EXCLUSIVE: Leaked "RSA dump" appears authentic
A massive Pastebin dump of domain names and IP addresses supposedly linked to a cyber espionage ring appears to be the real deal.
The Pastebin dump, dated August 15, lists around 850 entries containing domain names and IP addresses, supposedly leaked by "RSA Employee #15666". The dump asserts the IP addresses and domain names listed are used in command and control operations by a cyber-espionage ring.
Click the pastebin link in the article and you'll see why it's referred to as the "RSA dump".
You'll also note there's a handful of domains references in the HBGary doc and a shittonne more in the pastebin dump.
Did you read the article/pastebin link? Sheesh...
These domain names and IPs have been out there for a while for anyone familiar with the HB Gary data dumps and other stuff going on by real security researchers. Just because someone claims they have an RSA employee ID ending in "666" and posts a list from a data dump, this constitutes an "exclusive" and authentic source? Give me a break.
There are a shedload more domain names and IPs listed in the Pastebin dump than in HBGary's analysis, from what I can tell. That's what makes it newsworthy.
I did, I found the pastebin before your post. I came here to read your take.
No reason IMO to label it an RSA dump that's all.. just misconstrues it.
Yes, there are a shittonne more there in the pastebin dump.
Certainly newsworthy..
you're so right, Patrick should have said something like "the chances are this isn't an actual RSA employee"... oh wait...
quite a few entries of ip 255.255.255.255 and 127.0.0.1
yeah you can consider those domains "parked" I guess.
- Topic Locked
Recent Posts
-
Public satellite imagery yields a wealth of intelligence...1 day 4 hours ago
-
Awesome feature track this week. Check it out here!1 day 4 hours ago
-
Special guests The Grugq, Singe, Charl and Andrew...1 week 1 day ago
-
Pwnage! Malware! Cats and dogs living together!1 week 1 day ago
-
All your herp derps are belong to RPTs...3 weeks 2 days ago
Recent comments
- Love the Das Efx tribute.
10 weeks 2 days ago - LOL so no comment by Adobe's
11 weeks 4 days ago - Welcome back, great stuff as
14 weeks 22 hours ago - AEDs are very accurate and
20 weeks 4 days ago - I did see that after we
20 weeks 6 days ago - Great podcast, a small
21 weeks 4 days ago - Peck of pickled peppers? We
24 weeks 3 days ago - Link to Sophail: Applied
27 weeks 1 day ago - Fixed. I got autocorrected...
29 weeks 2 days ago - it's jduck, not duck
29 weeks 2 days ago




HB Gary dumps have been public for months, anyone in the know already knew about soysauce, tojo and FF, and the links to said domains...
now you are calling this an RSA Dump... how exactly is this an RSA Dump?