Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

Scheduled Pinned Locked Moved Uncategorized
44 Posts 32 Posters 5 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • julie@merida.hairJ julie@merida.hair

    @micahflee@infosec.exchange Uhhh... looks like DHS may have had their contracts system get popped during a penetration test in 2025?

    [Edit: LOL]

    Link Preview Image
    micahflee@infosec.exchangeM This user is from outside of this forum
    micahflee@infosec.exchangeM This user is from outside of this forum
    micahflee@infosec.exchange
    wrote last edited by
    #30

    @julie huh, this is quite interesting

    1 Reply Last reply
    0
    • terrorbite@meow.socialT terrorbite@meow.social

      @julie @micahflee that means they were probably aware of the vulnerability that allowed this leak to happen… and then they didn't fix it (nor did they remove the data that the pentesters injected into their production database, apparently!)

      generalx@freeradical.zoneG This user is from outside of this forum
      generalx@freeradical.zoneG This user is from outside of this forum
      generalx@freeradical.zone
      wrote last edited by
      #31

      @TerrorBite @julie @micahflee
      Bugcrowd HackDHS

      1 Reply Last reply
      0
      • skua@mastodon.socialS skua@mastodon.social

        @micahflee
        Anyone got the geeks to set up a bot that posts the names of 10 of the companies once every 12 hours?
        #ICEContractor #ICEComplicit

        dalias@hachyderm.ioD This user is from outside of this forum
        dalias@hachyderm.ioD This user is from outside of this forum
        dalias@hachyderm.io
        wrote last edited by
        #32

        @skua @micahflee Maybe every hour?

        skua@mastodon.socialS 1 Reply Last reply
        0
        • dalias@hachyderm.ioD dalias@hachyderm.io

          @skua @micahflee Maybe every hour?

          skua@mastodon.socialS This user is from outside of this forum
          skua@mastodon.socialS This user is from outside of this forum
          skua@mastodon.social
          wrote last edited by
          #33

          @dalias
          Forking Reply

          "Frequency of bot posts" - ideally something that could be swapped over to "User selected frequency of receiving posts by a bot".

          For me, if I checked my notifications after 2 days away from Mastodon and found 48 posts by a bot I'd unFollow.

          But really I have no idea where a sweet spot might be found.

          #FrequencyOfBotPosts #UserControlBotReceipts

          dalias@hachyderm.ioD 1 Reply Last reply
          0
          • skua@mastodon.socialS skua@mastodon.social

            @dalias
            Forking Reply

            "Frequency of bot posts" - ideally something that could be swapped over to "User selected frequency of receiving posts by a bot".

            For me, if I checked my notifications after 2 days away from Mastodon and found 48 posts by a bot I'd unFollow.

            But really I have no idea where a sweet spot might be found.

            #FrequencyOfBotPosts #UserControlBotReceipts

            dalias@hachyderm.ioD This user is from outside of this forum
            dalias@hachyderm.ioD This user is from outside of this forum
            dalias@hachyderm.io
            wrote last edited by
            #34

            @skua Posts go in your home feed not notifications.

            skua@mastodon.socialS 1 Reply Last reply
            0
            • dalias@hachyderm.ioD dalias@hachyderm.io

              @skua Posts go in your home feed not notifications.

              skua@mastodon.socialS This user is from outside of this forum
              skua@mastodon.socialS This user is from outside of this forum
              skua@mastodon.social
              wrote last edited by
              #35

              @dalias
              You're right.
              And on my home feed I'm choosing to unFollow some accounts as I want a Home feed that moves pretty slowly - ideally slowly enough that I "often" get to see posts by my most favourite accounts.

              Thinking multiple bots could work.
              @HourlyQuislings
              @DailyQuislings
              @WeeklyQuislings
              User gets to choose frequency.

              tokyo_0@mas.toT 1 Reply Last reply
              0
              • micahflee@infosec.exchangeM micahflee@infosec.exchange

                DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

                Enjoy 🧊🔨 https://ddosecrets.org/article/ice-contracts

                geniodiabolico@mastodon.geniodiabolico.synology.meG This user is from outside of this forum
                geniodiabolico@mastodon.geniodiabolico.synology.meG This user is from outside of this forum
                geniodiabolico@mastodon.geniodiabolico.synology.me
                wrote last edited by
                #36

                @micahflee

                FYI - some of the more perplexing names on this list:

                The Linux Foundation
                National Public Radio, Inc.

                1 Reply Last reply
                0
                • manchicken@defcon.socialM manchicken@defcon.social

                  @micahflee The Linux Foundation got half a million dollars from ICE contracts.

                  wyatt@soc.megatokyo.moeW This user is from outside of this forum
                  wyatt@soc.megatokyo.moeW This user is from outside of this forum
                  wyatt@soc.megatokyo.moe
                  wrote last edited by
                  #37
                  @manchicken @micahflee it looks like that started in 2014 and ended in 2018?
                  if i'm reading the dataset correctly. Still not a good look
                  1 Reply Last reply
                  0
                  • phillip@social.lolP phillip@social.lol

                    @vwbusguy @manchicken @micahflee No, the DHS does not have a voting seat with the Linux Foundation. The CII Steering Group is a sub-project of the Linux foundation that accepts monetary donations, then doles them out to open source projects in need.

                    Link Preview Image
                    Core Infrastructure Initiative - Wikipedia

                    favicon

                    (en.wikipedia.org)

                    So the DHS has (or had maybe?) a voting seat to give them a say in how their donations are spent.

                    seruko@mstdn.socialS This user is from outside of this forum
                    seruko@mstdn.socialS This user is from outside of this forum
                    seruko@mstdn.social
                    wrote last edited by
                    #38

                    @phillip sure that's correct and the best type of correct. Broadly it's true that donors with money always have some kind of vote

                    1 Reply Last reply
                    0
                    • micahflee@infosec.exchangeM micahflee@infosec.exchange

                      I just threw together a website visualizing this ICE contract data! You can browse through the companies and their contracts, and filter them by state https://micahflee.github.io/ice-contracts/

                      lioh@social.anoxinon.deL This user is from outside of this forum
                      lioh@social.anoxinon.deL This user is from outside of this forum
                      lioh@social.anoxinon.de
                      wrote last edited by
                      #39

                      @micahflee I find this scrolling visible between floating menus quite irritating.

                      1 Reply Last reply
                      0
                      • micahflee@infosec.exchangeM micahflee@infosec.exchange

                        I just threw together a website visualizing this ICE contract data! You can browse through the companies and their contracts, and filter them by state https://micahflee.github.io/ice-contracts/

                        jamey@toot.catJ This user is from outside of this forum
                        jamey@toot.catJ This user is from outside of this forum
                        jamey@toot.cat
                        wrote last edited by
                        #40

                        @micahflee Oh, I see this is from all of DHS, not just ICE, and also that it includes contracts which ended years ago. That's good to be aware of. I actually worked on part of this one contract, over a decade ago, and it was purely about improving cybersecurity for people's smartphones; it had nothing to do with immigration. https://micahflee.github.io/ice-contracts/?state=OR&modalType=contract&modalAwardId=937

                        1 Reply Last reply
                        0
                        • micahflee@infosec.exchangeM micahflee@infosec.exchange

                          DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

                          Enjoy 🧊🔨 https://ddosecrets.org/article/ice-contracts

                          opiobf@piaille.frO This user is from outside of this forum
                          opiobf@piaille.frO This user is from outside of this forum
                          opiobf@piaille.fr
                          wrote last edited by
                          #41

                          @micahflee poke @ddosecrets

                          1 Reply Last reply
                          0
                          • micahflee@infosec.exchangeM micahflee@infosec.exchange

                            DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

                            Enjoy 🧊🔨 https://ddosecrets.org/article/ice-contracts

                            tofuhuehnchen@fedi.atT This user is from outside of this forum
                            tofuhuehnchen@fedi.atT This user is from outside of this forum
                            tofuhuehnchen@fedi.at
                            wrote last edited by
                            #42

                            @micahflee Departement of Peace? Reminds me a bit of "Minipax" from Orwell's 1984 or the same Ministry in Babylon 5

                            1 Reply Last reply
                            0
                            • skua@mastodon.socialS skua@mastodon.social

                              @dalias
                              You're right.
                              And on my home feed I'm choosing to unFollow some accounts as I want a Home feed that moves pretty slowly - ideally slowly enough that I "often" get to see posts by my most favourite accounts.

                              Thinking multiple bots could work.
                              @HourlyQuislings
                              @DailyQuislings
                              @WeeklyQuislings
                              User gets to choose frequency.

                              tokyo_0@mas.toT This user is from outside of this forum
                              tokyo_0@mas.toT This user is from outside of this forum
                              tokyo_0@mas.to
                              wrote last edited by
                              #43

                              @skua @dalias These last few days I've been really glad I put a chunk of time in a while back organising accounts onto topic-based lists (which works better now you can have those posts excluded from your home timeline). Let's me avoid news when I want to, but still have it right there when something big happens.

                              1 Reply Last reply
                              0
                              • micahflee@infosec.exchangeM micahflee@infosec.exchange

                                DHS's Office of Industry Partnership was hacked by a group called "Department of Peace" and info about ICE contracts with over 6,000 companies is now published on @ddosecrets.org!

                                Enjoy 🧊🔨 https://ddosecrets.org/article/ice-contracts

                                libertat_22@mastodon.worldL This user is from outside of this forum
                                libertat_22@mastodon.worldL This user is from outside of this forum
                                libertat_22@mastodon.world
                                wrote last edited by
                                #44

                                @micahflee

                                Yesterday’s documents confirm the deep role of Microsoft and Palantir in ICE’s repressive machinery, with technologies enabling mass surveillance disguised as “immigration management.”

                                1 Reply Last reply
                                0
                                • R relay@relay.infosec.exchange shared this topic
                                Reply
                                • Reply as topic
                                Log in to reply
                                • Oldest to Newest
                                • Newest to Oldest
                                • Most Votes


                                • Login

                                • Login or register to search.
                                • First post
                                  Last post
                                0
                                • Categories
                                • Recent
                                • Tags
                                • Popular
                                • World
                                • Users
                                • Groups