Hackers linked to the Chinese government increasingly target Russia, analysis suggests

A recent phishing attempt targeting Russian entities involved long-established Chinese toolkits, experts said.

The post Hackers linked to the Chinese government increasingly target Russia, analysis suggests appeared first on CyberScoop.

Continue reading Hackers linked to the Chinese government increasingly target Russia, analysis suggests

NATO to create cyber rapid response force, increase cyber defense aid to Ukraine

The references the NATO declaration makes to cybersecurity depart from the past and reflect the increasing importance of cyberdefense to overall security, experts said.

The post NATO to create cyber rapid response force, increase cyber defense aid to Ukraine appeared first on CyberScoop.

Continue reading NATO to create cyber rapid response force, increase cyber defense aid to Ukraine

Research questions potentially dangerous implications of Ukraine’s IT Army

Volunteer hacking efforts could unwittingly pull countries or private companies into a murky geopolitical mess, a researcher says.

The post Research questions potentially dangerous implications of Ukraine’s IT Army appeared first on CyberScoop.

Continue reading Research questions potentially dangerous implications of Ukraine’s IT Army

Denial-of-service disrupts Finnish government sites during Zelenskyy speech

The incident also coincided with Finland openly weighing NATO membership and the Finns saying a Russian aircraft violated their airspace.

The post Denial-of-service disrupts Finnish government sites during Zelenskyy speech appeared first on CyberScoop.

Continue reading Denial-of-service disrupts Finnish government sites during Zelenskyy speech

NATO, G-7 leaders promise bulwark against retaliatory Russian cyberattacks

The pledges follow the Biden administration saying that Russia’s calculus on digital assaults had changed.

The post NATO, G-7 leaders promise bulwark against retaliatory Russian cyberattacks appeared first on CyberScoop.

Continue reading NATO, G-7 leaders promise bulwark against retaliatory Russian cyberattacks

Ukraine, looking to fortify itself against Russian attacks, admitted to NATO cyber center

NATO nations voted unanimously on Friday to admit Ukraine to their Cooperative Cyber Defence Centre of Excellence (CCDCOE), a development which experts said will help Ukraine fight off mounting cyberthreats from Russia. The CCDCOE is a NATO-accredited cyber knowledge hub, research institution and training and exercise facility. “They’re one of the leading if not the leading institution for thinking about cyber warfare,” said James Lewis, director of the strategic technologies program at the Center for Strategic and International Studies, a Washington think tank. Lewis said the decision to include Ukraine in the CCDCOE will have an immediate impact on its ability to fend off Russian cyberattacks. The center is based in Tallinn, Estonia and is a legacy of the Estonian government’s experience as the target of devastating cyberattacks in 2007. Russia denied being the culprit in those attacks — which disabled everything from cash machines to media outlets — but […]

The post Ukraine, looking to fortify itself against Russian attacks, admitted to NATO cyber center appeared first on CyberScoop.

Continue reading Ukraine, looking to fortify itself against Russian attacks, admitted to NATO cyber center

Ukraine conflict spurs questions of how to define cyberwar

Legal scholars and cybersecurity experts are closely watching events in Ukraine with an eye on how the Russian invasion may redefine the laws of war for the cyber era. Many agree that Ukraine’s conflict with Russia — an established cyber superpower that isn’t hesitant about flexing its muscle aggressively — could test the rules of war in new and unexpected ways. Some say it already has. Exactly how these rules might be redefined is the subject of significant debate. In recent days, authorities as disparate as the president of Microsoft and the chairman of the Senate Intelligence Committee have weighed in on how NATO’s Article 5 provision for “collective defense,” the Geneva Convention’s protections for civilian targets and other legal frameworks for armed conflict may be challenged in the coming weeks. On Monday, Sen. Mark Warner, D-Va. and the chairman of the Select Committee on Intelligence, said at a Washington […]

The post Ukraine conflict spurs questions of how to define cyberwar appeared first on CyberScoop.

Continue reading Ukraine conflict spurs questions of how to define cyberwar

NATO countries’ refugee management may have been targeted by Belarus-linked hackers

A hacking group with a history of phishing attacks and disinformation against NATO nations may be using compromised Ukrainian armed service member emails to target European officials tasked with managing logistics around refugees fleeing Ukraine, according to findings published Monday. Researchers with cybersecurity firm Proofpoint report they detected an email Feb. 24 that carried a subject referencing the Feb. 24 emergency meeting of NATO on the day the Russian government began its military attack on Ukraine. The email included an attached Microsoft Excel spreadsheet titled “list of persons.xlsx” that the researchers later determined included malware that, if installed, sought to gather information and intelligence from target computers. The social engineering lure used in this campaign was timely, the researchers said, given the NATO meeting and “a news story about a Russian government ‘kill list’ targeting Ukrainians that began circulating in Western media outlets” Feb. 21. Proofpoint did not definitively attribute […]

The post NATO countries’ refugee management may have been targeted by Belarus-linked hackers appeared first on CyberScoop.

Continue reading NATO countries’ refugee management may have been targeted by Belarus-linked hackers

Conversation with a top Ukrainian cyber official: What we know, what we don’t, what it means

Cybersecurity officials in Ukraine issued a warning Monday about yet another phishing attack using either compromised or spoofed government email addresses, the second such warning since Saturday. Monday’s alert warned of attackers targeting government institutions with malware-laced bait documents hosted on Discord that come to targets within emails from the National Health Service of Ukraine. The malware deploys a program called OutSteel that looks for certain file extensions and steals them, and also deploys a second malicious program called SaintBot. Monday’s bulletin comes two days after government officials there warned of compromised email accounts from the Ukrainian judiciary being used to target mostly Ukrainian government targets with malware hidden within phony court inquiries. Both operations come roughly two weeks after a cyberattack targeting Ukrainian government systems that wiped some computers and defaced the websites of dozens of agencies’ sites. All of the attacks are linked as part of “hybrid aggression, […]

The post Conversation with a top Ukrainian cyber official: What we know, what we don’t, what it means appeared first on CyberScoop.

Continue reading Conversation with a top Ukrainian cyber official: What we know, what we don’t, what it means

Spyware providers are flocking to international arms fairs to sell to NATO foes

European and Middle Eastern spyware and surveillance firms are marketing intrusion software to adversaries of the U.S., its intelligence allies and NATO, Atlantic Council research published Monday reveals. Looking at more than 200 companies that attended international arms fairs in the past two decades, researchers found that 85% of companies likely selling interception or intrusion technologies marketed these capabilities to governments outside their home country — even when no intelligence relationship existed. Five companies, including Israel-based Cellebrite and Sweden-based Micro Systemation AB, marketed those capabilities to U.S. and NATO adversaries. Neither company immediately responded to requests for comment. The findings coincide with an explosion of surveillance vendors attending international arms trade shows, including the heavily attended Milipol France and the U.K. -based Security and Policing Home Office.  The report underscores growing concerns about the threat that spyware companies pose to the United States and its allies. U.S. and European leaders have […]

The post Spyware providers are flocking to international arms fairs to sell to NATO foes appeared first on CyberScoop.

Continue reading Spyware providers are flocking to international arms fairs to sell to NATO foes