Advertise On EU-Digest

Annual Advertising Rates
Showing posts with label Hackers. Show all posts
Showing posts with label Hackers. Show all posts

6/12/19

The Netherlands - Cyber attacks: Digitization leaves the Netherlands vulnerable to cyber attacks: NCTV report says

The Netherlands is particularly vulnerable to IT failures and attacks because almost all vital processes and systems have been completely digitized with no analogue back-ups, the Dutch counter terrorism unit NCTV said on Wednesday.

‘The Netherlands is dependent on a limited number of providers and countries. This makes us vulnerable to changed intentions,’ the report said.

‘For example, a large part of the hard and software is designed and produced in China and the US.’ In addition, little expertise is needed to launch a cyber attack which could, for example, knock out gas, electricity and water supplies.

The best way to reduce the risks is to improve security systems. And while companies and government are taking action, they sometimes think the cost of the improvements are not worth it ‘until things go wrong,’ the NCTV said.

The biggest threats presently come from China, Russia and Iran, and a variety of hackersthe NCTV said, in a restatement of earlier reports.

Read more at: Digitization leaves the Netherlands vulnerable to cyber attacks: NCTV - DutchNews.nl - Live

The Digest Group                    

Almere-Digest
EU-Digest
Insure-Digest 
Turkish-Digest 

For additional information, including advertising rates:
e-mail: Freeplanet@protonmail.com

10/11/17

Internet: Elite Hackers: Stealing NSA Secrets Is ‘Child’s Play’-by Joseph Cox

The National Security Agency’s hackers have a problem.

Last week, multiple outlets reported that its elite Tailored Access Operations unit—tasked with breaking into foreign networks—suffered another serious data breach. The theft of computer code and other material by an employee in 2015 allowed the Russian government to more easily detect U.S. cyber operations, according to The Washington Post. It’s potentially the fourth large-scale incident at the NSA to be revealed in the last five years.

Now, multiple sources with direct knowledge of TAO’s security procedures in the recent past tell The Daily Beast just how porous some of the defenses were to keep workers from stealing sensitive information—either digitally or by simply walking out of the front door with it.

One source described removing data from a TAO facility as “child’s play.” The Daily Beast granted the sources anonymity to talk candidly about the NSA’s security practices.

TAO is not your average band of hackers. Its operations have included digging into China’s networks, developing the tools British spies used to break into Belgium’s largest telecom, and hacking sections of the Mexican government.

While other parts of the NSA may focus on tapping undersea cables or prying data from Silicon Valley giants, TAO is the tip of the NSA’s offensive hacking spear, and could have access to much more sensitive information ripped from adversaries’ closed networks. The unit deploys and creates sophisticated exploits that rely on vulnerabilities in routers, operating systems, and computer hardware the general population uses—the sort of tools that could wreak havoc if they fell into the wrong hands.

That doesn’t mean those tools are locked down, though. “TAO specifically had a huge amount of latitude to move data between networks,” the first source, who worked at the unit after Edward Snowden’s mega-leak, said.

The former employee said TAO limited the number of USB drives—which could be used to steal data—after that 2013 breach, but he still had used several while working at TAO.

“Most operators knew how they could get anything they wanted out of the classified nets and onto the internet if they wanted to, even without the USB drives,” the former TAO employeesai.
Read more: Elite Hackers: Stealing NSA Secrets Is ‘Child’s Play’

A recent report by the Defense Department’s inspector general completed in 2016 found that the NSA’s “Secure the Net” project—which aimed to restrict access to its most sensitive data after the Snowden breach—fell short of its stated aims. The NSA did introduce some improvements, but it didn’t effectively reduce the number of user accounts with “privileged” access, which provide more avenues into sensitive data than normal users, nor fully implement technology to oversee these accounts’ activities, the report reads. Physical security wasn’t much better, at least at one TAO operator’s facility.

He told The Daily Beast that there were “no bag checks or anything” as employees and contractors left work for the day—meaning, it was easy smuggle things home. Metal detectors were present, including before Snowden, but “nobody cared what came out,” the second source added. The third source, who visited TAO facilities, said bag checks were random and weak.

Read more from the Daily Beast

8/30/17

Cybersecurity: U.S. Government Cybersecurity Lags Behind That of a Fast Food Joint, Say Analysts - by Graham Lanktree

The American federal government and countless state and local governments throughout the U.S. are more vulnerable to cyberattacks than your local McDonald’s.

A new study ranking the cybersecurity of 18 industries “paints a grim picture” with the U.S. government 16th when it comes to protecting its computer systems and data from hackers.

At the top are retailers and the fast food industry.

Read more: U.S. Government Cybersecurity Lags Behind That of a Fast Food Joint, Say Analysts

6/14/16

Cyber Crime: Russian hackers penetrate Democrat database on Trump

The breach, which was first reported by the "Washington Post" on Tuesday, was confirmed by Democrat chair of the Democratic National Committee (DNC), Debbie Wasserman Schultz.

Wasserman Schultz said the hackers had been ejected from the database as soon as the intrusion became apparent.

"When we discovered the intrusion, we treated this like the serious incident it is ...," she said in a statement. "Our team moved as quickly as possible to kick out the intruders and secure our network."

Some of the hackers are thought to have had access to the Democratic National Committee for about a year, with all believed to have now been expelled.

The Washington Post had reported that the Russian spies had gained access to the entire database of opposition research on Trump.

In addition, the Post reported that the hackers had targeted the campaign networks of both Hillary Clinton and Donald Trump.

Read more: Russian hackers penetrate Democrat database on Trump | News | DW.COM | 14.06.2016

8/9/15

Internet Security: Are hackers helping or harming us? - by Mark Ward

Every week, almost every day, hackers are poking holes in the devices we carry, drive and use. Over the past couple of weeks the numbers and severity of the flaws these technical wizards have found have hit fever pitch.

They brought to light a security bug in almost one billion Android phones.

Then there was the car hack that led to 1.4 million vehicles being recalled for a software upgrade.

Don't forget the vulnerability found in an obscure bit of software that, if exploited, could have shut down big chunks of the net. We've also have emergency patches for Windows and Flash.

Read more: Are hackers helping or harming us? - BBC News

9/18/14

Internet Security: 4.93 million Gmail passwords leaked by hackers

Russian hackers have leaked the email IDs and passwords of as many as 4.93 million Google accounts. The same Google account password is used across all Google products, such as Gmail, Drive, Plus, YouTube, Maps etc.
 
The account details have been posted on bitcoin forum btcsec.com by a user named Tvskit. On the forum, Tvskit has said that approximately 60% of the passwords are still active.
 Gmail accounts are safe http://goo.gl/2pbw6z  but it’s always good to take a minute & check your security settings at g.co/accountcheckup 

For more info click here

                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              

9/1/14

Internet: Is the Cloud one-stop shopping for hackers? — by Bob Sullivan

Consumers who have been lulled in to a false sense of security over credit card fraud could be in for a rude awaking. That was the message delivered at Visa’s Global Security Summit held in Washington, D.C., on Wednesday.

Disclosure last week of a serious data theft involving some of the nation’s largest data brokers hovered over the conference, and some experts suggested it signals a new wave ofsophisticated identity theft.

A gang of criminals had long-term access to Social Security Numbers, dates of birth and a treasure trove of other non-financial information stored by Lexis Nexis and about a dozen other data brokers, security expert Brian Krebs reported last week.

The data was often used to defeat so-called Knowledge Based Authentication, in which banks and other institutions ask personal questions to verify identities.

The incident shows that criminals trying to steal money from banks are using more sophisticated methods now, said , a security expert with Kaspersky Labs.

EU-Digest

8/22/14

Cyber Security: Hacking Groups Target Shipping Ports in Europe and US - by Rachel King

Authorities in Europe and the US are beginning to recognize that shipping ports are vulnerable to cybersecurity threats. The systems used to monitor the movements of containers from ships to trucks can be hacked, either for criminal or other nefarious purposes, according to recent reports.

Failures in these IT systems could disrupt operations at U.S. shipping ports, which handle more than $1.3 trillion in cargo annually, according to a June 2014 report by the U.S. Government Accountability Office.

The GAO recommended that the sector conduct a comprehensive risk assessment which is usually the first step in mitigating potential cyberattacks. So far, the Department of Homeland Security has taken limited actions to beef up cybersecurity at maritime ports, largely, officials told the GAO, because they have only recently recognized the severity of cyber-related threats.

The GAO says the dependence of ports on information technology is increasing at the same time that cybercriminals and other groups are becoming more sophisticated. For example, the report notes an incident in 2013 where criminals allegedly hacked into IT systems at the Belgian port of Antwerp which enabled them to smuggle drugs into the country, one of the first known incidents of hackers infiltrating port IT systems.

In compiling the report, government auditors visited three high-risk domestic ports to identify the types of technologies used and examine security plans.

In the shipment of containers, for example, a terminal operating system is used by a port authority to control container movements and storage while containers are in its possession. In addition, business operations systems such as email, file servers and network equipment are used to communicate with customers. These systems are at risk of a cyberattack, the report said.

EU-Digest




4/5/14

Hacker Tip - Hide Your IP Address

Are you safe on the Internet? Do you feel as all your personal information is secured behind a firewall on your computer? Well, thing is that you are not. As soon as someone has your true IP address they can find out just about everything about you. Even down to the exact street your at right when you’re surfing the web.

Hackers can use your IP address to create havoc for you not only on your computer but on the net as well. How you might ask? Well, they clone your IP address perpetrating themselves as you when they do something they shouldn’t be doing. It’s a certain degree of the term “Spoof”. What the word means in the world of hackers is:

A trick that causes an authorized user to perform an action that violates system security or that gives away vital information to an intruder.

There are ways to be safe on the Internet though. There are ways to hide your IP address for any hacker or website. If you know just a little about the Internet you can utilize this really great website that “Spoofs” another IP addres thus hiding your real one. Usually a hacker updates their IP address several times an hour just to make sure any trace they might leave behind is as hard as possible to track.

Read more: Hacker Tip | Hide Your IP Ad

2/1/13

China - Cyber War: Hackers target Western news organizations - by Michael Muskal and Jessica Guynn

More than 30 journalists and executives at Western news organizations in China, including the New York Times and the Wall Street Journal, have had their computers hacked, according to the news organizations and a security firm that monitors such attacks.

Over the last four months, the hackers managed to infiltrate the Times' computers, the newspaper reported Thursday. It said hackers had penetrated its computers and obtained passwords for reporters and other employees.

The hackers have been blocked and security tightened to prevent another attack, which followed an investigation by the paper into finances of relatives of Wen Jiabao, China's premier.

Mandiant Corp., a security firm brought into the case by the Times, said it found that hackers using techniques associated with the Chinese military stole emails, contacts and files from 30 journalists and executives and maintained a short list of journalists whose accounts have been repeatedly attacked.

Read more: Hackers target Western news organizations in China - latimes.com

10/17/12

Cyber wars: US 'disappointed' that Britain won't extradite hacker

The United States expressed disappointment Tuesday after Britain decided not to extradite computer hacker Gary McKinnon, who is wanted on suspicion of accessing secret NASA and Pentagon systems.

State Department spokeswoman Victoria Nuland told reporters that American officials "are examining the details of the decision," but insisted that the 10-year legal battle had not undermined close US ties with Britain.

"The United States is disappointed by the decision to deny Gary McKinnon's extradition to face long overdue justice in the United States," Nuland said.

The Department of Justice also said it was "disappointed," particularly in light of previous decisions by the British government and courts that McKinnon should face trial in the United States.

"We note that the home secretary has described this case as exceptional and, thus, this decision does not set a precedent for future cases," department spokeswoman Rebekah Carmichael said.

Read more: US 'disappointed' that Britain won't extradite hacker | Technology , International | THE DAILY STAR

4/22/12

Internet: Hundreds of thousands may lose Internet connection in July - by Lolita C.Baldor

For computer users, a few mouse clicks could mean the difference between staying online and losing Internet connections this summer.

Unknown to most of them, their problem began when international hackers ran an online advertising scam to take control of infected computers around the world. In a highly unusual response, the FBI set up a safety net months ago using government computers to prevent Internet disruptions for those infected users. But that system is to be shut down.

The FBI is encouraging users to visit a website run by its security partner, http://www.dcwg.org , that will inform them whether they're infected and explain how to fix the problem. After July 9, infected users won't be able to connect to the Internet.

Most victims don't even know their computers have been infected, although the malicious software probably has slowed their web surfing and disabled their antivirus software, making their machines more vulnerable to other problems.

For more: Hundreds of thousands may lose Internet in July - Hawaii News Now - KGMB and KHNL

2/15/12

Canada: Nortel hit by suspected Chinese cyberattacks for a decade

Hackers based in China enjoyed widespread access to Nortel's computer network for nearly a decade, according to a report.

The hackers – who appeared to be based in China – had unfettered access to the former telecommunications giant as far back as 2000, according to Brian Shields, a former Nortel employee who launched an internal investigation of the attacks, the Wall Street Journal reports.

They “had access to everything”, Shields told the Journal. “They had plenty of time. All they had to do was figure out what they wanted.” Over the years, the hackers downloaded business plans, research and development reports, employee emails and other documents.

Last November, a group of U.S. analysts said there were as many as 12 different Chinese groups participating in cyberattacks on U.S. companies and government agencies.

For more: Nortel hit by suspected Chinese cyberattacks for a decade - Business - CBC News

6/11/11

Google says hackers in China broke into Gmail - by Michael Liedtke

Computer hackers in China broke into the Gmail accounts of several hundred people, including senior U.S. government officials, military personnel and political activists, Google Inc. said Wednesday.

The attacks aren't believed to be tied to a more sophisticated assault originating from China in late 2009 and early last year. That intrusion targeted the Google's own security systems and triggered a high-profile battle with China's Communist government over online censorship, which has made it more difficult for the company to do business in the world's most populous country.

The latest duplicity appeared to rely on so-called "phishing" scams and other underhanded behavior that hackers frequently use to obtain passwords from people and websites that aren't vigilant about protecting the information.

9/6/09

Internet Evolution - Hacking for God & Country - by Thomas J. Holt

For the complete report from the Internet Evolution click on this link

Hacking for God & Country - by Thomas J. Holt

There is clear evidence that hacking and malicious software are tremendously costly for businesses and home users alike. So why do people do it? The reasons individuals engage in these activities are diverse. For example, Max Kilger from the Honeynet Project argues that the hacker community is driven by six motives: money, entertainment, ego, cause, entrance to a social group, and status. The economic imperative is particularly strong, given the profit that can be made by hacking databases to steal credit cards and financial information. Additionally, a burgeoning market has developed around the sale of malicious software and stolen data, particularly in Eastern Europe and Russia. Religion and nationalism also may play in computer attacks, as shown by the actions of Turkish hackers in recent years. Some of the most noteworthy attacks occurred after a Danish newspaper published a cartoon featuring the prophet Muhammad with a bomb in his turban in 2005. This image was justifiably deemed offensive by the international Muslim community, and protests were staged in the streets around the world.

8/7/09

PC Plus: Computer technology - Dissecting The Virus

For the complete report from PC Plus click on this link

Computer technology - Dissecting The Virus

All of us know the importance of having adequate antivirus protection before venturing online. But how exactly does a virus work? What makes viruses differ from worms, and how has the sophistication of both increased over the years? Ever since it started to develop alongside the first home computers, malware has become an increasingly virulent and ingenious threat. But that threat is evolving fast. Nowadays, it’s not only internet users who are at risk, but also website owners, whose poorly written web applications are being exploited and used to plant malicious code that infects others through the browser.

An emerging infection vector is the ‘SQL injection’, which can turn the tables by compromising websites to serve up malware to web browsers. It works because a fault on the website makes it possible to pass SQL statements directly to the back-end database. Last year’s Winzipices.cn worm used this form of attack. Using a bug in the MySQL database engine, it stored malicious JavaScript in over 500,000 websites. When read out again by a web browser, the code was executed. This redirected browsers through a sequence of sites to the Chinese phishing site www.winzipices.cn.

8/2/09

YahooTech/Reuters: Turkish Hacker hits Dutch sites with anti-Wilders slogans


For the complete report from YahooTech/Reuters click on this link

Turkish Hacker hits Dutch sites with anti-Wilders slogans

A Turkish hacker has defaced dozens of Dutch websites with pro-Islamic slogans and pictures of right-wing politician Geert Wilders edited to make him look like a monkey, a website that tracks hackers said. Wilders, a former insurance worker turned politician and filmmaker, takes an anti-EU, anti-Islamist stand and leads the Freedom Party which is widely tipped to come first or second in next year's Dutch parliamentary elections. The hacker, who goes by the name "aLpTurkTegin," wrote on some of the sites "Our war will continue against the ones who are against the real religion Islam." On some pages the hacker posted a logo calling him- or her-self "Turkish Defacer."

According to the website Zone-H, which tracks hacking attacks, aLpTurkTegin defaced at least 147 sites in the last 7 days, most of them with anti-Wilders pages. The last recorded attacks were on Friday.

12/27/08

Chicago Tribune: Russian hackers target U.S., Europe for profit and politics -- by Alex Rodriguez

For the complete report from the chicagotribune.com click on this link

Russian hackers target U.S., Europe for profit and politics -- by Alex Rodriguez

Not long ago, the simple, anonymous thrill of exposing chinks in American software was enough of a payoff for a Russian hacker. Today it's cash. And almost all the targets are in the United States and Europe, where Russia's notorious hackers pilfer online bank accounts, swipe social security numbers, steal credit card data and peek at e-mail log-ins and passwords as part of what some estimate to be a $100 billion-a-year global cyber-crime business. And when it's not money that drives Russian hackers, it's politics—with the aim of accessing or disabling the computers, Web sites and security systems of governments opposed to Russian interests. That may have been the motive behind a recent attack on Pentagon computers.

Cyber-crime, by some estimates, has outpaced the amount of illicit cash raked in by global drug trafficking. Hackers from Russia and China are among the chief culprits, and the threat they pose now extends far beyond spam, identity theft and bank heists.Today, however, most hackers in Russia are in it strictly for the money. Cyber-crime gangs approach computer programming graduates from Moscow's technical universities with offers of making sums of $5,000 to $7,000 a month, a far cry from Russia's average monthly salary of $640, says Nikita Kislitsyn, editor of Hacker, a glossy Russian magazine with how-to information for budding hackers.