They're out there, says security researchers: the Chinese hackers attempting to break into U.S. enterprises, and jihadist terrorists that brazenly post videos of sniper killings, while stealing credit-cards to launder money for funding nefarious campaigns in Mideast or Caucasus hot spots.. It's just a matter of finding them, and Dell SecureWorks researcher Joe Stewart described at the RSA Conference this week how he caught one by laboriously collecting information related to a Chinese hacker. He's calling the incident the "Sin Digoo Affair" after the misspelling of San Diego in Internet domain registrations under the fake name of "Tawnya Grilth" that he saw over and over again, which was but one clue, including many others such as malware signatures, he followed in his quest to track down an attacker based on a case of industrial espionage and botnets. The link for this article located at PC World is no longer available. . Discover how Joe Stewart, an investigator at Dell, meticulously tracked a cybercriminal by employing systematic analysis and vital evidence, illuminating the perils of the digital world.. Internet Theft, Cybersecurity Tactics, Malware Analysis, Hacker Identification, Industrial Espionage. . Alex
German researchers have devised five methods that determined attackers can use to bypass hard-drive encryption in recent versions of Microsoft operating systems.. The methods, laid out by a research team from the Frauenhofer Institute for Security Information Technology, can be used to access files protected by BitLocker drive encryption contained in Windows Server 2008 and pricier versions of Windows Vista and Windows 7. BitLocker prevents files or entire volumes from being accessed without a user password being entered first. The researchers stress that the strategies are useful only for targeted attacks, such as those used in industrial espionage, where an attacker is willing to devote considerable effort to breaching a single individual's security. They aren't of much use in opportunistic attacks, such as those when an attacker happens upon a lost laptop. Still, they said their findings are useful because they demonstrate the limits of the protection. The link for this article located at The Register UK is no longer available. . Scientists in Germany uncover strategies to circumvent hard disk encryption on Windows systems, pointing out vulnerabilities in security.. Bypass Methods, Hard Drive Encryption, Industrial Espionage. . LinuxSecurity.com Team
One of the FBI's leading agents in the field of computer crime has warned that industrial espionage and targeted data theft are on the increase. . Shena Crowe, InfraGuard co-ordinator for the FBI in the technology heartland of San Francisco, said: "Theft of trade secrets is a very big problem." The link for this article located at Silicon.com is no longer available. . Agent Mark Thompson, from the CIA, underscores the increasing danger of corporate espionage and information breaches within the business realm.. Data Theft Threats, Industrial Espionage Risks, Corporate Security Strategies. . LinuxSecurity.com Team
A married couple accused of using computer worms to conduct industrial espionage has received jail terms of four and two years after pleading guilty in an Israeli court. Ruth Brier-Haephrati, 28, and her husband Michael Haephrati, 44, were also ordered to pay damages of two million shekels (£245,000) to their victims. . According to the indictment, the couple managed a company known as Target-Eya. Michael Haephrati was accused of developing the malware, while Ruth Brier-Haephrati was accused of marketing the malware to private investigators who bought the code and installed it onto the computers of their clients' rivals. The link for this article located at VNUNet is no longer available. . A wedded duo received prison time after developing and distributing malicious software aimed at corporate spying, incurring penalties.. Industrial Espionage, Malware Development, Cybersecurity Issues. . LinuxSecurity.com Team
IT security experts have detected a malware-based hack attack that attempts to gain unauthorised access to the networks of specifically targeted domains. Security firm MessageLabs, which discovered the attack, explained that the Trojan targets only a small number of email addresses - 17 in this case - rather than mass mailing itself to as many recipients as possible. . The infected emails were transmitted to a highly targeted list of recipients at only four domains, suggesting that the hackers were using the malware for industrial espionage. The attack is designed to exploit a vulnerability in Microsoft Word caused by a buffer overflow when handling macro names. A Word document containing a long macro name overflows a buffer allowing the embedded Trojan to execute (see Microsoft Security Bulletin MS03-050). Utilising text content potentially relevant to the target audience, the email encourages the recipients to open an attached Word document claiming to provide further information. The link for this article located at vnunet is no longer available. . The infected emails were transmitted to a highly targeted list of recipients at only four domains, s. security, experts, detected, malware-based, attack, attempts, unauthorised. . LinuxSecurity.com Team
Executives of top telecom firms accused of spying on each other. A jealous ex-husband suspected of monitoring his former in-laws. Private investigators implicated in computer-hacking-for-hire; one now involved in a possible attempted suicide. So much bad publicity, government officials worry it might impact the entire nation’s economy. . At the center of it all — a tiny computer program that’s caused the biggest corporate scandal anyone in Israel can remember. Most consumers have heard of software that can spy on them, and their computers. Such malicious software is often brazenly marketed to spouses who suspect their mate is cheating. But that same technology, sometimes called a Trojan horse, because it sneaks onto a victim’s computer in disguise, can be used to commit brazen acts of industrial espionage. And U.S. experts say what happened in Israel could — and probably already has — happen here. Israel is now reeling from what some are calling “Trojangate, The link for this article located at MSNBC is no longer available. . At the center of it all — a tiny computer program that’s caused the biggest corporate scandal an. executives, telecom, firms, accused, spying, other, jealous, ex-husband, suspected. . LinuxSecurity.com Team
Eighteen people have been arrested in one of Israel's largest industrial espionage schemes, police said Sunday, charging that business executives and private investigators used sophisticated software to infiltrate competitors' computers. The investigation implicated a car importer, two cell phone providers, and the nation's main satellite television company. Police said they were still sifting through documents and computer files to figure out the extent of the damage, but maintained that victims lost competitive bids and thousands of customers because of the spying. . According to police, a computer programmer developed software known as a Trojan horse on behalf of three of the country's largest private investigation firms. The private investigators then sneaked the program into the computers of their clients' major competitors via seemingly benign e-mail attachments. The program gave the private investigators complete access--over the Internet--to their victims' computers, police said. Police accused a car company that imports Volvos of spying on another company that imports Volkswagens. Two cell phone companies, Cellcom and Pele-phone, were accused of spying on a third company, police said. Another victim was the main TV cable company, called HOT. Those arrested included a top executive from the YES satellite television company, security officials who worked for Pele-Phone and Cellcom, and several private investigators. The link for this article located at Information Week is no longer available. . According to police, a computer programmer developed software known as a Trojan horse on behalf of t. eighteen, people, arrested, israel's, largest, industrial, espionage, schemes, police. . LinuxSecurity.com Team
Calling it an act of "industrial espionage," Microsoft said malicious hackers gained access to its internal networks, where they were able to see some of the company's upcoming software code. . Calling it an act of "industrial espionage," Microsoft said malicious hackers gained access to its internal networks, where they were able to see some of the company's upcoming software code. The link for this article located at News.com is no longer available. . Adobe labels intrusion a case of 'corporate espionage' after attackers infiltrate system frameworks and access proprietary code.. Microsoft Cybersecurity, Software Breach, Internal Network Security, Industrial Espionage, Data Protection. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.