Computing

Employer Spying

Submitted by warebehr, , Thread ID: 77793

Thread Closed
warebehr
Newbie
Level:
0
Reputation:
0
Posts:
17
Likes:
3
Credits:
22
01-03-2018, 06:50 PM
#1
Hello All,


I've come to hear your thoughts on workplace spying - AKA - corporate espionage. I need advice, before I proceed with my current plans of going to the FBI.

Recently I became a victim of this, and it was purely my knowledge as a hobby programmer and former unethical hacker that lead me to the discovery of a company MDM tool being deployed to my personal devices, and eventually to every device in my home.

I have lost a laptop, 2 phones, and a modem/router combo to the tool that was deployed by my(now former) employer.


It all began January 15th,

When I logged into my xbox account to check on my recent purchase history, which led me to my recent activities page. I noticed a login around an hour before I would get to work, from Internet Explorer. Immediately I knew it had to be my boss. The company employs 7 people in total (when I was there), and the only person who goes to work an hour early, would be my boss.

I did not say anything, just began my own investigation into the matter. There was never any work-related activities involving my xbox account. The only possible way my boss could have gotten my login details, would be the use of a password recovery tool that could extract Chrome saved passwords. I made the mistake of using my personal email to log into Chrome - it has all my industry bookmarks.

At that point, having had a great relationship with my boss, I didn't think anything of it. I started to notice strange things happen when my work email password was changed. My secondary role in the office was Network Manager, so it would seem odd for my email to get changed, when I am the one who would make the email accounts.

Immediately I scoured the computer for a virus. I found tons of new processes and services running in the background, and informed my boss I thought I had a virus. One process would be one called "LogMeIn". I had noticed that morning my phone received an OTA update. I didn't think anything of it.

Like an Idiot, I plugged my phone into the computer to charge that day. When I got home, I plugged my phone into my home computer to charge. Then I noticed this same LogMeIn process running on my home computer!

Immediately, I checked my phone. I found a bunch of odd/new/fake Android System processes running. I checked my wife's phone, same thing! These processes included "Work Profile Management", and they did NOT normally run on our phones.

Immediately I factory reset both phones and the home laptop. When I booted up the laptop, it had a new bios password set, with the bootloader locked to make it where USB and CD would not boot, and the entire hard drive was wiped. The phones would work, however 5-10 minutes after factory reset, they would start running those rogue processes.

At this point, I was sure I had a virus pretending to be a corporate monitoring software, as I asked my boss if he had out IT management company install anything on my computer, or knows of anything being done to my computer, and he said "No, and I wouldn't even know how to go about that." ODD. Because my boss is the smartest person I ever met in my life, and I've been to every inhabited continent but Africa. (Navy)

This is when I began logging events at work and at home.

Here is a quick breakdown of the sequence of events:

-Noticed boss logged into my personal account
-Began investigating
-Informed boss of possible virus on work network
-Boss instructed me to investigate network
-Found "LogMeIn" on work computer
-Used work computer to charge phone
-Received OTA update
-Used home computer to charge phone
-home computer now bricked (HP says $417 to replace motherboard. Bios codes are encrypted and only HP can decode)
-both mine and my wife's phones were using a lot more battery and location could not be disabled
-started logging packets on mine and wife's phone using PacketCapture app
-noticed packets containing any and all data on my phone being sent to amazon web servers, including dirty pictures of me and wife
-Noticed DNS redirection forcing my home traffic to go through my work's domain controller server
-Installed ESET security on work computer, and set firewall to ask me on all traffic
-Noticed coworker laptop attempting to connect to my work computer via DHCP, denied this, then coworker's Iphone attempted the same thing. coworker was out of state at this time
-Noticed hidden web servers being ran on work computer, and both mine and wife's phones
-Asked coworker why his laptop and computer might be connecting to me from out of state...
-Coworker lies and says he knows nothing about it
-Informed boss that coworker is connecting to my work computer from out of state & about the login to my personal account an hour before i would arrive at work
-Got fired 3 hours after informing boss of privacy breach, and was handed a check for 5 weeks of my salary.


Obviously I was fired because I made it seem like I was investigating a privacy breach, with the company as the violator. Everything up to this point has been denied by them. Packets don't lie, and I've logged over 5GB of traffic from my home network to my former work network, since I've been fired. Not only that, I had to buy a new phone because mine and my wife's phones are now mysteriously bricked just like my HP computer.

After buying a new phone and computer, they were instantly infected upon connecting to wifi. I have now began using BlackArchLinux to log my packets, as any new windows installation keeps being added to a workgroup which their tool has access to. I bought a new router and things have been fine, until I noticed a DOS attack on my new router, and my DNS servers being modified.

This made me believe perhaps I was wrong about the company doing it, until I logged into the webserver in which I set up their website, which routes their email to their email server. I changed the MX record to keep the mail local, and that is when I found the truth. After they fired me, they hired a guy named Chris to "remove any possibility of liability for the accidental privacy breach".

Turns out they didn't know how to set up their MDM tool.

Thoughts?

RE: Employer Spying

Deadboy
Active Member
Level:
0
Reputation:
18
Posts:
219
Likes:
23
Credits:
148
05-03-2018, 04:22 AM
#2
Honestly, I thought you're just being kinda paranoid/jumping to conclusions about most of it up until the end when you got the email. That's seriously fucked up man, why would they need to monitor you so badly? Also, your fucking Xbox account? Legit has nothing to do with anything. Definitely get some help from law enforcement, you have all the info needed to convict them.

RE: Employer Spying

Netflix
Junior Member
Level:
0
Reputation:
10
Posts:
71
Likes:
4
Credits:
81
05-03-2018, 04:57 AM
#3
https://epic.org/privacy/laws/privacy_act.html
https://www.gpo.gov/fdsys/pkg/STATUTE-10...Pg1213.pdf

So they are trying to spy on you or are they trying to gain personal data and log your accounts and shit.
Whatever the case you should really file a lawsuit and probably get the FBI or some federal part to check up on this suspicious act if you have strong evidence and plenty of counter-claims.
[Image: 2z0Bwb4.png]

RE: Employer Spying

fdigl
the actual smol girl ?
Õ░åµØÑÒü«Þ¿╝õ║║
Level:
3
Reputation:
253
Posts:
3.44K
Likes:
652
Credits:
3.7K
05-03-2018, 05:05 AM
#4
This is grounds for a class action lawsuit. You probably aren't the only one that they were doing this to.
| | |Zenith | Senpai | Username | | |

[Image: unknown.png]

RE: Employer Spying

AlphaADC
My devotion to loving you never ends
Level:
0
Reputation:
-20
Posts:
963
Likes:
70
Credits:
333
05-03-2018, 05:08 AM
Warned
#5
Definitively federal level worth man.
~~~~~~~~~~~~~~~~~~~

RE: Employer Spying

Mega Leech
Level:
0
Reputation:
65
Posts:
530
Likes:
68
Credits:
33
05-03-2018, 05:25 AM
#6
The Process Logmein resides with Hamachi - Used to LAN computers over the web instead of sharing a normal LAN.

Keep in mind LogMeIn can also be used as Remote Access... Sooo

Lawsuit for sure in my opinion
Senpai
True Master of Dojo

RE: Employer Spying

kowkow86
Closed Account
Level:
0
Reputation:
0
Posts:
15
Likes:
0
Credits:
8
11-03-2018, 04:29 AM
#7
thats the best story ever or your old boss wanted to see you naked.....


that messed up in the end.. if true definitely a lawsuit in hand

RE: Employer Spying

legend236
Newbie
Level:
0
Reputation:
0
Posts:
14
Likes:
0
Credits:
15
29-03-2018, 07:28 PM
#8
So are you using all company-owned devices - or are you saying they somehow hacked into your home computer/network. Anytime you are using the company's stuff, theres always a danger of them nosing around. Comes with the territory.

RE: Employer Spying

mrdigital0
Newbie
Level:
0
Reputation:
0
Posts:
18
Likes:
3
Credits:
0
30-03-2018, 04:49 AM
#9
Man imagine if you had private stuff etc they could of stolen. definitely not good.

RE: Employer Spying

Starfola
Flat Chest is Best Chest
Level:
8
Reputation:
136
Posts:
1.88K
Likes:
231
Credits:
-117
30-03-2018, 04:59 AM
#10
don't think the FBI would do anything for you. I'd suggest you just speak to a lawyer and try to file a lawsuit against the company for the shit they did. Plus, you have enough information on them so don't see what can go wrong other than a shit lawyer.
[Image: 7ElFux.gif]

Users browsing this thread: 1 Guest(s)