Subscribe free to our newsletters via your
. 24/7 Space News .




CYBER WARS
Hackers may have exploited Sony's weakest link: humansW/LLL
by Staff Writers
San Francisco (AFP) Dec 19, 2014


Seoul, Toyko pledge to work with US to combat cyber crime
Seoul (AFP) Dec 20, 2014 - South Korea and Japan on Saturday vowed to work closely with the US to combat cyber crime, after Seoul blamed North Korea for a crippling cyber attack on Sony Pictures.

South Korea said it would share with Washington information "related to the cyber attack on Sony," which it said bore all the hallmarks of an onslaught on its own banks and media agencies by the North last year.

Sony cancelled the Christmas Day release of "The Interview," a madcap romp about a CIA plot to kill North Korean leader Kim Jong-Un, after anonymous hackers invoked the 9/11 attacks in threatening cinemas screening the film.

"We express deep regret and condemn such North Korean activities as they seriously undermine the openness and security of cyber space and they constitute a crime that caused property losses," South Korea's foreign ministry said.

In a statement, it also noted "the similarities between the attacks on Sony Pictures and those against South Korean banks and others in March last year".

A spokesman for Prime Minister Shinzo Abe told AFP that "the Japanese government is closely communicating with the United States and supporting its approach on this issue," without directly referencing North Korea.

"Cyber-attacking is a very significant problem concerning the national security, and the Japanese government strongly condemns the acts of hacking," the spokesman added.

An official investigation by South Korea blamed a cyber attack which completely shut down the networks of key TV broadcasters KBS, MBC and YTN, and crippled operations at three banks last year on North Korea's military intelligence agency.

Access records and the malicious codes used in the attack pointed to the North's military Reconnaissance General Bureau, the Korea Internet and Security Agency (KISA) said, calling it a "premeditated, well-planned cyber attack by North Korea".

Professor Lim Jong-In of Korea University Graduate School of Information Security said the North has created its own army of cyber experts, around 1,000 of which work in China, who can "turn into hackers at a moment's notice and mount attacks".

"With 6,000 hackers under its cyber warfare command, it is counted as one of the world's top five countries in terms of cyber warfare capabilities. It selects some 300 students and raise them as elite cyber warriors every year," he told AFP.

"The North is one of the world's least wired states and therefore, it is quite safe from online counter-attacks."

Hackers who forced Sony Pictures to abort release of a comedy about North Korea likely slipped past the entertainment titan's defenses by exploiting a weak spot -- humans.

That suspicion prevailed on Thursday among cyber security specialists piecing together clues about an attack that led Sony to cancel the release of "The Interview," a movie about a fictional CIA plot to kill North Korean dictator Kim Jong-Un.

The attack, branded by White House officials as "a serious national security matter," was seen as vindictive or even personal, with hackers out to cause Sony extreme pain instead of being driven by the typical profit motive.

Sony workers may have been targeted with "spearphishing" attacks that sent specific workers bogus email messages that appeared to come from trustable sources, according to Usher online identity platform senior vice president Guy Levy-Yurista.

Such deceptive missives typically include web links or attached files which, if opened, result in computers being secretly infected with malicious software.

"The weakest link in any security system is always the human being," Levy-Yurista told AFP.

"My guess is that North Korea made a decision to go after Sony; started a quick spearphishing campaign aimed at Sony Pictures or other parts of the company and then gained access to the system."

Once hackers get footholds, they take advantage of security holes to seize control and data.

The malicious code that infected Sony Pictures was identified as a customized version of Destover. A similar hacker tool has been used in cyber attacks on banks in South Korea and corporations in the Middle East, including Saudi Aramco.

The virus spreads quickly, sucks up data and then destroys computer hard drives to cover its tracks.

"It literally shreds the hard drives of all those machines so they are useless," said Levy-Yurista.

"It is quite impressive what they have done. It is also quite horrific."

- Out to hurt Sony -

CloudFlare principle security researcher Marc Rogers, who is chief of security at the notorious annual Def Con hacker gathering in Las Vegas, is studying leaked Sony files for insights into the attack.

Rogers found that once past the perimeter of Sony's computer system, data was scantly protected with "egregious" flaws such as unencrypted files and passwords stored in plain text.

Hackers could have pillaged financial accounts or even tried extortion, he reasoned.

"It seems clear that whoever was behind this wasn't after money, they were out to hurt Sony," Rogers told AFP.

"It feels more like an insider job to me."

A disgruntled employee could have opened a path for hackers, and then lax security inside the system let them run amok in the network, according to Rogers.

In addition to receiving threats, Sony has seen the release of a trove of embarrassing emails, scripts and other internal communications, including information about salaries and employee health records.

The mountain of stolen data indicated attackers were inside Sony's network undetected for a while, or even had physical access to machines.

Whoever attacked Sony could have used off-the-shelf hacker tools, and appeared to be savvy in ways of distributing stolen data online.

Spearphishing is a standard tactic used for targeted cyber attacks, although it remained unclear whether the ruse was used on Sony Pictures, according to Symantec security response team director Kevin Haley.

"I can pick out a name, do some social engineering in the email, entice them to an attachment or link, and it goes to malware," Haley said.

Hackers are also known to use a watering hole attack in which a website popular in an industry is broken into and rigged with code that pounces when prey visits, according to Haley.

"The idea is that the lion doesn't have to search around the jungle looking for food; it just sits at the water hole and waits," Haley said.

- Film climax leaked -

Sony defended its decision to cancel the release as footage leaked onto the Internet showing the film's climax was to have been a graphic close-up of the North Korean leader's fiery death.

White House spokesman Josh Earnest declined to confirm reports that North Korea had attacked the movie giant, which pulled the film after hackers invoked 9/11 in threatening attacks on cinemas.

But, in a sign US intelligence believes that the attack came from an enemy of the United States, he said: "The president considers this to be a serious national security matter."

North Korea has denied involvement in the brazen November 24 cyber attack.


Thanks for being here;
We need your help. The SpaceDaily news network continues to grow but revenues have never been harder to maintain.

With the rise of Ad Blockers, and Facebook - our traditional revenue sources via quality network advertising continues to decline. And unlike so many other news sites, we don't have a paywall - with those annoying usernames and passwords.

Our news coverage takes time and effort to publish 365 days a year.

If you find our news sites informative and useful then please consider becoming a regular supporter or for now make a one off contribution.
SpaceDaily Contributor
$5 Billed Once


credit card or paypal
SpaceDaily Monthly Supporter
$5 Billed Monthly


paypal only


.


Related Links
Cyberwar - Internet Security News - Systems and Policy Issues






Comment on this article via your Facebook, Yahoo, AOL, Hotmail login.

Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle




Memory Foam Mattress Review
Newsletters :: SpaceDaily :: SpaceWar :: TerraDaily :: Energy Daily
XML Feeds :: Space News :: Earth News :: War News :: Solar Energy News





CYBER WARS
Hackers invoke 9/11 in new chilling Sony threat
Los Angeles (AFP) Dec 16, 2014
Hackers invoked the 9/11 attacks Tuesday in their most chilling threat yet against Sony Pictures, again warning the Hollywood studio not to release a film which has angered North Korea. The threat came as lawyers filed a class action suit against the embattled studio alleging that it failed to protect employees' data, stolen in a massive cyber-attack three weeks ago. In a new statement c ... read more


CYBER WARS
Moon Express testing compact lunar lander at Kennedy

UK Plans to Drill Into Moon, Explore Feasibility of Manned Base

Carnegie Mellon Unveils Lunar Rover "Andy"

Why we should mine the moon

CYBER WARS
Spike seen in methane on Mars, but source unknown

Mars Mountain was All Wet

MAVEN Identifies Links in Chain Leading to Mars Atmospheric Loss

Opportunity Flash-Memory Resets Continue

CYBER WARS
NASA Voyager: 'Tsunami Wave' Still Flies Through Interstellar Space

China drives growth in patent applications worldwide

From Myth to Legend: Orion Test a Success

New generation of Star Tracker from Terma

CYBER WARS
China's Long March puts satellite in orbit on 200th launch

Countdown to China's new space programs begins

China develops new rocket for manned moon mission: media

Service module of China's returned lunar orbiter reaches L2 point

CYBER WARS
Boeing Covers Groundwork in Second Milestone For Commercial Crew

Orbital says it will complete ISS deliveries by end of 2016

OPALS: Light Beams Let Data Rates Soar

ATV views Space Station as never before

CYBER WARS
Soyuz Installed at Baikonur, Expected to Launch Wednesday

SpaceX Soon To Try Landing First Stage on Floating Platform

NASA, SpaceX reschedule next week's ISS resupply launch

ILS Proton launches Yamal-401 satellite marking 400th Proton mission

CYBER WARS
Astronomers spot Pluto-size objects swarming about young sun

Observing Solar System Worlds as if They Were Distant Exoplanets

Finding infant earths and potential life just got easier

Queen's scientist leads study of 'Super-Earth'

CYBER WARS
CAE receives new military contracts for training simulators

Dutch Navy LPD getting new radar system

Earth's most abundant mineral finally has a name

New high-entropy alloy light as aluminum, as strong as titanium




The content herein, unless otherwise known to be public domain, are Copyright 1995-2014 - Space Media Network. All websites are published in Australia and are solely subject to Australian law and governed by Fair Use principals for news reporting and research purposes. AFP, UPI and IANS news wire stories are copyright Agence France-Presse, United Press International and Indo-Asia News Service. ESA news reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. Advertising does not imply endorsement, agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. Privacy Statement All images and articles appearing on Space Media Network have been edited or digitally altered in some way. Any requests to remove copyright material will be acted upon in a timely and appropriate manner. Any attempt to extort money from Space Media Network will be ignored and reported to Australian Law Enforcement Agencies as a potential case of financial fraud involving the use of a telephonic carriage device or postal service.