Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Attacks/Breaches

3/2/2018
12:44 PM
50%
50%

Mueller May Indict Russians Who Hacked DNC

Special counsel is compiling a case against the hackers who breached the DNC and John Podesta's email account, NBC News reports.

Another shoe could soon drop: special counsel Robert Mueller reportedly is putting together a criminal case against Russian hackers behind the breach and leak of emails of the Democratic National Committee (DNC) and Clinton campaign chair John Podesta during the 2016 presidential campaign, according to an NBC News report.

That means a potential indictment or multiple indictments that could provide some of the first public details of the people and methods used by Russian state actors to hack the DNC email system and Podesta's account, as well as how they then leaked information via WikiLeaks. Last month, Mueller dropped an indictment on 13 people involved with The Internet Research Agency, a Russian organization that "had a strategic goal to sow discord in the U.S. political system, including the 2016 U.S. presidential election," according to that indictment.

A source told NBC News that if Mueller issues this second indictment, it could include information on any Americans who assisted or were duped into assisting the Russian hacking operation. Most likely, the indictment would refer to those Americans as "unnamed" individuals, however.

Read more here

 

Black Hat Asia returns to Singapore with hands-on technical Trainings, cutting-edge Briefings, Arsenal open-source tool demonstrations, top-tier solutions and service providers in the Business Hall. Click for information on the conference and to register.

Dark Reading's Quick Hits delivers a brief synopsis and summary of the significance of breaking news events. For more information from the original source of the news item, please follow the link provided in this article. View Full Bio

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
sporter117
0%
100%
sporter117,
User Rank: Apprentice
3/7/2018 | 4:55:34 PM
Re: Wrong collusion
Agreed...

Want to look like a russian, hack a russian computer then attack your target...

51% of attacks are insiders, so I have always felt Seth Rich was the likely suspect.

Especially since he was killed while being robbed, yet his wallet was left on him with cash in it.

 
REISEN1955
0%
100%
REISEN1955,
User Rank: Ninja
3/5/2018 | 12:35:22 PM
Wrong collusion
Russian Hackers have done alot but they did not hack the DNC on first crack - that data breach was a (now dead) DNC staffer who handed Julian Assange a ton of information.  Physical transfer of data.  Hand to hand.  Assange has said so over and over and so far NOBODY HAS FOUND HIM WRONG.   They do not like his methods but he tells truth.  Personally I think of him as Ernst Stavro Blofeld --- all he needs is a Nehru jacket and a white cat.  Now the DNC was hacked in other areas later on.  Podesta and Madame Oven Mitt's famous server. 
SchemaCzar
0%
100%
SchemaCzar,
User Rank: Strategist
3/3/2018 | 3:35:21 PM
Since when are Russian hackers stupid enough to leak their own phishing emails?
Blaming the Russians for wikileaks is ridiculous.  Advanced cyber war teams for nation-states don't leave tracks.  Yes, Podesta was stupid enough to fall for a trivial phishing scam, but how stupid would it be to release the emails that included your own phishing breach?  Too stupid for Russians.

Wikileaks says it received the emails as a leak from someone authorized to see that information.  The emails were genuine. Why would Wikileaks jeopardize its own credibility by lying about its sources?
Tor Weaponized to Steal Bitcoin
Dark Reading Staff 10/18/2019
Data Privacy Protections for the Most Vulnerable -- Children
Dimitri Sirota, Founder & CEO of BigID,  10/17/2019
State of SMB Insecurity by the Numbers
Ericka Chickowski, Contributing Writer,  10/17/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
7 Threats & Disruptive Forces Changing the Face of Cybersecurity
This Dark Reading Tech Digest gives an in-depth look at the biggest emerging threats and disruptive forces that are changing the face of cybersecurity today.
Flash Poll
2019 Online Malware and Threats
2019 Online Malware and Threats
As cyberattacks become more frequent and more sophisticated, enterprise security teams are under unprecedented pressure to respond. Is your organization ready?
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2015-9501
PUBLISHED: 2019-10-22
The Artificial Intelligence theme before 1.2.4 for WordPress has XSS because Genericons HTML files are unnecessarily placed under the web root.
CVE-2019-16971
PUBLISHED: 2019-10-22
In FusionPBX up to 4.5.7, the file app\messages\messages_thread.php uses an unsanitized "contact_uuid" variable coming from the URL, which is reflected on 3 occasions in HTML, leading to XSS.
CVE-2019-16972
PUBLISHED: 2019-10-22
In FusionPBX up to 4.5.7, the file app\contacts\contact_addresses.php uses an unsanitized "id" variable coming from the URL, which is reflected in HTML, leading to XSS.
CVE-2019-16973
PUBLISHED: 2019-10-22
In FusionPBX up to 4.5.7, the file app\contacts\contact_edit.php uses an unsanitized "query_string" variable coming from the URL, which is reflected in HTML, leading to XSS.
CVE-2015-9496
PUBLISHED: 2019-10-22
The freshmail-newsletter plugin before 1.6 for WordPress has shortcode.php SQL Injection via the 'FM_form id=' substring.