Tag: spy

  • Over 100 Financial Firms Hit by DDoS Attacks

    Over 100 Financial Firms Hit by DDoS Attacks

    More than 100 financial firms were victims of distributed denial-of-service attacks by the same threat actor with North America and Europe overwhelmingly making up the dominant share, according to a recent report.

    Cyber intelligence sharing group FS-ISAC said that over 100 financial services firms were targets of a wave of distributed denial-of-service (DDoS) attacks – a method of overloading a web system with requests in order to prevent it from functioning properly.

    Interestingly, the report claims that the attacks were conducted by the same threat actor within a short period of time.

    The criminals sent extortion notes threatening to disrupt the firms’ websites and digital services, the report said. The threat actor methodically moved across jurisdictions in Europe, North America, Latin America, and Asia Pacific, hitting dozens of institutions within weeks.

    According to the report, North America and Europe made up an overwhelming share of the DDoS attacks with 43 percent and 38 percent, respectively. Asia (15 percent) and Latin America (3 percent) made up less than one-fifth.

    By sub-sectors, retail banking dominated the list, accounting for 41 percent of the DDoS attacks. This is followed by exchange (15 percent), payments (13 percent) and, securities and investment (10 percent).

    In 2021, we have already seen new cyber threats in the form of supply chain attacks, which we can expect to proliferate and evolve quickly, said FS-ISAC’s chairman of the board Jerry Perullo  «The only way to stay ahead of these ever more sophisticated threat actors is to collaborate. Now more than ever, we need global leaders to model what effective sharing looks like to the rest of our community as well as the industry at large.

  • Trump signs order paving way for Huawei ban

    Trump signs order paving way for Huawei ban

    US president Donald Trump has signed an executive order paving the way for banning Chinese vendors including Huawei from supplying equipment for US telecommunications networks.

    The executive order declares a national emergency to give Trump the authority to regulate commerce and directs the Commerce Department to draw up an enforcement plan within 150 days.

    It has been designed to protect US telecommunications supply chain from foreign adversaries. While the order does not specifically name any countries or companies, it has been specifically promoted by members of Congress as being aimed at companies including Huawei, which has been labeled a security threat by US officials.

    The US government has been pressuring allies to prohibit Chinese vendors from supplying equipment for 5G rollouts, citing concerns that their equipment could be used by the Chinese government to spy on the communications of foreign nations. Countries including Australia have already yielded to this pressure.

    Meanwhile, Huawei, which has repeatedly denied any allegations that its equipment could be used this way, has separately revealed it is willing to sign no-spying pacts with governments to alleviate these concerns.

    The agreements, which could be negotiated with nation states including the UK, would involve the company committing to meet no-spy, no-backdoors standards.

    But Reuters cited comments from the German government pointing out that there is no indication that the Chinese government itself is offering such an agreement.

  • WhatsApp vulnerability allowed government-grade spyware to be installed

    WhatsApp vulnerability allowed government-grade spyware to be installed

    WhatsApp, one of the most popular messaging apps out there, has once again been the subject of hacking, but this time the method used involves government-grade spyware. Although we have no information that would confirm who’s behind the attack, the spyware used is usually sold to governments.

    The vulnerability discovered by WhatsApp just a few weeks ago would allow a caller to install spyware on the device being called, regardless of whether or not the could be answered.

    The spyware installed was made by Israel-based NSO Group Pegasus, and is usually licensed to governments that want to hack targets of investigations and gain access to multiple aspects of their devices.

    It’s unclear how many Android and iOS devices were affected by the vulnerability, but as you can imagine, anyone with access to the spyware could hack any WhatsApp user. On the bright side, WhatsApp said that it took less than 10 days after it discovered the security issue to patch it. The company also believes that only a relatively small number of users were targeted by the attack.

    This attack has all the hallmarks of a private company known to work with governments to deliver spyware that reportedly takes over the functions of mobile phone operating systems. We have briefed a number of human rights organizations to share the information we can, and to work with them to notify civil society.

    If you have WhatsApp installed on your phone, installing the latest version of the app will render the attack inoperable, even if it was infected with the government-grade spyware.