HOME

TheInfoList



OR:

The Chaos Computer Club (CCC) is Europe's largest association of
hackers A hacker is a person skilled in information technology who uses their technical knowledge to achieve a goal or overcome an obstacle, within a computerized system by non-standard means. Though the term ''hacker'' has become associated in popu ...
with 7,700 registered members. Founded in 1981, the association is incorporated as an ''
eingetragener Verein An (; "registered association" or "incorporated association"), abbreviated (), is a legal status for a registered voluntary association in Germany. While any group may be called a , registration as confers many legal benefits, because it con ...
'' in Germany, with local chapters (called ''Erfa-Kreise'') in various cities in Germany and the surrounding countries, particularly where there are German-speaking communities. Since 1985, some chapters in Switzerland have organized an independent sister association called the (CCC-CH) instead. The CCC describes itself as "a galactic community of life forms, independent of age, sex, race or societal orientation, which strives across borders for freedom of information…". In general, the CCC advocates more transparency in government,
freedom of information Freedom of information is freedom of a person or people to publish and consume information. Access to information is the ability for an individual to seek, receive and impart information effectively. This sometimes includes "scientific, indigeno ...
, and the
human right Human rights are moral principles or normsJames Nickel, with assistance from Thomas Pogge, M.B.E. Smith, and Leif Wenar, 13 December 2013, Stanford Encyclopedia of PhilosophyHuman Rights Retrieved 14 August 2014 for certain standards of hu ...
to communication. Supporting the principles of the
hacker ethic The hacker ethic is a philosophy and set of moral values within hacker culture. Practitioners believe that sharing information and data with others is an ethical imperative. The hacker ethic is related to the concept of freedom of information, ...
, the club also fights for free universal access to computers and technological infrastructure as well as the use of
open-source software Open-source software (OSS) is computer software that is released under a license in which the copyright holder grants users the rights to use, study, change, and distribute the software and its source code to anyone and for any purpose. Op ...
. The CCC spreads an entrepreneurial vision refusing capitalist control. It has been characterised as "…one of the most influential digital organisations anywhere, the centre of German digital culture,
hacker culture The hacker culture is a subculture of individuals who enjoy—often in collective effort—the intellectual challenge of creatively overcoming the limitations of software systems or electronic hardware (mostly digital electronics), to a ...
, hacktivism, and the intersection of any discussion of democratic and digital rights". Members of the CCC have demonstrated and publicized a number of important information security problems. The CCC frequently criticizes new legislation and products with weak information security which endanger citizen rights or the privacy of users. Notable members of the CCC regularly function as expert witnesses for the
German constitutional court The Federal Constitutional Court (german: link=no, Bundesverfassungsgericht ; abbreviated: ) is the supreme constitutional court for the Federal Republic of Germany, established by the constitution or Basic Law () of Germany. Since its inc ...
, organize lawsuits and campaigns, or otherwise influence the political process.


Activities


Regular events

The CCC hosts the annual
Chaos Communication Congress The Chaos Communication Congress is an annual conference organized by the Chaos Computer Club. The congress features a variety of lectures and workshops on technical and political issues related to security, cryptography, privacy and online ...
, Europe's biggest hacker gathering. When the event was held in the Hamburg congress center in 2013, it drew 9,000 guests. For the 2016 installment, 11,000 guests were expected, with additional viewers following the event via live streaming. Every four years, the Chaos Communication Camp is the outdoor alternative for hackers worldwide. The CCC also held, from 2009 to 2013, a yearly conference called
SIGINT Signals intelligence (SIGINT) is intelligence-gathering by interception of ''signals'', whether communications between people (communications intelligence—abbreviated to COMINT) or from electronic signals not directly used in communication ( ...
in
Cologne Cologne ( ; german: Köln ; ksh, Kölle ) is the largest city of the German western States of Germany, state of North Rhine-Westphalia (NRW) and the List of cities in Germany by population, fourth-most populous city of Germany with 1.1 m ...
which focused on the impact of digitisation on society. The SIGINT conference was discontinued in 2014. The four-day conference ' in
Karlsruhe Karlsruhe ( , , ; South Franconian: ''Kallsruh'') is the third-largest city of the German state (''Land'') of Baden-Württemberg after its capital of Stuttgart and Mannheim, and the 22nd-largest city in the nation, with 308,436 inhabitants. ...
is with more than 1,500 participants the second largest annual event. Another yearly CCC event taking place on the Easter weekend is the
Easterhegg The Easterhegg (also ''Easter(H)egg'' or ''EH'') is an annual hacker event, created by the German Chaos Computer Club. Since 2001 the Easterhegg takes place during the Easter celebrations. Most participants are from German-speaking countries, wi ...
, which is more workshop oriented than the other events. The CCC often uses the c-base station located in Berlin as an event location or as function rooms.


Publications and outreach

video The CCC publishes the irregular magazine ''
Datenschleuder ', literally translated as ''The Data Slingshot: The scientific trade journal for data voyagers'', is a German hacker magazine that is published at irregular intervals by the Chaos Computer Club (CCC). Topics include primarily political and tech ...
'' (''data slingshot'') since 1984. The Berlin chapter produces a monthly radio show called which picks up various technical and political topics in a two-hour
talk radio Talk radio is a radio format containing discussion about topical issues and consisting entirely or almost entirely of original spoken word content rather than outside music. Most shows are regularly hosted by a single individual, and often featur ...
show. The program is aired on a local radio station called and on the internet. Other programs have emerged in the context of Chaosradio, including radio programs offered by some regional Chaos Groups and the podcast spin-off ''CRE'' by
Tim Pritlove Tim Pritlove (born 25 November 1967 in Gehrden, Germany) is a British/German podcaster, media artist and discordianist. He lives and works in Berlin. Pritlove studied computer science but never graduated. From 1998 to 2005 he was the main ...
. Many of the chapters of CCC participate in the volunteer project ''Chaos macht Schule'' which supports teaching in local schools. Its aims are to improve technology and
media literacy Media literacy is an expanded conceptualization of literacy that includes the ability to access and analyze media messages as well as create, reflect and take action, using the power of information and communication to make a difference in the w ...
of pupils, parents, and teachers. CCC members are present in big tech companies and in administrative instances. One of the spokespersons of the CCC, as of 1986,
Andy Müller-Maguhn Andy Müller-Maguhn (born 3 October 1971) is a member of the German hacker association Chaos Computer Club (CCC). Having been a member since 1986, he was appointed as a spokesman for the club in 1990, and later served on its board until 2012. He ...
, was a member of the executive committee of the ICANN (Internet Corporation for Assigned Names and Numbers) between 2000 and 2002.


CryptoParty

The CCC sensitises and introduces people to the questions of data privacy. Some of its local chapters support or organize so called CryptoParties to introduce people to the basics of practical cryptography and internet anonymity.


History


Founding

The CCC was founded in West Berlin on 12 September 1981 at a table which had previously belonged to the
Kommune 1 Kommune 1 or K1 was a politically motivated commune in Germany. It was created on 12 January 1967, in West Berlin and finally dissolved in November 1969. Kommune 1 developed from the extraparliamentary opposition of the German student movement o ...
in the rooms of the newspaper Die Tageszeitung by
Wau Holland Herwart Holland-Moritz, known as Wau Holland, (20 December 1951 – 29 July 2001) was a German computer security activist and journalist who in 1981 cofounded the Chaos Computer Club (CCC), one of the world's oldest hacking clubs. Career ...
and others in anticipation of the prominent role that information technology would play in the way people live and communicate.


BTX-Hack

The CCC became world-famous in 1984 when they drew public attention to the security flaws of the German
Bildschirmtext Bildschirmtext (German "screen text", abbrev. Btx or BTX) was an online videotex system launched in West Germany in 1983 by the Deutsche Bundespost, the (West) German postal service. Btx originally required special hardware (it was based on ...
computer network by causing it to debit DM 134,000 () in a Hamburg bank in favor of the club. The money was returned the next day in front of the press. Prior to the incident, the system provider had failed to react to proof of the security flaw provided by the CCC, claiming to the public that their system was safe. Bildschirmtext was the biggest commercially available online system targeted at the general public in its region at that time, run and heavily advertised by the German telecommunications agency
Deutsche Bundespost The Deutsche Bundespost (German federal post office) was a German state-run postal service and telecommunications business founded in 1947. It was initially the second largest federal employer during its time. After staff reductions in the 19 ...
which also strove to keep up-to-date alternatives out of the market.


Karl Koch

In 1987, the CCC was peripherally involved in the first cyberespionage case to make international headlines. A group of
German German(s) may refer to: * Germany (of or related to) ** Germania (historical use) * Germans, citizens of Germany, people of German ancestry, or native speakers of the German language ** For citizens of Germany, see also German nationality law **Ge ...
hackers led by Karl Koch, who was loosely affiliated with the CCC, was arrested for breaking into US government and corporate computers, and then selling operating-system source code to the Soviet
KGB The KGB (russian: links=no, lit=Committee for State Security, Комитет государственной безопасности (КГБ), a=ru-KGB.ogg, p=kəmʲɪˈtʲet ɡəsʊˈdarstvʲɪn(ː)əj bʲɪzɐˈpasnəsʲtʲɪ, Komitet gosud ...
. This incident was portrayed in the movie '' 23''.


GSM-Hack

In April 1998, the CCC successfully demonstrated the cloning of a
GSM The Global System for Mobile Communications (GSM) is a standard developed by the European Telecommunications Standards Institute (ETSI) to describe the protocols for second-generation ( 2G) digital cellular networks used by mobile devices such ...
customer card, breaking the
COMP128 The COMP128 algorithms are implementations of the A3 and A8 functions defined in the GSM standard. A3 is used to authenticate the mobile station to the network. A8 is used to generate the session key used by A5 to encrypt the data transmitted be ...
encryption In cryptography, encryption is the process of encoding information. This process converts the original representation of the information, known as plaintext, into an alternative form known as ciphertext. Ideally, only authorized parties can decip ...
algorithm used at that time by many GSM SIMs.


Project Blinkenlights

In 2001, the CCC celebrated its twentieth birthday with an interactive light installation dubbed ''Project Blinkenlights'' that turned the building Haus des Lehrers in Berlin into a giant computer screen. A follow up installation, ''Arcade'', was created in 2002 by the CCC for the
Bibliothèque nationale de France The Bibliothèque nationale de France (, 'National Library of France'; BnF) is the national library of France, located in Paris on two main sites known respectively as ''Richelieu'' and ''François-Mitterrand''. It is the national repository ...
. Later in October 2008 CCC's Project Blinkenlights went to
Toronto Toronto ( ; or ) is the capital city of the Canadian province of Ontario. With a recorded population of 2,794,356 in 2021, it is the most populous city in Canada and the fourth most populous city in North America. The city is the ancho ...
,
Ontario Ontario ( ; ) is one of the thirteen provinces and territories of Canada.Ontario is located in the geographic eastern half of Canada, but it has historically and politically been considered to be part of Central Canada. Located in Central Ca ...
, Canada with project Stereoscope.


Schäuble fingerprints

In March 2008, the CCC acquired and published the fingerprints of German
Minister of the Interior An interior minister (sometimes called a minister of internal affairs or minister of home affairs) is a cabinet official position that is responsible for internal affairs, such as public security, civil registration and identification, emergency ...
Wolfgang Schäuble Wolfgang Schäuble (; born 18 September 1942) is a German lawyer, politician and statesman whose political career has spanned for more than five decades. A member of the Christian Democratic Union (CDU), he is one of the longest-serving politi ...
. The magazine also included the fingerprint on a film that readers could use to fool
fingerprint reader Fingerprint scanners are security systems of biometrics. They are used in police stations, security industries, smartphones, and other mobile devices. Function Everyone has patterns of friction ridges on their fingers, and it is this pattern t ...
s. This was done to protest the use of biometric data in German identity devices such as e-passports.


Staatstrojaner affair

The Staatstrojaner (''Federal
Trojan horse The Trojan Horse was a wooden horse said to have been used by the Greeks during the Trojan War to enter the city of Troy and win the war. The Trojan Horse is not mentioned in Homer's ''Iliad'', with the poem ending before the war is concluded, ...
'') is a
computer surveillance Computer and network surveillance is the monitoring of computer activity and data stored locally on a computer or data being transferred over computer networks such as the Internet. This monitoring is often carried out covertly and may be comple ...
program installed secretly on a suspect's computer, which the German police uses to
wiretap Telephone tapping (also wire tapping or wiretapping in American English) is the monitoring of telephone and Internet-based conversations by a third party, often by covert means. The wire tap received its name because, historically, the monitorin ...
Internet telephony Voice over Internet Protocol (VoIP), also called IP telephony, is a method and group of technologies for the delivery of voice communications and multimedia sessions over Internet Protocol (IP) networks, such as the Internet. The terms Internet t ...
. This "source wiretapping" is the only feasible way to wiretap in this case, since Internet telephony programs will usually
encrypt In cryptography, encryption is the process of encoding information. This process converts the original representation of the information, known as plaintext, into an alternative form known as ciphertext. Ideally, only authorized parties can deci ...
the data when it leaves the computer. The
Federal Constitutional Court of Germany The Federal Constitutional Court (german: link=no, Bundesverfassungsgericht ; abbreviated: ) is the supreme constitutional court for the Federal Republic of Germany, established by the constitution or Basic Law () of Germany. Since its in ...
has ruled that the police may only use such programs for telephony wiretapping, and for no other purpose, and that this restriction should be enforced through technical and legal means. On 8 October 2011, the CCC published an analysis of the Staatstrojaner software. The software was found to have the ability to remote control the target computer, to capture
screenshots screenshot (also known as screen capture or screen grab) is a digital image that shows the contents of a computer display. A screenshot is created by the operating system or software running on the device powering the display. Additionally, s ...
, and to fetch and run arbitrary extra code. The CCC says that having this functionality built in is in direct contradiction to the ruling of the constitutional court. In addition, there were a number of security problems with the implementation. The software was controllable over the Internet, but the commands were sent completely
unencrypted In cryptography, plaintext usually means unencrypted information pending input into cryptographic algorithms, usually encryption algorithms. This usually refers to data that is transmitted or stored unencrypted. Overview With the advent of comp ...
, with no checks for authentication or integrity. This leaves any computer under surveillance using this software vulnerable to attack. The captured screenshots and audio files were encrypted, but so incompetently that the encryption was ineffective. All captured data was sent over a proxy server in the United States, which is problematic since the data is then temporarily outside the German
jurisdiction Jurisdiction (from Latin 'law' + 'declaration') is the legal term for the legal authority granted to a legal entity to enact justice. In federations like the United States, areas of jurisdiction apply to local, state, and federal levels. Jur ...
. The CCC's findings were widely reported in the German press. This trojan has also been nicknamed
R2-D2 R2-D2 () or Artoo-Detoo is a fictional robot character in the ''Star Wars'' franchise created by George Lucas. He has appeared in ten of the eleven theatrical ''Star Wars'' films to date. At various points throughout the course of the films, R2, ...
Basil Cupa
Trojan Horse Resurrected: On the Legality of the Use of Government Spyware (Govware)
LISS 2013, pp. 419–428
because the string "C3PO-r2d2-POE" was found in its code; another alias for it is 0zapftis ("It's tapped!" in Bavarian, a sardonic reference to
Oktoberfest The Oktoberfest (; bar, Wiesn, Oktobafest) is the world's largest Volksfest, featuring a beer festival and a travelling carnival. It is held annually in Munich, Bavaria, Germany. It is a 16- to 18-day folk festival running from mid- or ...
). According to a Sophos analysis, the trojan's behavior matches that described in a confidential memo between the German
Landeskriminalamt The State Criminal Police Office, or Landeskriminalamt (LKA) in German, is an independent law enforcement agency in all 16 German states that is directly subordinate to the state's ministry of the interior. Missions Investigations LKAs superv ...
and a software firm called '; the memo was leaked on
WikiLeaks WikiLeaks () is an international Nonprofit organization, non-profit organisation that published news leaks and classified media provided by anonymous Source (journalism), sources. Julian Assange, an Australian Internet activism, Internet acti ...
in 2008. Among other correlations is the dropper's file name , short for Skype Capture Unit Installer. The 64-bit Windows version installs a digitally signed driver, but signed by the non-existing
certificate authority In cryptography, a certificate authority or certification authority (CA) is an entity that stores, signs, and issues digital certificates. A digital certificate certifies the ownership of a public key by the named subject of the certificate. Thi ...
"Goose Cert". DigiTask later admitted selling spy software to governments. The
Federal Ministry of the Interior An interior ministry (sometimes called a ministry of internal affairs or ministry of home affairs) is a government department that is responsible for internal affairs. Lists of current ministries of internal affairs Named "ministry" * Ministry ...
released a statement in which they denied that R2-D2 has been used by the Federal Criminal Police Office (BKA); this statement however does not eliminate the possibility that it has been used by state-level German police forces. The BKA had previously announced however (in 2007) that they had somewhat similar trojan software that can inspect a computer's hard drive.


Domscheit-Berg affair

Former
WikiLeaks WikiLeaks () is an international Nonprofit organization, non-profit organisation that published news leaks and classified media provided by anonymous Source (journalism), sources. Julian Assange, an Australian Internet activism, Internet acti ...
spokesman
Daniel Domscheit-Berg Daniel Domscheit-Berg (; né Berg; born 1978), previously known under the pseudonym Daniel Schmitt, is a German technology activist. He is best known as the former spokesperson for WikiLeaks and the author of ''Inside WikiLeaks: My Time with Jul ...
was expelled from the national CCC (but not the Berlin chapter) in August 2011. This decision was revoked in February 2012. As a result of his role in the expulsion, board member
Andy Müller-Maguhn Andy Müller-Maguhn (born 3 October 1971) is a member of the German hacker association Chaos Computer Club (CCC). Having been a member since 1986, he was appointed as a spokesman for the club in 1990, and later served on its board until 2012. He ...
was not reelected for another term.


Phone authentication systems

The CCC has repeatedly warned phone users of the weakness of biometric identification in the wake of the 2008 Schäuble fingerprints affair. In their "hacker ethics" the CCC includes "protect people data", but also "Computers can change your life for the better". The club regards privacy as an individual right: the CCC does not discourage people from sharing or storing personal information on their phones, but advocates better privacy protection, and the use of specific browsing and sharing techniques by users.


Apple TouchID

From a photograph of the user's fingerprint on a glass surface, using "easy everyday means", the biometrics hacking team of the CCC was able to unlock an iPhone 5S.


Samsung S8 iris recognition

The Samsung Galaxy S8's iris recognition system claims to be "one of the safest ways to keep your phone locked and the contents private" as "patterns in your irises are unique to you and are virtually impossible to replicate", as quoted in official Samsung content. However, in some cases, using a high resolution photograph of the phone owner's iris and a lens, the CCC claimed to be able to trick the authentication system.


Fake Chaos Computer Club France

The Chaos Computer Club France (CCCF) was a fake hacker organisation created in 1989 in
Lyon Lyon,, ; Occitan: ''Lion'', hist. ''Lionés'' also spelled in English as Lyons, is the third-largest city and second-largest metropolitan area of France. It is located at the confluence of the rivers Rhône and Saône, to the northwest of t ...
(France) by
Jean-Bernard Condat Jean-Bernard Condat (born 1963) is a French computer security expert and former hacker who became a consultant to the Directorate of Territorial Surveillance (DST). Using the name ''concombre'' (English: cucumber), he achieved status as one of ...
, under the command of Jean-Luc Delacour, an agent of the
Direction de la surveillance du territoire The Direction de la Surveillance du Territoire (DST; en, Directorate of Territorial Surveillance) was a directorate of the French National Police operating as a domestic intelligence agency. It was responsible for counterespionage, counterterro ...
governmental agency. The primary goal of the CCCF was to watch and to gather information about the French hacker community, identifying the hackers who could harm the country.''
Phrack ''Phrack'' is an e-zine written by and for hackers, first published November 17, 1985. Described by Fyodor as "the best, and by far the longest running hacker zine," the magazine is open for contributions by anyone who desires to publish remarkabl ...
'' No. 64
"A personal view of the french underground (1992–2007)"
2007: ''"A good example of this was the fake hacking meeting created in the middle 1990' so called the CCCF (Chaos Computer Club France) where a lot of hackers got busted under the active participation of a renegade hacker so called Jean-Bernard Condat."''
Journalist said that this organization also worked with the French National Gendarmerie. The CCCF had an
electronic Electronic may refer to: *Electronics, the science of how to control electric energy in semiconductor * ''Electronics'' (magazine), a defunct American trade journal *Electronic storage, the storage of data using an electronic device *Electronic co ...
magazine called ''Chaos Digest (ChaosD)''. Between 4 January 1993 and 5 August 1993, seventy-three issues were published ().


See also

* ''23'' (film) *
c-base c-base e.V. is a non-profit association located in Berlin, Germany. Its purpose is to increase knowledge and skills pertaining to computer software, hardware and data networks. The association is engaged in numerous related activities. For exam ...
*
Chaos Communication Congress The Chaos Communication Congress is an annual conference organized by the Chaos Computer Club. The congress features a variety of lectures and workshops on technical and political issues related to security, cryptography, privacy and online ...
* Chaosdorf, the local chapter of the Chaos Computer Club at Düsseldorf *
Datenschleuder ', literally translated as ''The Data Slingshot: The scientific trade journal for data voyagers'', is a German hacker magazine that is published at irregular intervals by the Chaos Computer Club (CCC). Topics include primarily political and tech ...
*
Digitalcourage Digitalcourage – known until November 2012 as FoeBuD (''Verein zur Förderung des öffentlichen bewegten und unbewegten Datenverkehrs'') – is a German privacy and digital rights organisation. Under the motif of preserving "a world worth livi ...
*
Digital identity A digital identity is information used by computer systems to represent an external agent – a person, organization, application, or device. Digital identities allow access to services provided with computers to be automated and make it possibl ...
*
Hacker culture The hacker culture is a subculture of individuals who enjoy—often in collective effort—the intellectual challenge of creatively overcoming the limitations of software systems or electronic hardware (mostly digital electronics), to a ...
*
Information privacy Information privacy is the relationship between the collection and dissemination of data, technology, the public expectation of privacy, contextual information norms, and the legal and political issues surrounding them. It is also known as data pr ...
* Netzpolitik.org *
Project Blinkenlights Project Blinkenlights was a light installation in the Haus des Lehrers building at the Alexanderplatz in Berlin that transformed the building front into a giant low-resolution monochrome computer screen. The installation was created by the ...
* Security hacker *
Tron (hacker) Boris Floricic, better known by his pseudonym Tron (8 June 1972 – 17 October 1998), was a German hacker and phreaker whose death in unclear circumstances has led to various conspiracy theories. He is also known for his Diplom thesis pr ...
*
Wau Holland Foundation The Wau Holland Foundation (German: Wau Holland Stiftung; WHS) is a nonprofit foundation based in Hamburg, Germany. It was established in 2003 in memory of Wau Holland, co-founder of the Chaos Computer Club. Loosely connected with the Chaos Compu ...


References


Further reading


Chaos Computer Club hackers 'have a conscience'
BBC News BBC News is an operational business division of the British Broadcasting Corporation (BBC) responsible for the gathering and broadcasting of news and current affairs in the UK and around the world. The department is the world's largest broadca ...
, 2011-02-11


External links

*
CCC Events Blog

Chaosradio Podcast Network
{{Authority control Computer clubs in Germany Hacker groups Organisations based in Hamburg