FBI Disables Russian Malware

Reuters is reporting that the FBI “had identified and disabled malware wielded by Russia’s FSB security service against an undisclosed number of American computers, a move they hoped would deal a death blow to one of Russia’s leading cyber spying programs.”

The headline says that the FBI “sabotaged” the malware, which seems to be wrong.

Presumably we will learn more soon.

EDITED TO ADD: New York Times story.

EDITED TO ADD: Maybe “sabotaged” is the right word. The FBI hacked the malware so that it disabled itself.

Despite the bravado of its developers, Snake is among the most sophisticated pieces of malware ever found, the FBI said. The modular design, custom encryption layers, and high-caliber quality of the code base have made it hard if not impossible for antivirus software to detect. As FBI agents continued to monitor Snake, however, they slowly uncovered some surprising weaknesses. For one, there was a critical cryptographic key with a prime length of just 128 bits, making it vulnerable to factoring attacks that expose the secret key. This weak key was used in Diffie-Hellman key exchanges that allowed each infected machine to have a unique key when communicating with another machine…

Continue reading FBI Disables Russian Malware

Turla’s Snake malware network disrupted by Five Eyes’ authorities

The US Justice Department announced the completion of court-authorized operation MEDUSA, to disrupt a global peer-to-peer network of computers compromised by sophisticated malware, called “Snake” (aka “Uroburos”), that the US Government att… Continue reading Turla’s Snake malware network disrupted by Five Eyes’ authorities

Feds Take Down 13 More DDoS-for-Hire Services

The U.S. Federal Bureau of Investigation (FBI) this week seized 13 domain names connected to “booter” services that let paying customers launch crippling distributed denial-of-service (DDoS) attacks. Ten of the domains are reincarnations of DDoS-for-hire services the FBI seized in December 2022, when it charged six U.S. men with computer crimes for allegedly operating booters. Continue reading Feds Take Down 13 More DDoS-for-Hire Services

Seized: 9 Crypto Laundering Sites Used by Ransomware Gangs

By Deeba Ahmed
International cooperation between the Ukrainian Cyber and National Police, the FBI, and the Department of Justice has led to the seizure of cybercriminals’ cryptocurrency laundering websites.
This is a post from HackRead.com Read the ori… Continue reading Seized: 9 Crypto Laundering Sites Used by Ransomware Gangs

Critics suggest intelligence agencies should get a warrant for FISA searches

A hearing Thursday marks the beginning of debate over reforming the intelligence community’s warrantless searches under Section 702.

The post Critics suggest intelligence agencies should get a warrant for FISA searches appeared first on CyberScoop.

Continue reading Critics suggest intelligence agencies should get a warrant for FISA searches

Photos: RSA Conference 2023, part 3

RSA Conference 2023 is taking place at the Moscone Center in San Francisco. Check out our microsite for the conference for all the most important news. Part 1 of the photos is here, and Part 2 is here. Here are a few photos from the event, featured ven… Continue reading Photos: RSA Conference 2023, part 3

To combat cybercrime, US law enforcement increasingly prioritizes disruption

Rather than focusing on arrests, U.S. law enforcement is trying to prevent additional victims of online crime.

The post To combat cybercrime, US law enforcement increasingly prioritizes disruption appeared first on CyberScoop.

Continue reading To combat cybercrime, US law enforcement increasingly prioritizes disruption

Smashing Security podcast #318: Tesla workers spy on drivers, and Operation Fox Hunt scams

Graham wonders what would happen if his bouncing buttocks were captured on camera by a Tesla employee, and we take a look at canny scams connected to China’s Operation Fox Hunt.

All this and more is discussed in the latest edition of the “Smashing S… Continue reading Smashing Security podcast #318: Tesla workers spy on drivers, and Operation Fox Hunt scams

US charges Chinese government officials in broad scheme to suppress dissent abroad

By deploying fake social media personas and operating a police station abroad, Beijing sought to enforce its censorship regime in the U.S.

The post US charges Chinese government officials in broad scheme to suppress dissent abroad appeared first on CyberScoop.

Continue reading US charges Chinese government officials in broad scheme to suppress dissent abroad