Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
Why Russia Hacks
Newest First  |  Oldest First  |  Threaded View
Page 1 / 2   >   >>
JJack154
50%
50%
JJack154,
User Rank: Apprentice
2/5/2015 | 12:13:30 PM
Re: Why ANY Nation Hacks
Putin's KGB roots and his belief that Russia will again become a major world power have given an attitude and the will to do what it takes! That's why Russin Hackers can do their thing in a sheltered environment sanctioned by their government.
lynnbr2
50%
50%
lynnbr2,
User Rank: Strategist
1/26/2015 | 8:52:24 AM
Re: Financial gain?
Russia & China both have a long history of hacking for over fifty years. Their primary reason is military. Remenber the Buran shuttle - amazinging similar to our old Space Shuttle. And now look at the Chinese J-20 & J-31 stealth fighters.

It is incrediby more cost effective to steal information, than it is to invest in the time and resources to design them yourself.

To be able to do this in a way without any fingerprints is a bonus. While military is their state primary goal, to employ third parties, they need a carrot - financial, to keep these third parties motivated and compensated, and up-to-date in their techniques.
Joe Stanganelli
50%
50%
Joe Stanganelli,
User Rank: Ninja
1/25/2015 | 8:41:28 PM
FWIW...
I recently saw former DHS chief Michael Chertoff speak at a cybersecurity conference, and he himself outright accused Russia of actively working with and supporting criminal organizations so as to perpetrate cyberwarfare.
Marilyn Cohodas
50%
50%
Marilyn Cohodas,
User Rank: Strategist
1/23/2015 | 4:36:04 PM
Re: Why ANY Nation Hacks
Well said, @aws0513! Thanks.
aws0513
50%
50%
aws0513,
User Rank: Ninja
1/23/2015 | 4:32:58 PM
Re: Why ANY Nation Hacks
Hello @Marilyn,

I think what Mike is providing is a better understanding of the threat side of the risk assesment equation.

The understanding of why state actors may want to target any organization can better help any risk assessment effort for any organization.  This kind of information can help analysts to determine a better threat score to assess against known state actors when compared to their line of business or valued properties. 
Understanding the why could have helped Sony change their risk assessment when they know that the movie they were making would upset or embarrass a dictator.  Although the why seems to be insanity in this case, it is a tangable fact that could have changed the threat value of a risk assessment involving North Korea as the possible threat actor.

This is rock solid analysis @Mike.  Thank you for all of this.

Keep fighting the good fight out there sir!
Marilyn Cohodas
50%
50%
Marilyn Cohodas,
User Rank: Strategist
1/23/2015 | 1:32:19 PM
Re: Why ANY Nation Hacks
To you r point, @Gonz "Everybody who thinks that nations do not hack to further their geopolitical ambitions raise their hand." True, but what I'm taking away from this series is that the what, where and why nations hack are very different.

So my question to Mike is: what can security professionals take away from understanding the various motivations of nation-states, to help them better secure corporate systems and data? Does the "why" really matter?

 
GonzSTL
50%
50%
GonzSTL,
User Rank: Ninja
1/23/2015 | 12:40:23 PM
Re: Why ANY Nation Hacks
@Mike Walls: And thank you for yours, shipmate! It really was an honor to serve; I come from a military family. At last count, around 20 veterans (some still serving) in all branches except the Coast Guard.

You are correct; it is an exciting time for young folks to be in IT security right now, as it is a wide open field with many openings in all industry segments. When I teach, I emphasize to my students that in addition to the technical skills, they must also strengthen their business savvy, soft skills like interpersonal relationships, presentation and communication skills, both oral and written. It is tough enough to get the security agenda pushed forward, and even tougher if you cannot communicate it in a way that is fit for executive consumption and for the lay person, and not just for their peers.
Dr.T
50%
50%
Dr.T,
User Rank: Ninja
1/23/2015 | 12:12:57 PM
Re: Financial gain?
Absolutely. Most governments to governments hacking are mainly initiated with a strategic gain, what they end up with is mainly show off and disruption tough, they hardly gain anything that they do not know already in my view.
mwallsedgewave
50%
50%
mwallsedgewave,
User Rank: Author
1/23/2015 | 12:11:53 PM
Re: Why ANY Nation Hacks
GonzSTL,

Glad to exchange thoughts with a "Shipmate" and thanks for your Service!  There are defintely opportunities both in the military (I prefer Navy for obvious reasons) and in the private sector...cyber security is an exciting place to be for young folks looking to make a difference.

 
Dr.T
50%
50%
Dr.T,
User Rank: Ninja
1/23/2015 | 12:08:09 PM
Re: Why ANY Nation Hacks
The main reason US has best capabilities to hack is simply because more systems were design out of here and one way or another the most traffics is passing through resources in US regardless where you are in the world.
Page 1 / 2   >   >>


Mobile Banking Malware Up 50% in First Half of 2019
Kelly Sheridan, Staff Editor, Dark Reading,  1/17/2020
7 Tips for Infosec Pros Considering A Lateral Career Move
Kelly Sheridan, Staff Editor, Dark Reading,  1/21/2020
For Mismanaged SOCs, The Price Is Not Right
Kelly Sheridan, Staff Editor, Dark Reading,  1/22/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Write a Caption, Win a Starbucks Card! Click Here
Latest Comment:   It's a PEN test of our cloud security.
Current Issue
IT 2020: A Look Ahead
Are you ready for the critical changes that will occur in 2020? We've compiled editor insights from the best of our network (Dark Reading, Data Center Knowledge, InformationWeek, ITPro Today and Network Computing) to deliver to you a look at the trends, technologies, and threats that are emerging in the coming year. Download it today!
Flash Poll
How Enterprises are Attacking the Cybersecurity Problem
How Enterprises are Attacking the Cybersecurity Problem
Organizations have invested in a sweeping array of security technologies to address challenges associated with the growing number of cybersecurity attacks. However, the complexity involved in managing these technologies is emerging as a major problem. Read this report to find out what your peers biggest security challenges are and the technologies they are using to address them.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-7245
PUBLISHED: 2020-01-23
Incorrect username validation in the registration processes of CTFd through 2.2.2 allows a remote attacker to take over an arbitrary account after initiating a password reset. This is related to register() and reset_password() in auth.py. To exploit the vulnerability, one must register with a userna...
CVE-2019-14885
PUBLISHED: 2020-01-23
A flaw was found in the JBoss EAP Vault system in all versions before 7.2.6.GA. Confidential information of the system property's security attribute value is revealed in the JBoss EAP log file when executing a JBoss CLI 'reload' command. This flaw can lead to the exposure of confidential information...
CVE-2019-17570
PUBLISHED: 2020-01-23
An untrusted deserialization was found in the org.apache.xmlrpc.parser.XmlRpcResponseParser:addResult method of Apache XML-RPC (aka ws-xmlrpc) library. A malicious XML-RPC server could target a XML-RPC client causing it to execute arbitrary code. Apache XML-RPC is no longer maintained and this issue...
CVE-2020-6007
PUBLISHED: 2020-01-23
Philips Hue Bridge model 2.X prior to and including version 1935144020 contains a Heap-based Buffer Overflow when handling a long ZCL string during the commissioning phase, resulting in a remote code execution.
CVE-2012-4606
PUBLISHED: 2020-01-23
Citrix XenServer 4.1, 6.0, 5.6 SP2, 5.6 Feature Pack 1, 5.6 Common Criteria, 5.6, 5.5, 5.0, and 5.0 Update 3 contains a Local Privilege Escalation Vulnerability which could allow local users with access to a guest operating system to gain elevated privileges.