Documents Reveal Al Qaeda Cyberattacks

The attacks were relatively minor but show the group's interest in cyberwar

April 14, 2010 RSS Feed Print
  • Comment (10)

Buried inside hundreds of pages of heavily redacted court documents from the case of a man accused of being one of al Qaeda's chief recruiters, is evidence that the terrorist group has launched successful cyberattacks, including one against government computers in Israel. This was the first public confirmation that the terrorist group has mounted an offensive cyberattack. The attacks were relatively unsophisticated and likely occurred before November 2001, when the prisoner who described them was arrested.

The terrorism suspect, Mohamedou Ould Slahi, was ordered freed from the prison at Guantánamo Bay last month by a federal judge who found that the government had insufficient evidence to continue detaining him. The Justice Department has appealed that decision. Military investigators concluded several years ago that Slahi had been both physically and psychologically tortured at Gitmo, which could have tainted evidence and likely prompted the judge's release order. The court records do not specify when and under what circumstances Slahi discussed al Qaeda's venture into cyberwar.

Though the vast majority of the court records dealing with the case remain classified, some details escaped redaction. For instance, Slahi told interrogators that al Qaeda "used the Internet to launch relatively low-level computer attacks." Al Qaeda "also sabotaged other websites by launching denial-of-service attacks, such as one targeting the Israeli prime minister's computer server," court records show. The Israeli embassy in Washington had no comment on the information published in the court records.

Denial of service attacks are common and relatively easy and cheap to coordinate. They aim to overload and temporarily disable websites for the duration of the attack. Al Qaeda's interest in the tactic, however, has received little discussion and attention.

Slahi, like many al Qaeda recruits, was highly educated and knowledgeable about computers, according to court filings. A citizen of Mauritania, he says he worked as a systems administrator for an Internet service provider there from May 2000 until July 2001. Slahi told interrogators that bin Laden's group posted hacking instructions "on specific websites that directed the date and time of the attack."

Even though al Qaeda's cyberattack was relatively minor and unsophisticated, other, more complicated attacks can be far more dangerous. Catastrophic cyberattacks such as crippling the power grid or breaching the air traffic control system are more the purview of nation states rather than terrorist groups. "To date, al Qaeda has not used its own hackers or rented hackers to damage, disrupt, or destroy important systems like banks, electric power grids, trains," says former presidential counterterrorism adviser and current consultant Richard Clarke. "We should expect that at some point a terrorist group might engage in low-level cyberwar, but the real threat is nation state action."

Although nation states are the primary concern, there are fears in the counterterrorism community that future terrorist attacks could be compounded if carried out in conjunction with cyber mischief. "Al Qaeda is focused more on attacking innocent civilians than computer networks," says one senior U.S. counterterrorism official. "That's not to say they're uninterested in cyberspace. But their capabilities in this area seem to be relatively unsophisticated, and there doesn't appear to be a concerted effort on their part to enhance them. Sure, some computer-savvy terrorist sympathizers try to make trouble from time to time, but at this point we're talking about things that cause more of a nuisance than lasting harm."

In some ways, a fight in cyberspace is one the United States welcomes. "When someone from al Qaeda jumps online, then we can jump on them," says another counterterrorism official.

Tags:
al Qaeda,
national security terrorism and the military,
terrorism

Reader Comments Read all comments (10)

Add Your Thoughts
Your comment will be posted immediately, unless it is spam or contains profanity. For more information, please see our Comments FAQ.

Johann Wolfgang Vo Goethe stated, "We don’t know what we see; we see what we know." One should never underestimate an enemies capabilities. A well thought out cyber attack blended with a low level physical attack could very well create a high level of angsty within a population. Just because we have not seen a demonstrtion of, or know, doesn't mean that a capability to execute doesn't exist. Its not a matter of if, its when.

S. Michael of MD 10:12AM April 17, 2010

until we have something pretty big happen in the USA as a result of computers fouled by enemies. I imagine Al Qaeda would like nothing better than to smash up some western capitalism. Sure, they like literal bombs better. But cyber bombs? Tempting to them, too, of course.

Muser of NM 10:58PM April 16, 2010

Maybe you don't know how the Internet works. When you access the Internet, your physical location can be determined. The US controls all the servers that act as "traffic cops" on the Internet.

If we know where they are, we can send troops to kill them, launch a Predator missile in their window, or observe their movements from a satellite to see where they go and what they do - and who they talk to.

Terrorists are not the technologically ignorant goat herders so many here would like to believe. You may be confusing al Qaeda with the Taliban footsoldiers.

Many terrorists are highly educated and technologically savvy. They know how to "spoof" their IP addresses and mask their locations. They send vacation photos that contain encoded, hidden attack plans. They're not stupid, and it's foolish to assume otherwise.

That said, it's generally not something terrorists care about. They want spectacular attacks that kill lots of people and make lots of headlines - shutting down a website doesn't do that.

They may have an interest in using cyberattacks to assist in executing other attacks, but that's about it.

Rich of CO 12:54PM April 16, 2010

Photo Galleries

History of U.S. Bombings, Failed Attempts

A look at some of the worst bombings in the U.S. and infamous failed attempts.

advertisement

Latest Videos