An Indian hacking group responsible for leaking Symantec source code claim to be in possession of a database of login credentials for US Government agencies.
Accounts, seen and reported by infosec island, included 68 username and password sets acquired after the group claimed to have hacked the Indian Ministry of External Affairs and the National Informatics Centre.
The agencies did not comment when asked to respond to the claims.
The leak was part of a campaign by hacking group The Lords of Dharmaraja to undermine and expose what they claimed was espionage conducted by India against foreign governments and organisations.
YamaTough, a hacker who leaked the database, said the group held evidence that India spied on 12-year old US-China Economic and Security Review Commission which provided the US Government with reports on how trade between the US and China affected national security.
The same group claimed responsibility for leaking source code of an old version of Symantec's Norton anti-virus. The group has boasted that the source code was stolen from servers belonging to the Indian Government.
But Symantec has denied it had handed source code to the Indian Government.
The leak also followed the disclosure of unverified documents that claimed Apple, RIM and Nokia had made backdoors in their respective mobile platforms available to the Indian Government for surveillance purposes.
YamaTough told infosec island the group held information on other companies that had not yet been released.
Copyright © SC Magazine, Australia
Processing registration... Please wait.
This process can take up to a minute to complete.
A confirmation email has been sent to your email address - SUPPLIED GOES EMAIL HERE. Please click on the link in the email to verify your email address. You need to verify your email before you can start posting.
If you do not receive your confirmation email within the next few minutes, it may be because the email has been captured by a junk mail filter. Please ensure you add the domain @itnews.com.au to your white-listed senders.