UPDATED 22:55 EDT / APRIL 05 2016

NEWS

Panama Papers were obtained by an email server hack

The lawyers at the center of a scandal surrounding the release of data pertaining to the use of offshore accounts by the rich and famous have claimed that the data was obtained in a hack.

If you’ve missed the story so far (and it would be hard to), the so-called “Panama Papers” are a staggering 2.6 terabytes of data from Panama City law firm Mossack Fonseca which includes information on the use of offshore companies by the likes of Vladimir Putin, now former Iceland Prime Minister David Gunnlaugsson, the father of British Prime Minister David Cameron, and countless other politicians, bureaucrats, leading businessmen and businesses, and celebrities.

It should be noted that the use of such entities doesn’t necessarily mean that anyone involved has broken any laws, but in a political environment typified by the likes of Bernie Sanders and a hatred of the so-called 1 percent, a media witch hunt is in full swing.

Mossack Fonseca Founding Partner Ramon Fonseca told Reuters that the firm had broken no laws and that all its operations were legal, and nor had it ever destroyed any documents or helped anyone evade taxes or launder money.

“We rule out an inside job. This is not a leak. This is a hack …We have a theory and we are following it,” Fonseca said.

“We have already made the relevant complaints to the Attorney General’s office, and there is a government institution studying the issue.”

Mystery hack

According to a report in the Spanish press (link in Spanish), the hacker accessed the documents by breaching Mossack Fonseca’s e-mail server, although by what method simply isn’t clear at this point.

Sophos Group PLC security proselytiser Paul Ducklin speculates on the method possibly used, saying:

Given the scale of the breach, it certainly sounds as though there was more involved than just finding a password or tricking a user into opening a booby-trapped attachment.

Presumably, the hackers needed to get in, find their way around, figure out what data was stored where, work out how to access it, and then find a way to collect and exfiltrate it.

Mossack Fonseca for its part is said to have taken necessary measures to prevent a hack from happening again by taking additional measures to further strengthen its systems, although in this case the horse has already bolted from the stable.

Whether you think the data being made public in this case is justified because it has a public interest, it should be noted that we are talking about stolen data here, data about private individuals, and there’s more than a touch of hypocrisy in the gleeful way the story is being reported while if the data breach was of say medical, financial of other types of data from the rest of the population the theft would be condemned by the media.

The last word should be left to Ramon Fonseca, who added to ReutersThe only crime that has been proven is the hack … No one is talking about that. That is the story.”

Image credit: danielsgray/Flickr/CC by 2.0

 


Since you’re here …

… We’d like to tell you about our mission and how you can help us fulfill it. SiliconANGLE Media Inc.’s business model is based on the intrinsic value of the content, not advertising. Unlike many online publications, we don’t have a paywall or run banner advertising, because we want to keep our journalism open, without influence or the need to chase traffic.The journalism, reporting and commentary on SiliconANGLE — along with live, unscripted video from our Silicon Valley studio and globe-trotting video teams at theCUBE — take a lot of hard work, time and money. Keeping the quality high requires the support of sponsors who are aligned with our vision of ad-free journalism content.

If you like the reporting, video interviews and other ad-free content here, please take a moment to check out a sample of the video content supported by our sponsors, tweet your support, and keep coming back to SiliconANGLE.