Kash Patel emails (1.1 GB)

The first tranche of emails from the mailbox of Kash Patel, the director of the FBI, which was hacked by Handala, a hacking group that is believed to have ties to Iranian intelligence.

https://ddosecrets.org/article/kash-patel-emails

Help us keep publishing: https://donorbox.org/ddosecrets

Kash Patel emails - Distributed Denial of Secrets

Emails from the mailbox of Kash Patel, the director of the Federal Bureau of Investigation, which was hacked by Handala, a hacking group that is believed to have ties to Iranian intelligence. Patel pr…

@ddosecrets Are these emails verifiably DKIM-signed with keys that are still active (or archived somewhere with their full DNSSEC chain)?

@ddosecrets For those who are wondering about this too: the answer is "no". There is not a lot of cryptographic proof in this release, and what's there is not robust.

The 68 emails supposedly sent by Patel are not signed. Of the 256 received emails, only 153 have a DKIM-Signature header. Given that most emails are well over 10 years old, it's safe to assume that none of the signatures correspond to active domain keys.

For the most used domain keys in this release (gamma._domainkey.gmail.com, 20120113._domainkey.gmail.com, and s1024._domainkey.yahoo.com), it's possible to find some supposed values online, but it's also plausible that the gamma and s1024 keys have already been factored by actors with enough resources, given their popularity, the fact that they're 1024-bit RSA keys, and the amount of time that has elapsed since their implementation.

@ddosecrets Can someone just release the funny ones so I don't have to read all the boring ones?

@tito_swineflu @ddosecrets

Asking the real question here

@tito_swineflu @ddosecrets It's K$H Patel-- they're all gonna be boring ones.
@maccruiskeen @ddosecrets IDK, i feel like there could be some REALLY stupid ones in there.
@tito_swineflu @ddosecrets Again, it's K$H Patel, they're all gonna be really stupid ones.
@tito_swineflu @ddosecrets Seems to be stuff like travel itinerary or family photos.
@ddosecrets well why did they hack the most boring account if they could hack somebody’s account like there’s gotta be something in there or he might be just a robot I want to sip the tea. Somebody needs to spill it.