Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

Scheduled Pinned Locked Moved Uncategorized
44 Posts 32 Posters 5 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • micahflee@infosec.exchangeM micahflee@infosec.exchange

    DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

    Enjoy 🧊🔨 https://ddosecrets.org/article/ice-contracts

    varx@infosec.exchangeV This user is from outside of this forum
    varx@infosec.exchangeV This user is from outside of this forum
    varx@infosec.exchange
    wrote last edited by
    #7

    @micahflee I'm very amused by all of the Bugcrowd garbage data that ended up in the DHS contractors table.

    Who knew that the Fortune 500 company `<a href=\"https://www.bugcrowd.com/\">Phishing</a><br><img src=http://194.164.169.161/p.png><!--` was working with DHS? 😮

    1 Reply Last reply
    0
    • manchicken@defcon.socialM manchicken@defcon.social

      @micahflee The Linux Foundation got half a million dollars from ICE contracts.

      phillip@social.lolP This user is from outside of this forum
      phillip@social.lolP This user is from outside of this forum
      phillip@social.lol
      wrote last edited by
      #8

      @manchicken @micahflee looks like it was from the DHS overall (not ICE specifically), lasted from 2017-2018, and the funds were used to improve the security of OSS in general. Unless I’m missing more context, not exactly a bad thing imo

      manchicken@defcon.socialM cinebox@masto.hackers.townC 2 Replies Last reply
      0
      • micahflee@infosec.exchangeM micahflee@infosec.exchange

        DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

        Enjoy 🧊🔨 https://ddosecrets.org/article/ice-contracts

        vwbusguy@mastodon.onlineV This user is from outside of this forum
        vwbusguy@mastodon.onlineV This user is from outside of this forum
        vwbusguy@mastodon.online
        wrote last edited by
        #9

        @micahflee Wow if this is true, UC San Diego got over $2.3m from three ICE contracts. Not sure what "Full Proposal" means, though? Did they actually get that or was it some faculty member applying for grants they didn't receive?

        iampytest1@infosec.exchangeI 1 Reply Last reply
        0
        • phillip@social.lolP phillip@social.lol

          @manchicken @micahflee looks like it was from the DHS overall (not ICE specifically), lasted from 2017-2018, and the funds were used to improve the security of OSS in general. Unless I’m missing more context, not exactly a bad thing imo

          manchicken@defcon.socialM This user is from outside of this forum
          manchicken@defcon.socialM This user is from outside of this forum
          manchicken@defcon.social
          wrote last edited by
          #10

          @phillip @micahflee I do hope that's true. It would be disappointing to see any organization doing business with DHS/ICE since they made it plain how they have chosen to operate.

          phillip@social.lolP 1 Reply Last reply
          0
          • manchicken@defcon.socialM manchicken@defcon.social

            @phillip @micahflee I do hope that's true. It would be disappointing to see any organization doing business with DHS/ICE since they made it plain how they have chosen to operate.

            phillip@social.lolP This user is from outside of this forum
            phillip@social.lolP This user is from outside of this forum
            phillip@social.lol
            wrote last edited by
            #11

            @manchicken @micahflee that’s what it says in the leaked contract files

            manchicken@defcon.socialM vwbusguy@mastodon.onlineV 2 Replies Last reply
            0
            • phillip@social.lolP phillip@social.lol

              @manchicken @micahflee that’s what it says in the leaked contract files

              manchicken@defcon.socialM This user is from outside of this forum
              manchicken@defcon.socialM This user is from outside of this forum
              manchicken@defcon.social
              wrote last edited by
              #12

              @phillip @micahflee Yeah; I do think it's important to note that we don't actually have the full data set from what I can tell. We _should_ have the full data set, these contracts _should_ be public.

              1 Reply Last reply
              0
              • overflo@23.socialO overflo@23.social

                @micahflee

                That is very interesting!
                Some files are missing, are they ging to be available eventually?

                micahflee@infosec.exchangeM This user is from outside of this forum
                micahflee@infosec.exchangeM This user is from outside of this forum
                micahflee@infosec.exchange
                wrote last edited by
                #13

                @overflo there were some 404 errors briefly right after I launched it because of a bug, but that's fixed now

                1 Reply Last reply
                0
                • phillip@social.lolP phillip@social.lol

                  @manchicken @micahflee that’s what it says in the leaked contract files

                  vwbusguy@mastodon.onlineV This user is from outside of this forum
                  vwbusguy@mastodon.onlineV This user is from outside of this forum
                  vwbusguy@mastodon.online
                  wrote last edited by
                  #14

                  @phillip @manchicken @micahflee "CII is a private sector solution" in the Linux foundation..

                  "This funding would include a DHS representative holding a voting seat on the CII Steering Group"

                  Does this mean current DHS has a seat on a Linux Foundation entity?

                  phillip@social.lolP 1 Reply Last reply
                  0
                  • micahflee@infosec.exchangeM micahflee@infosec.exchange

                    DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

                    Enjoy 🧊🔨 https://ddosecrets.org/article/ice-contracts

                    krosen_nw@mindly.socialK This user is from outside of this forum
                    krosen_nw@mindly.socialK This user is from outside of this forum
                    krosen_nw@mindly.social
                    wrote last edited by
                    #15

                    @micahflee Cool!
                    Now do the DOJ #EpsteinFiles
                    Pretty please 🙏

                    1 Reply Last reply
                    0
                    • micahflee@infosec.exchangeM micahflee@infosec.exchange

                      DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

                      Enjoy 🧊🔨 https://ddosecrets.org/article/ice-contracts

                      astropug@hachyderm.ioA This user is from outside of this forum
                      astropug@hachyderm.ioA This user is from outside of this forum
                      astropug@hachyderm.io
                      wrote last edited by
                      #16

                      @micahflee

                      HBGary! That’s a name I haven’t heard in a while.

                      1 Reply Last reply
                      0
                      • vwbusguy@mastodon.onlineV vwbusguy@mastodon.online

                        @phillip @manchicken @micahflee "CII is a private sector solution" in the Linux foundation..

                        "This funding would include a DHS representative holding a voting seat on the CII Steering Group"

                        Does this mean current DHS has a seat on a Linux Foundation entity?

                        phillip@social.lolP This user is from outside of this forum
                        phillip@social.lolP This user is from outside of this forum
                        phillip@social.lol
                        wrote last edited by
                        #17

                        @vwbusguy @manchicken @micahflee No, the DHS does not have a voting seat with the Linux Foundation. The CII Steering Group is a sub-project of the Linux foundation that accepts monetary donations, then doles them out to open source projects in need.

                        Link Preview Image
                        Core Infrastructure Initiative - Wikipedia

                        favicon

                        (en.wikipedia.org)

                        So the DHS has (or had maybe?) a voting seat to give them a say in how their donations are spent.

                        seruko@mstdn.socialS 1 Reply Last reply
                        0
                        • vwbusguy@mastodon.onlineV vwbusguy@mastodon.online

                          @micahflee Wow if this is true, UC San Diego got over $2.3m from three ICE contracts. Not sure what "Full Proposal" means, though? Did they actually get that or was it some faculty member applying for grants they didn't receive?

                          iampytest1@infosec.exchangeI This user is from outside of this forum
                          iampytest1@infosec.exchangeI This user is from outside of this forum
                          iampytest1@infosec.exchange
                          wrote last edited by
                          #18

                          Just adding something I noticed: these grants and contract are part of DHS' Long Range Broad Agency Announcement (LRBAA) program:

                          The Science and Technology Directorate's (S&T) Long Range Broad Agency Announcement (LRBAA) is a standing, open invitation to the scientific and technical communities to fund pioneering research and development (R&D) projects in support of our nation’s security.

                          Access Denied

                          favicon

                          (www.dhs.gov)

                          That doesn't answer your question, though.

                          vwbusguy@mastodon.onlineV 1 Reply Last reply
                          0
                          • micahflee@infosec.exchangeM micahflee@infosec.exchange

                            I just threw together a website visualizing this ICE contract data! You can browse through the companies and their contracts, and filter them by state https://micahflee.github.io/ice-contracts/

                            dbaplanb@mastodon.sdf.orgD This user is from outside of this forum
                            dbaplanb@mastodon.sdf.orgD This user is from outside of this forum
                            dbaplanb@mastodon.sdf.org
                            wrote last edited by
                            #19

                            @micahflee Thank you for making this info available! Disheartening how many universities are listed...

                            1 Reply Last reply
                            0
                            • micahflee@infosec.exchangeM micahflee@infosec.exchange

                              DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

                              Enjoy 🧊🔨 https://ddosecrets.org/article/ice-contracts

                              skua@mastodon.socialS This user is from outside of this forum
                              skua@mastodon.socialS This user is from outside of this forum
                              skua@mastodon.social
                              wrote last edited by
                              #20

                              @micahflee
                              Anyone got the geeks to set up a bot that posts the names of 10 of the companies once every 12 hours?
                              #ICEContractor #ICEComplicit

                              dalias@hachyderm.ioD 1 Reply Last reply
                              0
                              • iampytest1@infosec.exchangeI iampytest1@infosec.exchange

                                Just adding something I noticed: these grants and contract are part of DHS' Long Range Broad Agency Announcement (LRBAA) program:

                                The Science and Technology Directorate's (S&T) Long Range Broad Agency Announcement (LRBAA) is a standing, open invitation to the scientific and technical communities to fund pioneering research and development (R&D) projects in support of our nation’s security.

                                Access Denied

                                favicon

                                (www.dhs.gov)

                                That doesn't answer your question, though.

                                vwbusguy@mastodon.onlineV This user is from outside of this forum
                                vwbusguy@mastodon.onlineV This user is from outside of this forum
                                vwbusguy@mastodon.online
                                wrote last edited by
                                #21

                                @iampytest1 Yeah, looking at the contract, it seems more InfoSec research related for DHS during Biden era.

                                1 Reply Last reply
                                0
                                • micahflee@infosec.exchangeM micahflee@infosec.exchange

                                  DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

                                  Enjoy 🧊🔨 https://ddosecrets.org/article/ice-contracts

                                  julie@merida.hairJ This user is from outside of this forum
                                  julie@merida.hairJ This user is from outside of this forum
                                  julie@merida.hair
                                  wrote last edited by
                                  #22

                                  @micahflee@infosec.exchange Uhhh... looks like DHS may have had their contracts system get popped during a penetration test in 2025?

                                  [Edit: LOL]

                                  Link Preview Image
                                  terrorbite@meow.socialT micahflee@infosec.exchangeM 2 Replies Last reply
                                  0
                                  • phillip@social.lolP phillip@social.lol

                                    @manchicken @micahflee looks like it was from the DHS overall (not ICE specifically), lasted from 2017-2018, and the funds were used to improve the security of OSS in general. Unless I’m missing more context, not exactly a bad thing imo

                                    cinebox@masto.hackers.townC This user is from outside of this forum
                                    cinebox@masto.hackers.townC This user is from outside of this forum
                                    cinebox@masto.hackers.town
                                    wrote last edited by
                                    #23

                                    @phillip @manchicken @micahflee Probably from CISA, which is under DHS for some reason.

                                    1 Reply Last reply
                                    0
                                    • micahflee@infosec.exchangeM micahflee@infosec.exchange

                                      DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

                                      Enjoy 🧊🔨 https://ddosecrets.org/article/ice-contracts

                                      claralistensprechen3rd@friendica.myportal.socialC This user is from outside of this forum
                                      claralistensprechen3rd@friendica.myportal.socialC This user is from outside of this forum
                                      claralistensprechen3rd@friendica.myportal.social
                                      wrote last edited by
                                      #24
                                      @micahflee Well well well, move over WikiLeaks!
                                      1 Reply Last reply
                                      0
                                      • micahflee@infosec.exchangeM micahflee@infosec.exchange

                                        I just threw together a website visualizing this ICE contract data! You can browse through the companies and their contracts, and filter them by state https://micahflee.github.io/ice-contracts/

                                        R This user is from outside of this forum
                                        R This user is from outside of this forum
                                        risottobias@toot.risottobias.org
                                        wrote last edited by
                                        #25

                                        @micahflee this is awesome!

                                        1 Reply Last reply
                                        0
                                        • julie@merida.hairJ julie@merida.hair

                                          @micahflee@infosec.exchange Uhhh... looks like DHS may have had their contracts system get popped during a penetration test in 2025?

                                          [Edit: LOL]

                                          Link Preview Image
                                          terrorbite@meow.socialT This user is from outside of this forum
                                          terrorbite@meow.socialT This user is from outside of this forum
                                          terrorbite@meow.social
                                          wrote last edited by
                                          #26

                                          @julie @micahflee that means they were probably aware of the vulnerability that allowed this leak to happen… and then they didn't fix it (nor did they remove the data that the pentesters injected into their production database, apparently!)

                                          generalx@freeradical.zoneG 1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups