Chinese APT Posing as Cloud Services to Spy on Cambodian Government

By Deeba Ahmed
Palo Alto’s Unit 42 Reveals Chinese APT Spying on 24 Cambodian Government Entities as Part of Long-Term Cyberespionage.
This is a post from HackRead.com Read the original post: Chinese APT Posing as Cloud Services to Spy on Cambodian Gov… Continue reading Chinese APT Posing as Cloud Services to Spy on Cambodian Government

Dark Pink, a newly discovered hacking campaign, threatens Southeast Asian military, government organizations

The unattributed activity employs a sophisticated approach to steal data and monitor targets, researchers say.

The post Dark Pink, a newly discovered hacking campaign, threatens Southeast Asian military, government organizations appeared first on CyberScoop.

Continue reading Dark Pink, a newly discovered hacking campaign, threatens Southeast Asian military, government organizations

Smashing Security podcast #293: Massive crypto bungle, and the slave scammers

A couple unexpectedly find $10.5 million in their cryptocurrency account, and in Cambodia people are being forced to commit scams.

All this and more is discussed in the latest edition of the award-winning “Smashing Security” podcast by computer secu… Continue reading Smashing Security podcast #293: Massive crypto bungle, and the slave scammers

FBI arrests 65 in BEC scams that took $51 million from U.S. businesses

“Operation Eagle Sweep” is the latest crackdown on business email compromise (BEC) scams by international law enforcement.

The post FBI arrests 65 in BEC scams that took $51 million from U.S. businesses appeared first on CyberScoop.

Continue reading FBI arrests 65 in BEC scams that took $51 million from U.S. businesses

This China-linked espionage group keeps trying to hack the Cambodian government

There is no shortage of malware that government-backed hackers can get from the public domain, saving them the trouble of developing their own code. But to meet their intelligence-gathering needs, plenty of groups still roll up their sleeves and build their own kits. A Chinese espionage outfit known as Rancor has been particularly active on that front. New findings from Palo Alto Networks’ Unit 42 research unit, shared exclusively with CyberScoop, show how, over the past year, the group has tried to break into the network of an unnamed Cambodian government organization and deploy their custom malware. First, the group laced a Microsoft Excel document with previously undocumented malware in an attempted breach of the Cambodian organization in December 2018 and January 2019, Unit 42 said. When that didn’t work, Rancor packed a computer script with a bunch of potentially infectious code, Unit 42 researchers discovered in July. The research […]

The post This China-linked espionage group keeps trying to hack the Cambodian government appeared first on CyberScoop.

Continue reading This China-linked espionage group keeps trying to hack the Cambodian government

ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign

A prominent Vietnam-linked hacking group is exploiting a number of Southeast Asian organizations’ websites to deliver malware that extracts detailed information about victims’ systems, researchers say. According to a report released Tuesday by Slovakian cybersecurity company ESET, the threat group APT32, also known as OceanLotus Group, has been conducting watering hole attacks using at least 21 vulnerable websites belonging to government, media and other organizations as far back as September. APT32 is believed to be based in Vietnam and possibly linked to its government. Past research has shown APT32 to be a highly capable threat group that targets a wide variety of public and private organizations with customized tools for each target. Similarly, this campaign shows APT32 using a unique domain and server for each website it’s using as a watering hole, and the group only sends additional payloads to specific victims, according to ESET. ESET said it notified 21 website […]

The post ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign appeared first on Cyberscoop.

Continue reading ESET: Vietnamese hacking group hijacks Southeast Asian sites in watering hole campaign

Chinese hackers breach Cambodian government ahead of country’s general election

In the run up to Cambodia’s general election on July 29, a hacking group tied to China has been breaking into multiple organizations that share a connection to either the country’s main opposition party, voting process or human rights movement, according to new research and additional analysis provided by U.S. cybersecurity firm FireEye. The findings — made possible through a glaring operational security mistake where hackers left their attack servers exposed on the open internet — help illustrate how governments are leaning on cyber-espionage capabilities to learn about foreign elections. FireEye collected this intelligence by directly accessing the attack servers, which weren’t protected with a password. The firm was able to identify breaches through established lines of communication that existed between the servers and victims. The hacking group in question, known as “TEMP.Periscope,” has been tied multiple times to Chinese-linked cyber operations that used a suite of unique tools to […]

The post Chinese hackers breach Cambodian government ahead of country’s general election appeared first on Cyberscoop.

Continue reading Chinese hackers breach Cambodian government ahead of country’s general election