TorrentSpy names hacker and details attack

By Nancy Gohring, IDG News Service |  Security Add a new comment

TorrentSpy named the hacker who it claims broke into its computer systems on behalf of the Motion Picture Association of America (MPAA), as part of a legal request that would force the MPAA to turn over documents stolen from the Internet file-searching company.

TorrentSpy accused the MPAA in May of paying a hacker US$15,000 to steal confidential company information, including e-mails and passwords for accessing TorrentSpy's servers. The MPAA has called the charges baseless.

On Thursday, TorrentSpy asked the U.S. District Court, Central District of California, to require the MPAA to hand over any documents it acquired and reveal who has seen them. If the court grants the request, made as part of the discovery stage of the case, the MPAA will have 10 days to comply.

TorrentSpy included with its court filing a declaration from Robert Anderson, the hacker allegedly hired by the MPAA, detailing his activities and his ties to TorrentSpy.

Anderson describes himself as an "acquaintance" of Justin Bunnell, a principal of the company that runs TorrentSpy.com, who did some marketing work in 2004 and 2005 for a company Bunnell was involved with. The two parted ways in April last year, when Anderson stopped working for the company and became "upset" with Bunnell, he said in his declaration.

Two months later, Anderson contacted the MPAA and offered to provide it with information about TorrentSpy, he said. The court filing includes a document described as a contract signed by the MPAA and a bogus company, representing Anderson, that includes the MPAA's agreement to pay Anderson the $15,000 for his services.

Anderson says the MPAA "knew, or reasonably should have known," that he was not authorized to obtain the information he did, which also included e-mails, client billing information, IP (Internet protocol) addresses of servers, a cashflow spreadsheet and a personal utility bill of one of the company's principals.

He also names a private investigator firm that he allegedly helped hire on behalf of the MPAA to comb through Bunnell's trash and that of other TorrentSpy associates.

The MPAA didn't immediately respond to a request for comment Friday morning. In the past it has described the claims as "baseless" and accused TorrentSpy of filing its lawsuit in retaliation against earlier suits filed by the MPAA.

The MPAA filed several lawsuits earlier this year in an effort to shut down Web sites operated by companies, including TorrentSpy, that help users find digital music and video files online.

TorrentSpy operates a search engine that allows users to find files that can be shared using BitTorrent Inc.'s file sharing system. TorrentSpy argues that it only helps users find files but doesn't actually offer content itself, so it can't be held liable for users who download illegal content.

Those suits, and the action initiated by TorrentSpy regarding the hacker allegations, are ongoing.

    Add a comment

    Post a comment using one of these accounts
    Or join now
    At least 6 characters

    Note: Comment will appear soon after you have activated your account.
    Obscene/spam comments will be removed and accounts suspended.
    The information you submit is subject to our Privacy Policy and Terms of Service.

    ITworld LIVE

    SecurityWhite Papers & Webcasts

    White Paper

    Overcome Top 7 Admin Challenges of Active Directory

    As Active Directory's role in the enterprise has drastically increased, so has the need to secure the data. Gain insight on creating repeatable, enforceable processes that reduces administrative overhead and enables robust, customizable reporting and auditing capabilities. Brought to you by NetIQ.

    White Paper

    Insiders Can Ruin Your Company. Take Action.

    Did you know that 80 percent of threats to an organization come from the inside? The threat from insiders is often overlooked in organizations worldwide. This white paper from NetIQ, discusses key technology solutions that help to prevent and detect insider threats.

    White Paper

    Top Solutions and Tools to Prevent Devastating Malware

    Custom malware frequently goes undetected. According to Forrester Research, the best way to reduce risk of breach is to deploy file integrity monitoring (FIM) tools that provide immediate alerts. This white paper has been brought to you by NetIQ, the leader in solving complex IT challenges.

    White Paper

    Streamline Compliance and Increase ROI

    Streamline, simplify, and automate compliance related activities; especially those that impact multiple business units. This white paper from NetIQ, outlines solutions that will help your business gain the maximum return on investment possible while aligning your compliance programs.

    White Paper

    X-Ray of the PCI Process-4 Proactive Steps

    This white paper from Forrester Research Inc., helps break PCI into understandable components. Security and risk professionals will gain knowledge and insight into creating a compliant and secure IT environment. Follow these four proactive steps now before your next audit. Brought to you by NetIQ.

    See more White Papers | Webcasts

    Ask a question

    Ask a Question