Subscribe free to our newsletters via your
. 24/7 Space News .




CYBER WARS
Web certificate fraud bears Iranian fingerprints
by Staff Writers
San Francisco (AFP) March 24, 2011


Hackers from Iran are suspected of swiping authentication data from a US computer security firm in an attempt to impersonate popular Google or Yahoo! sites.

"The incident got close to, but was not quite, an Internet-wide security meltdown," Electronic Frontier Foundation senior staff technologist Peter Eckersley said in a message posted at the group's website.

Hackers using computers with addresses in Iran posed as a European affiliate of New Jersey-based Comodo on March 15 to get digital certificates allowing the creation of imitation Google, Yahoo!, Microsoft or Skype log-in pages.

"The attacker was well prepared and knew in advance what he was to try to achieve," Comodo said in an online message regarding the attack. "He seemed to have a list of targets that he knew he wanted to obtain certificates for."

The hacker got "SSL certificates," essentially digital credentials, to pose as mail.google.com, google.com, login.yahoo.com, login.skype.com, addons.mozilla.org, global.trustee and login.live.com.

"These fraudulent SSL certificates could be used by an attacker to masquerade as a trusted website," the US Computer Emergency Readiness Team warned.

One of the online identities was tested on an Iranian computer server but the others appeared not to have been used, according to Comodo, which said that it revoked the credentials within hours.

Microsoft, Mozilla, and Google have updated their Web browsing software to prevent being duped into trusting bogus websites using the credentials.

"These certificates may be used to spoof content, perform phishing attacks, or perform man-in-the-middle attacks against all Web browser users including users of Internet Explorer," Microsoft said in a security advisory.

Whoever was behind the attempt appeared to be out to monitor or intercept email messages or Skype calls.

"This was likely to be a state-driven attack," Comodo said. "The circumstantial evidence suggests that the attack originated in Iran."

.


Related Links
Cyberwar - Internet Security News - Systems and Policy Issues






Comment on this article via your Facebook, Yahoo, AOL, Hotmail login.

Share this article via these popular social media networks
del.icio.usdel.icio.us DiggDigg RedditReddit GoogleGoogle








CYBER WARS
EU victim of eve-of-summit cyber attack: official
Brussels (AFP) March 23, 2011
Cyber-attackers hacked into the European Commission on Wednesday, hours from a sensitive summit of EU leaders debating the military campaign in Libya, the euro debt crisis and nuclear safety, officials said. "All staff were warned this morning" that "remote access to emails was no longer operational," a spokesman for the commission told AFP. Pages from European Union websites, notably th ... read more


CYBER WARS
84 Teams To Compete In NASA Great Moonbuggy Race

A New View Of Moon

Super Full Moon

LRO Delivers Treasure Trove Of Data

CYBER WARS
Next Mars Rover Gets A Test Taste Of Mars Conditions

Alternatives Have Begun In Bid To Hear From Spirit

Opportunity Completes Study Of Ruiz Garcia Rock

Time Is Now For Human Mission To Mars

CYBER WARS
Learn About Future Space Missions At Town Hall Meeting

LockMart Makes Strides In Human Space Exploration

Planetary Exploration Suit Will Be Tested In Antarctica

From Outer Sol To The Inner Rock Human Space Is Growing

CYBER WARS
What Future for Chang'e-2

China setting up new rocket production base

China's Tiangong-1 To Be Launched By Modified Long March II-F Rocket

China Expects To Launch Fifth Lunar Probe Chang'e-5 In 2017

CYBER WARS
Roscosmos Sets April 5 For Soyuz TMA-21 Launch

Astronaut Cady Coleman Shares Her Love of the Flute from Space

Launch Of New ISS mission Slated For April 5

Europe agrees to space station extension

CYBER WARS
Two Ariane 5 And One Soyuz Flights Are Now Being Prepared

ILS Protests Unfair Subsidies To Arianespace

SES And ILS Announce Launch Of SES-6 On ILS Proton In 2013

LockMary To Launch DigitalGlobe WorldView-3 Earth Imaging Satellite

CYBER WARS
Report Identifies Priorities For Planetary Science 2013-2022

Planetary Society Statement On Planetary Science Decadal Survey For 2013-2022

Meteorite Tells Of How Planets Are Born In A Swirl Of Dust

Planet Formation In Action

CYBER WARS
New Adhesive Earns Patent, Could Find Place In Space

Google keeps tight grip on tablet software

Russia checking high-radiation ship in Far East: official

Radiation in Tokyo water back to infant-safe level




The content herein, unless otherwise known to be public domain, are Copyright 1995-2014 - Space Media Network. AFP, UPI and IANS news wire stories are copyright Agence France-Presse, United Press International and Indo-Asia News Service. ESA Portal Reports are copyright European Space Agency. All NASA sourced material is public domain. Additional copyrights may apply in whole or part to other bona fide parties. Advertising does not imply endorsement,agreement or approval of any opinions, statements or information provided by Space Media Network on any Web page published or hosted by Space Media Network. Privacy Statement