Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Attacks/Breaches

3/2/2018
12:44 PM
50%
50%

Mueller May Indict Russians Who Hacked DNC

Special counsel is compiling a case against the hackers who breached the DNC and John Podesta's email account, NBC News reports.

Another shoe could soon drop: special counsel Robert Mueller reportedly is putting together a criminal case against Russian hackers behind the breach and leak of emails of the Democratic National Committee (DNC) and Clinton campaign chair John Podesta during the 2016 presidential campaign, according to an NBC News report.

That means a potential indictment or multiple indictments that could provide some of the first public details of the people and methods used by Russian state actors to hack the DNC email system and Podesta's account, as well as how they then leaked information via WikiLeaks. Last month, Mueller dropped an indictment on 13 people involved with The Internet Research Agency, a Russian organization that "had a strategic goal to sow discord in the U.S. political system, including the 2016 U.S. presidential election," according to that indictment.

A source told NBC News that if Mueller issues this second indictment, it could include information on any Americans who assisted or were duped into assisting the Russian hacking operation. Most likely, the indictment would refer to those Americans as "unnamed" individuals, however.

Read more here

 

Black Hat Asia returns to Singapore with hands-on technical Trainings, cutting-edge Briefings, Arsenal open-source tool demonstrations, top-tier solutions and service providers in the Business Hall. Click for information on the conference and to register.

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio
 

Recommended Reading:

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
sporter117
0%
100%
sporter117,
User Rank: Apprentice
3/7/2018 | 4:55:34 PM
Re: Wrong collusion
Agreed...

Want to look like a russian, hack a russian computer then attack your target...

51% of attacks are insiders, so I have always felt Seth Rich was the likely suspect.

Especially since he was killed while being robbed, yet his wallet was left on him with cash in it.

 
REISEN1955
0%
100%
REISEN1955,
User Rank: Ninja
3/5/2018 | 12:35:22 PM
Wrong collusion
Russian Hackers have done alot but they did not hack the DNC on first crack - that data breach was a (now dead) DNC staffer who handed Julian Assange a ton of information.  Physical transfer of data.  Hand to hand.  Assange has said so over and over and so far NOBODY HAS FOUND HIM WRONG.   They do not like his methods but he tells truth.  Personally I think of him as Ernst Stavro Blofeld --- all he needs is a Nehru jacket and a white cat.  Now the DNC was hacked in other areas later on.  Podesta and Madame Oven Mitt's famous server. 
SchemaCzar
0%
100%
SchemaCzar,
User Rank: Strategist
3/3/2018 | 3:35:21 PM
Since when are Russian hackers stupid enough to leak their own phishing emails?
Blaming the Russians for wikileaks is ridiculous.  Advanced cyber war teams for nation-states don't leave tracks.  Yes, Podesta was stupid enough to fall for a trivial phishing scam, but how stupid would it be to release the emails that included your own phishing breach?  Too stupid for Russians.

Wikileaks says it received the emails as a leak from someone authorized to see that information.  The emails were genuine. Why would Wikileaks jeopardize its own credibility by lying about its sources?
COVID-19: Latest Security News & Commentary
Dark Reading Staff 9/25/2020
Hacking Yourself: Marie Moe and Pacemaker Security
Gary McGraw Ph.D., Co-founder Berryville Institute of Machine Learning,  9/21/2020
Startup Aims to Map and Track All the IT and Security Things
Kelly Jackson Higgins, Executive Editor at Dark Reading,  9/22/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Special Report: Computing's New Normal
This special report examines how IT security organizations have adapted to the "new normal" of computing and what the long-term effects will be. Read it and get a unique set of perspectives on issues ranging from new threats & vulnerabilities as a result of remote working to how enterprise security strategy will be affected long term.
Flash Poll
How IT Security Organizations are Attacking the Cybersecurity Problem
How IT Security Organizations are Attacking the Cybersecurity Problem
The COVID-19 pandemic turned the world -- and enterprise computing -- on end. Here's a look at how cybersecurity teams are retrenching their defense strategies, rebuilding their teams, and selecting new technologies to stop the oncoming rise of online attacks.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-15208
PUBLISHED: 2020-09-25
In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, when determining the common dimension size of two tensors, TFLite uses a `DCHECK` which is no-op outside of debug compilation modes. Since the function always returns the dimension of the first tensor, malicious attackers can ...
CVE-2020-15209
PUBLISHED: 2020-09-25
In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, a crafted TFLite model can force a node to have as input a tensor backed by a `nullptr` buffer. This can be achieved by changing a buffer index in the flatbuffer serialization to convert a read-only tensor to a read-write one....
CVE-2020-15210
PUBLISHED: 2020-09-25
In tensorflow-lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, if a TFLite saved model uses the same tensor as both input and output of an operator, then, depending on the operator, we can observe a segmentation fault or just memory corruption. We have patched the issue in d58c96946b and ...
CVE-2020-15211
PUBLISHED: 2020-09-25
In TensorFlow Lite before versions 1.15.4, 2.0.3, 2.1.2, 2.2.1 and 2.3.1, saved models in the flatbuffer format use a double indexing scheme: a model has a set of subgraphs, each subgraph has a set of operators and each operator has a set of input/output tensors. The flatbuffer format uses indices f...
CVE-2020-15212
PUBLISHED: 2020-09-25
In TensorFlow Lite before versions 2.2.1 and 2.3.1, models using segment sum can trigger writes outside of bounds of heap allocated buffers by inserting negative elements in the segment ids tensor. Users having access to `segment_ids_data` can alter `output_index` and then write to outside of `outpu...