US Says Iran-backed Hackers Are Now Targeting Organizations With Ransomware (techcrunch.com) 18
The U.S. government, along with counterparts in Australia and the U.K, have warned that Iranian state-backed hackers are targeting U.S. organizations in critical infrastructure sectors -- in some cases with ransomware. From a report: The rare warning linking Iran with ransomware landed in a joint advisory Wednesday, issued by the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), the Australian Cyber Security Centre (ACSC), and the U.K's National Cyber Security Centre (NCSC). The advisory said that Iran-backed attackers have been exploiting Fortinet vulnerabilities since at least March and a Microsoft Exchange ProxyShell vulnerability since October to gain access to U.S. critical infrastructure organizations in the transport and public health sectors, as well as organizations in Australia. The aim of the hackers is ultimately to leverage this access for follow-on operations such as data exfiltration, extortion and ransomware deployment. In May this year, for example, the hackers abused Fortigate gear to access a web server hosting the domain for a U.S. municipal government. The following month, CISA and the FBI observed the hackers exploiting Fortinet vulnerabilities to access the networks of a U.S.-based hospital specializing in healthcare for children. The joint advisory has been released alongside a separate report from Microsoft on the evolution of Iranian APTs, which are "increasingly utilizing ransomware to either collect funds or disrupt their targets." In the report, Microsoft said it has been tracking six Iranian threat groups that have been deploying ransomware and exfiltrating data in attacks that started in September 2020.
Re: (Score:1)
Did Biden shut down ongoing drilling operations and a running pipeline? Also, wasn't most of the stuff left in Afghanistan stuff that had already been given to the the government that we propped up for 20 years just to see it fold in a few hours despite having all that equipment?
IOW, aren't you just riffing on OAN stories that you've half forgotten?
Re: (Score:1)
> Did Biden shut down ongoing drilling operations and a running pipeline?
A graduate of the "School of Snopes Fact Checking" I see.
1. Shutdown all FUTURE drilling and fracking.... so oil demand builds.
2. Halt the BUILDING of a pipeline that would have serviced that demand.
Make no mistake, the problems you're getting are the problems you voted for.
---
"Is is true Biden called Satchel Paige the n-word in his Veteran's Day speech?"
FALSE FACT: The speech was actually prepared by a whitehouse speech writer so i
Re: (Score:2)
Watch out with that Biden Derangement Syndrome, it is highly correlated with sending money to co
Re: (Score:2)
Thanks for your input Frank. Having picked up many IMO shares during the pandemic I'm well aware of where oil and my portfolio is headed thanks to Biden.
If can't see it now then you surely didn't see it coming. I'm not sure how profitable covering for a senile man is, but betting against them sure is.
Well then Microsoft, do your thing ... (Score:2)
You idiots keep paying (Score:3)
So people and businesses keep getting ransomed.
Stop making excuses and bolster IT security (Score:3)
extortion and ransomware (Score:1)
They are using Bitcoin for payments?
I'm shocked! Surely you must be joking!
Playing with fire (Score:2)
Microsoft Windows has a malware problem (Score:2)
Iran, China, Russia, I can't keep up anymore (Score:2)
Now who is the real bad guy in my black-and-white world?
Or should I look at my own country?
Latest Bullshit, Variant of old Bullshit (Score:2)
Gotta keep those tax dollars rolling into the Security Industrial Complex, just another division of the Military Industrial Complex, which also happens to own most media outlets.
I'd be happy if the NSA concentrated on making secure computing standards, instead of backdoored computing standards to allow surveillance, that are inevitably found and used by hackers.
It's time we went back to non-routable protocols where suitable.