Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Attacks/Breaches

2/16/2018
02:54 PM
Connect Directly
Twitter
LinkedIn
Google+
RSS
E-Mail
0%
100%

13 Russians Indicted for Massive Operation to Sway US Election

Russian nationals reportedly used stolen American identities and infrastructure to influence the 2016 election outcome.

A federal grand jury has indicted 13 Russian nationals and three Russian entities for a massive operation intended to interfere with the 2016 US presidential election. US Special Counsel Robert Mueller has accused the defendants of posing as Americans to sway election results.

The Internet Research Agency, a Russian organization, and the 13 actors reportedly began targeting the United States back in 2014. Mueller's indictment claims they "had a strategic goal to sow discord in the U.S. political system, including the 2016 U.S. presidential election."

To do this, they launched an operation to support the Trump campaign and denigrate Hillary Clinton. In April 2014 the agency formed a department focused on the US population and operated on social platforms including Facebook, Instagram, Twitter, and YouTube. By 2014, its strategy included fomenting distrust in US presidential candidates and the US political system.

Activity included buying political advertisements on social media with the identities of US citizens and businesses. The defendants concealed their Russian identities and affiliation with the Internet Research Agency by using stolen data like Social Security numbers and birthdates of real American people. They also recruited Americans to aid efforts to spread promotional and derogatory information.

The actors posed as US citizens and groups to create and control social media accounts. An example is the Twitter account "Tennessee GOP" under the handle @TEN_GOP, which falsely claimed to be operated by a US political party and amassed more than 100,000 followers. On other sites, particularly Facebook and Instagram, they posted content about political issues.

Around June 2016, the defendants began posing as American citizens and communicating with Americans to gather intelligence and learn where they should focus their efforts. Some traveled to the US to collect info for their operations and stage political rallies.

To further conceal their identities, the defendants and their co-conspirators bought space on servers based in the US to set up VPNs. They used these VPNs to connect from Russia to the US and access online social media accounts, open new accounts, and talk with US citizens.

The first time the United States indicted nation-state threat actors was in 2014, when the DoJ indicted five members of the Chinese military for allegedly hacking major American manufacturing companies and stealing trade secrets. In 2016 it indicted seven Iranian hackers for distributed denial-of-service (DDoS) attacks against US financial companies.

It's worth noting these indictments are rare and don't usually end with an arrest. This week two Russian hackers were sent to US federal prison for payment card breaches at Heartland Payment Systems, NASDAQ, and other companies; however, these attackers were cybercriminals and not connected to a nation-state group.

Related Content:

 

 

 

Black Hat Asia returns to Singapore with hands-on technical Trainings, cutting-edge Briefings, Arsenal open-source tool demonstrations, top-tier solutions and service providers in the Business Hall. Click for information on the conference and to register.

Kelly Sheridan is the Staff Editor at Dark Reading, where she focuses on cybersecurity news and analysis. She is a business technology journalist who previously reported for InformationWeek, where she covered Microsoft, and Insurance & Technology, where she covered financial ... View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
Joe Stanganelli
50%
50%
Joe Stanganelli,
User Rank: Ninja
2/20/2018 | 10:37:23 PM
Re: Is there a crime?
@zzx375: It's not about fake news so much as about actual campaigning activities in the manner of a PAC. The issue, as per the indictment, comes down to them being foreign nationals -- who are prohibited from various electioneering activities/expenditures in the US. There are also allegations in the indictment of bank fraud, wire fraud, and identity theft.
libertyboy
50%
50%
libertyboy,
User Rank: Apprentice
2/20/2018 | 12:45:14 PM
Re: Is there a crime?
It's pretty laughable really - some Ruskies cyberbullied Hillary and stole the election!? Be very careful what you wish for (making it seem way bigger than it was,) because soon the investigation will close and the first thing Trump will do is say the this is one more thing Obama screwed up because the Russian trolling happened on his watch, and The Donald will take credit for fixing Obamas failure for future elections!
lg.alabris
100%
0%
lg.alabris,
User Rank: Strategist
2/19/2018 | 11:12:26 PM
Re: Is there a crime?
Your bot-pal zzx375 started this and you actually defend it?  Oh, he's a nice bot, really...

Clinton won the popular vote by over 2+MM votes.  The actual 2016 election outcome was decided by less than 80K votes in 2 states.   To claim that this opinion engineering operation - highly sophisticated - covert - well funded - with known massive effect on numerous previous Euro elections - did not affect the 2016 election outcome is laughable.   

What has changed?  In past years anyone here would understand threats when they see them and defend freedom and its values.    Now we have people who cynically apologize for them.    

Yes, crime was involved.  Thirty seven pages of it.   We are facing serious threats and responsible professionals know it.   If you are feeling sick, perhaps its from too much Faustian deal in your diet. 

 sorry if all this "political" talk hurts your feelings.  Its real and we need to fix it.
cynrgy
80%
20%
cynrgy,
User Rank: Strategist
2/19/2018 | 2:08:13 PM
Re: Is there a crime?
*huge eye roll

The Clintons lost.  Stop crying about it.  Turn the page. 

I'd be willing to buy that the Russians were trying to weave dissention into gullable Americans but the insinuation that the Russians actively wanted Trump to win is so much left-wing paranoia it makes me sick.  Grow up people. 

I have been a dedicated reader of this site for many years because of its seeminly non-biased, non-political write-ups.   

Has something changed? 
lg.alabris
100%
0%
lg.alabris,
User Rank: Strategist
2/19/2018 | 12:23:19 AM
Re: Is there a crime?
zzx375  really?  obvious a bot
zzx375
0%
100%
zzx375,
User Rank: Strategist
2/17/2018 | 9:23:53 AM
Is there a crime?
Is there a crime other than people in this country being stupid and believing everything they read online or in a social media feed?  Unless there are specific laws on the books I suspect this the special prosecutor's way of saying here's what we have, but it isn't much.  How many people post without using their own name?  Nothing to see here.
7 Tips for Infosec Pros Considering A Lateral Career Move
Kelly Sheridan, Staff Editor, Dark Reading,  1/21/2020
For Mismanaged SOCs, The Price Is Not Right
Kelly Sheridan, Staff Editor, Dark Reading,  1/22/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment:   It's a PEN test of our cloud security.
Current Issue
IT 2020: A Look Ahead
Are you ready for the critical changes that will occur in 2020? We've compiled editor insights from the best of our network (Dark Reading, Data Center Knowledge, InformationWeek, ITPro Today and Network Computing) to deliver to you a look at the trends, technologies, and threats that are emerging in the coming year. Download it today!
Flash Poll
How Enterprises are Attacking the Cybersecurity Problem
How Enterprises are Attacking the Cybersecurity Problem
Organizations have invested in a sweeping array of security technologies to address challenges associated with the growing number of cybersecurity attacks. However, the complexity involved in managing these technologies is emerging as a major problem. Read this report to find out what your peers biggest security challenges are and the technologies they are using to address them.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-9720
PUBLISHED: 2020-01-24
Tornado before 3.2.2 sends arbitrary responses that contain a fixed CSRF token and may be sent with HTTP compression, which makes it easier for remote attackers to conduct a BREACH attack and determine this token via a series of crafted requests.
CVE-2015-1525
PUBLISHED: 2020-01-24
audio/AudioPolicyManagerBase.cpp in Android before 5.1 allows attackers to cause a denial of service (audio_policy application outage) via a crafted application that provides a NULL device address.
CVE-2015-1530
PUBLISHED: 2020-01-24
media/libmedia/IAudioPolicyService.cpp in Android before 5.1 allows attackers to execute arbitrary code with media_server privileges or cause a denial of service (integer overflow) via a crafted application that provides an invalid array size.
CVE-2015-2688
PUBLISHED: 2020-01-24
buf_pullup in Tor before 0.2.4.26 and 0.2.5.x before 0.2.5.11 does not properly handle unexpected arrival times of buffers with invalid layouts, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via crafted packets.
CVE-2015-2689
PUBLISHED: 2020-01-24
Tor before 0.2.4.26 and 0.2.5.x before 0.2.5.11 does not properly handle pending-connection resolve states during periods of high DNS load, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via crafted packets.