Russia’s Hackers Use D.C. Cyber Warfare Conference as Bait

Discussion in 'other security issues & news' started by hawki, Oct 23, 2017.

  1. hawki

    hawki Registered Member

    Joined:
    Dec 17, 2008
    Posts:
    6,080
    Location:
    DC Metro Area
    "Russia’s Election Hackers Use D.C. Cyber Warfare Conference as Bait

    The Kremlin’s top hackers are turning a gathering packed with NATO and U.S. military cyber defenders into an opportunity for more attacks.

    The Russian military hackers behind last year’s election meddling are using an upcoming cyber warfare conference in Washington D.C. as a lure to infect a new crop of victims with malware, [Cisco/Talos**] security researchers said Sunday, effectively turning a high-level gathering packed with NATO and U.S. military cyber defenders into an opportunity for more attacks...

    The new campaign by the hackers known as Fancy Bear and APT28 began in early October, when the hackers began spamming out a flier for next month’s International Conference on Cyber Conflict, or CyCon U.S. Hosted by the U.S. Army and a NATO cyber defense institute,...

    The Russian hackers’ flier for the event is a Microsoft Word document named “Conference_on_Cyber_Conflict.doc”....

    Buried inside is a malicious macro that downloads and installs malware called Seduploader, a Fancy Bear reconnaissance program that lets the hackers take screenshots and gather basic system information to decide if the victim is worth spying on long-term..."

    https://www.thedailybeast.com/russi...ilybeast/articles (The Daily Beast - Latest A
    rticles%29

    **Cisco/Talos' analysis:

    http://blog.talosintelligence.com/2017/10/cyber-conflict-decoy-document.html
     
  2. cruelsister

    cruelsister Registered Member

    Joined:
    Nov 6, 2007
    Posts:
    1,653
    Location:
    Paris
    And APT28 is FSB. This was pretty much conformed years ago with their CHOPSTICK backdoor.

    Why doesn't WikiLeaks say a peep about this?
     
  3. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    FYI: https://www2.fireeye.com/rs/fireye/images/rpt-apt28.pdf
     
  4. cruelsister

    cruelsister Registered Member

    Joined:
    Nov 6, 2007
    Posts:
    1,653
    Location:
    Paris
    Just another gift from FSB 16th Centre.
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.