Security News

BAHAMUT Spies-for-Hire Linked to Extensive Nation-State Activity
2020-10-07 17:24

A cyberespionage group known as BAHAMUT has been linked to a "Staggering" number of ongoing attacks against government officials and private-sector VIPs in the Middle East and South Asia, while also engaging in wide-ranging disinformation campaigns. "The group took over the domain of what was originally an information security news website and began pushing out content focused on geopolitics, research, industry news about other hack-for-hire groups," according to the report - along with news about exploit brokers like the NSO Group.

Who was behind that stunning Twitter hack? State spies? Probably this Florida kid, say US prosecutors
2020-07-31 22:28

The miscreants also managed to access the Twitter Direct Messages in 36 accounts, and to download Twitter account data for seven accounts. "Increasingly we rely on platforms like Twitter to receive news and other information that is important to our lives," said US Attorney for the Northern District of California David Anderson in the video statement below.

FYI Russia is totally hacking the West's labs in search of COVID-19 vaccine files, say UK, US, Canada cyber-spies
2020-07-16 18:56

The Kremlin-backed APT29 crew, also known by a variety of other names such as Cozy Bear, Iron Hemlock, or The Dukes, depending on which threat intel company you're talking to that week, is believed by most reputable analysts to be a wholly owned subsidiary of the FSB, modern-day successor to the infamous Soviet KGB. NCSC ops director Paul Chichester said in a statement: "We condemn these despicable attacks against those doing vital work to combat the coronavirus pandemic." Foreign Secretary Dominic Raab added: "It is completely unacceptable that the Russian Intelligence Services are targeting those working to combat the coronavirus pandemic. While others pursue their selfish interests with reckless behaviour, the UK and its allies are getting on with the hard work of finding a vaccine and protecting global health."

Spies Can Listen to Your Conversations by Watching a Light Bulb in the Room
2020-06-13 03:54

You might not believe it, but it's possible to spy on secret conversations happening in a room from a nearby remote location just by observing a light bulb hanging in there-visible from a window-and measuring the amount of light it emits. A team of cybersecurity researchers has developed and demonstrated a novel side-channel attacking technique that can be applied by eavesdroppers to recover full sound from a victim's room that contains an overhead hanging bulb.

Beer rating app reveals homes and identities of spies and military bods, warns Bellingcat
2020-05-19 20:01

A beer and pub-rating app built off the back of Foursquare's location-tracking API poses a risk to the security of military and intelligence personnel, according to legendary OSINT website Bellingcat. Untappd 'has over eight million mostly European and North American users, and its features allow researchers to uncover sensitive information about said users at military and intelligence locations around the world,' wrote Bellingcat's Foeke Postma in a fascinating guide to using the app for tracking down people of interest.

Beer rating app reveals homes and identities of spies and military bods, warns Bellingcat
2020-05-19 20:01

A beer and pub-rating app built off the back of Foursquare's location-tracking API poses a risk to the security of military and intelligence personnel, according to legendary OSINT website Bellingcat. Untappd 'has over eight million mostly European and North American users, and its features allow researchers to uncover sensitive information about said users at military and intelligence locations around the world,' wrote Bellingcat's Foeke Postma in a fascinating guide to using the app for tracking down people of interest.

Court Curbs German Spies' Foreign Internet Surveillance
2020-05-19 12:20

Germany's foreign intelligence service violated the constitution by spying on internet data from foreigners abroad, the nation's top court ruled Tuesday in a victory for overseas journalists who brought the case. The BND agency's surveillance violates "The fundamental right to privacy of telecommunications" and freedom of the press, judges at the Constitutional Court in Karlsruhe said in their verdict.

Dutch spies helped Britain's GCHQ break Argentine crypto during Falklands War
2020-05-18 06:05

Dutch spies operating as a part of a European equivalent of the Five Eyes espionage alliance helped GCHQ break Argentinian codes during the Falklands War, it has been revealed. Flowing from revelations made in German-language news reports earlier this year that Swiss cipher machine company Crypto AG was owned by the CIA and German counterpart the BND during most of the Cold War, an academic paper has described the Maximator alliance which grew from the Crypto AG compromise.

Dutch spies helped Britain's GCHQ break Argentine crypto during Falklands War
2020-05-18 06:05

Dutch spies operating as a part of a European equivalent of the Five Eyes espionage alliance helped GCHQ break Argentinian codes during the Falklands War, it has been revealed. Flowing from revelations made in German-language news reports earlier this year that Swiss cipher machine company Crypto AG was owned by the CIA and German counterpart the BND during most of the Cold War, an academic paper has described the Maximator alliance which grew from the Crypto AG compromise.

Roaring trade in zero-days means more vulns are falling into the hands of state spies, warn security researchers
2020-04-06 18:15

"Furthermore, we noted a significant increase over time in the number of zero-days leveraged by groups suspected to be customers of companies that supply offensive cyber capabilities," said FireEye, which went on to refer to a group of malicious persons variously named by researchers as Stealth Falcon and FruityArmor [sic]. This group "Used malware sold by NSO Group", said FireEye, which speculated that it might also be linked to Uzbekistani state spying operations: "The zero-days used in SandCat operations were also used in Stealth Falcon operations, and it is unlikely that these distinct activity sets independently discovered the same three zero-days."