Coronavirus scientists targetted by Russian hackers
By MYBRANDBOOK
Russian hackers backed by the state are targeting pharmaceutical companies, healthcare, academic research centres and other organisations involved in coronavirus vaccine development, security agencies in the UK, USA and Canada have jointly warned.
The UK's National Cyber Security with support from the US National Security Agency and the Canadian security services put out the advisory stating cyberattacks from hacking group APT29 – also known as Cozy Bear – are attempting to steal information on coronavirus research.
Organisations in the UK, USA and Canada are thought to have been targeted by attacks, which the NCSC has high confidence have originated from a group working on behalf of the Russian government.
APT29 has links to the Russian intelligence services and has been identified as the culprit of a number of high profile international cyber attacks and spear-phishing campaigns, including attempted election interference in the United States.
There's currently no evidence to suggest that the hacking campaigns have been successful, but the NCSC says the attacks are still ongoing.
APT29 has been attempting to deploy custom families of malware – WellMess and WellMail, which both can issue commands on infected machines – against organisations involved in vaccine development. The two forms of malware haven't previously been publicly associated with APT29.
The group is also known to scan for vulnerabilities in networks – such as in Citrix, Pulse Secure and Fortigate products - which it can combine with known exploits in an effort to infiltrate systems and gain persistence to commit espionage and other malicious cyber activity. The NCSC has described APT29 as "very adept" at exploiting vulnerabilities before patches can be applied.
In order to protect against attacks, the NCSC recommends that organisations secure devices and networks with the latest security patches so attackers can't exploit known vulnerabilities. It's also recommended that organisations use multi-factor authentication, so in the event of hackers breaching passwords, there's an additional barrier to prevent them moving around the network.
It's also recommended that staff know how to spot phishing emails and that they're confident enough to report them – even if they feel they might have accidentally clicked on a link or handed over login credentials.
Nazara and ONDC set to transform in-game monetization with ‘
Nazara Technologies has teamed up with the Open Network for Digital Comme...
Jio Platforms and NICSI to offer cloud services to government
In a collaborative initiative, the National Informatics Centre Services In...
BSNL awards ₹5,000 Cr Project to RVNL-Led Consortium
A syndicate led by Rail Vikas Nigam Limited (abbreviated as RVNL), along wi...
Pinterest tracks users without consent, alleges complaint
A recent complaint alleges that Pinterest, the popular image-sharing platf...
EXIDE INDUSTRIES LTD.
ADITYA INFOTECH LTD.
SAFE SECURITY SERVICES PVT. LTD.
VERSA NETWORKS INDIA PVT. LTD.
Icons Of India : B.V.R. Subrahmanyam
A 1987 batch (Chhattisgarh cadre) Indian Administrative Service Office...
ICONS OF INDIA : RITESH AGARWAL
Ritesh Agarwal is an Indian billionaire entrepreneur and the founder a...
Icons Of India : CP Gurnani
Former Managing Director and CEO of the well-known IT service company ...
NIC - National Informatics Centre
NIC serves as the primary IT solutions provider for the government of ...
GSTN - Goods and Services Tax Network
GSTN provides shared IT infrastructure and service to both central and...
C-DAC - Centre for Development of Advanced Computing
C-DAC is uniquely positioned in the field of advanced computing...
Indian Tech Talent Excelling The Tech World - REVATHI ADVAITHI, CEO- Flex
Revathi Advaithi, the CEO of Flex, is a dynamic leader driving growth ...
Indian Tech Talent Excelling The Tech World - Satya Nadella, Chairman & CEO- Microsoft
Satya Nadella, the Chairman and CEO of Microsoft, recently emphasized ...
Indian Tech Talent Excelling The Tech World - Thomas Kurian, CEO- Google Cloud
Thomas Kurian, the CEO of Google Cloud, has been instrumental in expan...