations have been made that Wikileaks worked with or was exploited by the Russian government and acted in a partisan manner during the 2016 U.S. presidential election.

Jake Leslie Davis, best known by his online pseudonym Topiary, is a British hacktivist. He has worked with Anonymous, LulzSec, and other similar groups. He was an associate of the Internet group Anonymous, which has publicly claimed various online attacks, including hacking HBGary, Westboro Baptist Church, and Gawker. They have also claimed responsibility for the defacing of government websites in countries such as Zimbabwe, Syria, Tunisia, Ireland, and Egypt.

<span class="mw-page-title-main">LulzSec</span> Hacker group

LulzSec is a grey hat computer hacking group that claimed responsibility for several high profile attacks, including the compromise of user accounts from PlayStation Network in 2011. The group also claimed responsibility for taking the CIA website offline. Some security professionals have commented that LulzSec has drawn attention to insecure systems and the dangers of password reuse. It has gained attention due to its high profile targets and the sarcastic messages it has posted in the aftermath of its attacks. One of the founders of LulzSec was computer security specialist Hector Monsegur, who used the online moniker Sabu. He later helped law enforcement track down other members of the organization as part of a plea deal. At least four associates of LulzSec were arrested in March 2012 as part of this investigation. Prior, British authorities had announced the arrests of two teenagers they alleged were LulzSec members, going by the pseudonyms T-flow and Topiary.

<span class="mw-page-title-main">Operation AntiSec</span> Series of cyberattacks conducted by Anonymous and LulzSec

Operation Anti-Security, also referred to as Operation AntiSec or #AntiSec, is a series of hacking attacks performed by members of the hacking group LulzSec and Anonymous, and others inspired by the announcement of the operation. LulzSec performed the earliest attacks of the operation, with the first against the Serious Organised Crime Agency on 20 June 2011. Soon after, the group released information taken from the servers of the Arizona Department of Public Safety; Anonymous would later release information from the same agency two more times. An offshoot of the group calling themselves LulzSecBrazil launched attacks on numerous websites belonging to the Government of Brazil and the energy company Petrobras. LulzSec claimed to retire as a group, but on 18 July, they reconvened to hack into the websites of British newspapers The Sun and The Times, posting a fake news story of the death of the publication's owner Rupert Murdoch.

Hector Xavier Monsegur, known also by the online pseudonym Sabu, is an American computer hacker and co-founder of the hacking group LulzSec. Monsegur became an informant for the FBI, working with the agency for over ten months to aid them in identifying the other hackers from LulzSec and related groups while facing a sentence of 124 years in prison. LulzSec intervened in the affairs of organizations such as News Corporation, Stratfor, UK and American law enforcement bodies and Irish political party Fine Gael.

Anonymous is a decentralised virtual community. They are commonly referred to as an internet-based collective of hacktivists whose goals, like its organization, are decentralized. Anonymous seeks mass awareness and revolution against what the organization perceives as corrupt entities, while attempting to maintain anonymity. Anonymous has had a hacktivist impact. This is a timeline of activities reported to be carried out by the group.

<span class="mw-page-title-main">Stratfor email leak</span> Data breach of Global Intelligence Files

WikiLeaks began publishing emails leaked from strategic intelligence company Stratfor on 27 February 2012 under the title Global Intelligence Files. By July 2014, WikiLeaks had published 5,543,061 Stratfor emails. Wikileaks partnered with more than 25 world media organisations, including Rolling Stone, L’Espresso and The Hindu to analyse the documents.

<i>We Are Legion</i> 2012 American film

We Are Legion: The Story of the Hacktivists is a 2012 documentary film about the workings and beliefs of the self-described "hacktivist" collective, Anonymous.

Parmy Olson is a tech journalist for The Wall Street Journal. While at Forbes, she was known for her work on the hacktivist movement Anonymous. She describes herself as covering "agitators and innovators in mobile".

Ryan Ackroyd, a.k.a.Kayla and also lolspoon, is a former black hat hacker who was one of the six core members of the computer hacking group "LulzSec" during its 50-day spree of attacks from 6 May 2011 until 26 June 2011. Throughout the time, Ackroyd posed as a female hacker named "Kayla" and was responsible for the penetration of multiple military and government domains and many high profile intrusions into the networks of Gawker in December 2010, HBGaryFederal in 2011, PBS, Sony, Infragard Atlanta, Fox Entertainment and others. He eventually served 30 months in prison for his hacking activities.

<span class="mw-page-title-main">Sigurdur Thordarson</span> Icelandic hacker, informant and criminal (born 1992)

Sigurdur Ingi Thordarson, commonly known as Siggi hakkari, is an Icelandic convicted criminal and FBI informant against WikiLeaks. He is known for information leaks, multiple cases of fraud and embezzlement, sexual solicitation of minors and adults. He has multiple convictions for sexual offences.

<span class="mw-page-title-main">Phineas Fisher</span> Hacktivist

Phineas Fisher is an unidentified hacktivist and self-proclaimed anarchist revolutionary. Notable hacks include the surveillance company Gamma International, Hacking Team, the Sindicat De Mossos d'Esquadra and the ruling Turkish Justice and Development Party, three of which were later made searchable by WikiLeaks.

References

  1. Keizer, Gregg (2010-11-30). "WikiLeaks moves to Amazon servers after DOS attacks". Computerworld New Zealand. Retrieved 2010-12-29.
  2. 1 2 3 4 Vance, Ashlee (2010-12-03). "WikiLeaks Struggles to Stay Online After Attacks". The New York Times . Retrieved 2010-12-29.
  3. 1 2 Rosenbach, Marcel; Stark, Holger (2010-12-07). "Julian Assange Becomes US's Public Enemy No. 1". Der Spiegel . Retrieved 2011-12-02.
  4. th3j35t3r (2010-06-30). "Hacker macht Jagd auf Online-Dschihadisten". Die Welt (Interview). Interviewed by Florian Flade. Retrieved 2010-12-29.{{cite interview}}: CS1 maint: numeric names: authors list (link)
  5. "Afghan Taliban deny meeting U.N. envoy". Reuters. 2010-01-30. Retrieved 2011-01-03.
  6. "Did WikiLeaks Hacker The Jester Pull Police Raid Hoax?". Infosecisland.com. 2010-12-02. Retrieved 2011-08-30.
  7. Sullivan, Bob (2010-12-07). "Red Tape - WikiLeaks hacker a villain or a hero?". MSNBC. Archived from the original on 2011-05-02. Retrieved 2011-08-30.
  8. Leyden, John. "Jester claims credit for knocking Westboro Baptist Church offline". www.theregister.com. Retrieved 2022-11-14.
  9. Poeter, Damon (24 June 2011). "Will LulzSec's Hit on Arizona Cops be its Last Hurrah?". PC Magazine . Ziff Davis. Archived from the original on 28 December 2013. Retrieved 25 June 2011.
  10. Halliday, Josh (24 June 2011). "LulzSec: the members and the enemies". The Guardian . London. Guardian Media Group. Archived from the original on 26 June 2011. Retrieved 25 June 2011.
  11. "Splinter Group Says Document Outs Anonymous Members". threatpost.com. 22 March 2011. Retrieved 2022-12-19.
  12. Greenberg, Andy. "Ex-Anonymous Hackers Plan To Out Group's Members". Forbes. Retrieved 2022-12-19.
  13. Greenberg, Andy. "Anonymous And Ex-Anonymous Hackers Wage A War Of Identification". Forbes. Retrieved 2022-12-19.
  14. Chapman, Stephen (24 June 2011). "LulzSec's leader, Sabu, revealed?". ZDNet . CBS Interactive. Archived from the original on 27 June 2011. Retrieved 25 June 2011.
  15. "The Quest to Unmask the Ringleader of Anonymous - Technology". The Atlantic Wire. 2011-07-14. Retrieved 2011-08-30.
  16. Wagenseil, Paul (8 March 2012). "Despite Being Anonymous, Hacktivist Sabu Wasn't Hard to Find". Security News Daily . Retrieved 13 March 2012.
  17. "5 'Anonymous' hackers busted after one becomes FBI informant". Newsday. AP. March 6, 2012.
  18. Goldman, David (March 6, 2012). "Anonymous in disarray after major crackdown snares leaders". CNN.
  19. 1 2 3 Wagenseil, Paul (March 13, 2012). "Anti-Anonymous hacker threatens to expose them". MSNBC. Archived from the original on December 10, 2015.
  20. Wagenseil, Paul (March 12, 2012). "Pro-American Hacker's Attack Threatens to Expose Anonymous". Security News Daily.
  21. "th3j35t3r and QR Exploits Exposed Part 2". Wordpress. March 13, 2012.
  22. "Cve - Cve-2010-1807".
  23. ""Patriotic hacktivist" The Jester unmasked—or maybe it's a big troll". Ars Technica. May 15, 2012.
  24. th3j35t3r (16 May 2012). "Not totally sure what just happened, but damn it's getting out of hand now" . Retrieved 2012-05-28.{{cite web}}: CS1 maint: numeric names: authors list (link)
  25. Snowden and Assange Targeted by Mysterious Hacker "The Jester", Mother Jones, 2 July 2013
  26. "How the Jester fooled Russians—and Fox News—with one simple trick. [Updated]". 25 October 2016.