Royal Dutch Shell Plc  .com Rotating Header Image

Constant attacks on the website

For over a year we have received attacks on the site in the form of massive numbers of blog entries being received. They have recently reached a level whereby legitimate blogs are crowded out, effectively blocking criticism against Shell.


From: John Donovan <[email protected]>
Subject: Constant attacks on the website
Date: 11 November 2012 15:29:54 GMT
To: [email protected]

Dear Mr Brandjes

I would like to bring another serious matter to your attention.

I refer to the constant attacks on our website

There are three strands to the activity.


The first is denial of service attacks where the site is flooded with traffic. We have upgraded our server a number of times in an effort to deal with these attacks, but the scale is such that even our latest high capacity dedicated server has crashed due to massive spikes in traffic, which cannot be due to normal activity.


For over a year we have received attacks on the site in the form of massive numbers of blog entries being received. They have recently reached a level whereby legitimate blogs are crowded out, effectively blocking criticism against Shell. Blog postings arrive every few minutes 24/7 for several days.  Then cease for a few days.  The time interval between the blogs, during the periods when they are being received, is random. Multiple languages are used including Dutch, Greek, French and mainly English. Different IPS addresses are used for each blog. Different content, mostly nothing to do with Shell or related matters. The amount of text changes on every blog. Sometime just a few lines and sometimes a long screed. Different aliases are used on each posting.  One posting contained a threat to hack the site. Despite the machinations, we have evidence that all of the blog activity comes from one source, with clues that the source is located in the Netherlands.


We also receive forwarded emails almost every day, sometimes several times per day, from a source relating to Sakhalin Energy. The emails contain multiple languages. In more recent months, this party has also copied the emails to Mr Voser and to senior people at Gasprom, Sakhalin Energy and the UK police. The emails have contained implied threats against us personally arising from our intervention in the Sakhalin2 project. This party also seems to be located in the Netherlands.

We had initially wondered if some or all of the activity was due to mis-identification i.e someone thought they were attacking a Shell website. However, given the amount of time the attacks have gone on and the fact that we personally have been targeted, it seems that possibility can be ruled out.

We do not know if the multi-pronged attacks are co-incidental or coordinated.

Given the 24/7 nature of the blogging activity, it appears that someone has very deep pockets. Someone who does not like us very much.

I would be grateful if you could check whether an operation directed against us by Shell may have got out of hand?

As you know, Shell has used undercover activities against us in the past and more recently, set up a counter-measures team as well as initiating a global spying operation against us involving a Pittsburgh based agency with specialist expertise in cyber-crimes/warfare.

Is any of this activity still in progress?

I have recently brought these matters to the attention of a specialist UK police cyber-crimes unit as I understand that the activity I have described is unlawful.

Best Regards
John Donovan


I just do not believe this is hobbywork of some kids, too much dedication involved.
Sometime in the future this would make for a nice article in a magazine. How to protect your basic right of expressing your views. Anyone can go to Hydepark and give a speech. Just imagine if one of these guys would be continuously hassled or harassed? The police would do something. But with cybercrime it is too difficult so they let it go.
Your job obviously is not finished. And if ever in the future it would be proven that Shell is behind this (I doubt you can ever get this proof) all hell will break loose!


In our experience it is routine for Shell to use third parties for any skullduggery. This is partly to create plausible denial.  But third party whistleblowing, betrayal, or incompetence, can expose the real culprit behind corporate sponsored misdeeds, as happened with Shell uncover agents Manfred Schlickenrieder and Christopher Philips. Later today we will publish a current example of a disgruntled third party exposing alleged corruption sponsored by Shell. RDS Company Secretary Mr Michiel Brandjes has the relevant evidence and related emails, which includes an email sent this morning to Shell CEO Peter Voser. We have given Shell the opportunity to refute authenticity and to supply comment for publication on an unedited basis. Shell also has the opportunity to seek an injunction to prevent publication. If we do not receive a response from Shell by 4pm this afternoon, we will put the information into the public domain without further reference to Shell.


From: [email protected]
Subject: RE: Constant attacks on the website
Date: 12 November 2012 14:29:22 GMT
To: [email protected]

Dear Mr Donovan,
The company is not involved in any of the things you describe below and has no knowledge thereof either.
Best Regards,
Michiel Brandjes
Company Secretary and General Counsel Corporate
Royal Dutch Shell plc
Registered office: Shell Centre London SE1 7NA UK
Place of registration and number: England 4366849
Correspondence address: PO Box 162, 2501 AN  The Hague,
The Netherlands


I have no doubt that as far as Mr Brandjes is concerned, what he has stated on behalf of Shell is correct. 

No comment thus far on the alleged corruption matter raised separately. Perhaps a reply will arrive shortly? and its sister non-profit websites,,,,,, and are owned by John Donovan. There is also a Wikipedia feature.

0 Comments on “Constant attacks on the website”

Leave a Comment

Comment Rules

  • Please show respect to the opinions of others no matter how seemingly far-fetched.
  • Abusive, foul language, and/or divisive comments may be deleted without notice.
  • Each blog member is allowed limited comments, as displayed above the comment box.
  • Comments must be limited to the number of words displayed above the comment box.
  • Please limit one comment after any comment posted per post.

%d bloggers like this: