Monday, January 30, 2023
News 21 AV
  • Home
  • Tech News
    Government launches AI-focused green innovation programme

    Government launches AI-focused green innovation programme

    CDEI publishes roadmap for UK AI assurance ecosystem

    Why robots will make work more human

    Genome lab puts Vast Data’s rapid I/O to work on patient data

    Genome lab puts Vast Data’s rapid I/O to work on patient data

    The rise of ethical hackers in 2021

    Bug Bounty Calculator helps organisations fine-tune their payouts

    Google commits to cloud and AI

    EDF UK deploys Riverbed’s Alluvio Aternity to tackle IT issues

    How the sector is preparing for the prospect of planned winter power cuts

    How the sector is preparing for the prospect of planned winter power cuts

    Building the UK’s future cyber ecosystem

    CyberPeace Institute helps NGOs improve their security resilience

    Virtually all vulnerable open source downloads are avoidable

    Pioneer behind IT systems design dies

    Post Office supported 1999 law change that eased prosecutions using computer evidence

    Post Office scandal inquiry’s expert IT witness ‘troubled’ by his findings

  • Virtual reality
    StretchSense built an actually comfortable hand-motion capture glove

    StretchSense built an actually comfortable hand-motion capture glove

    VR gaming startup ForeVR Games raises $10M to grow its library of Wii Sports-like titles

    VR gaming startup ForeVR Games raises $10M to grow its library of Wii Sports-like titles

    Meta will release a new consumer-grade VR headset next year

    Meta will release a new consumer-grade VR headset next year

    Meta files to dismiss FTC complaint over acquisition of VR fitness company Within

    Meta files to dismiss FTC complaint over acquisition of VR fitness company Within

    Microsoft Teams avatars

    Here’s what you missed at Meta Connect 2022

    read more about Meta Connect 2022 on TechCrunch

    Meta partners with NBCUniversal to bring you into ‘The Office’

    Meta Quest 2 gets exclusive VR series ‘Scream Park’ from entertainment studio BlackBox TV

    Meta Quest 2 gets exclusive VR series ‘Scream Park’ from entertainment studio BlackBox TV

    Google’s GV backs SideQuest, an unofficial Meta Quest app store

    Google’s GV backs SideQuest, an unofficial Meta Quest app store

    VRAI wants to tackle the energy crisis by bringing VR simulation training to offshore wind sector

    VRAI wants to tackle the energy crisis by bringing VR simulation training to offshore wind sector

  • Lifestyle
    Cancer

    6 Most Common Cancers and Their Symptoms

    business clothing

    How can astrology help in business

    Business astrology

    Learn About Your Business Indications by Your Zodiac Sign

    NFT (Non-Fungible Token) Futuristic Background

    How NFTs Are Breaking Ground in the World of Watchmaking

    woman reading

    How to Stay Productive All Day: Tips for Internal Motivation

    in laws family

    5 signs that show your in-laws are too interfering

    Booty Shorts

    7 Ways to Look Sexy at Your Next Rave Party

    Happy life

    Feeling stuck? How to clear your mind and plan ahead

    CBD Beauty

    7 Health Benefits of CBD

  • Beauty
    Water Flosser

    This Bestselling Waterpik Is On Sale Right Now

    Proud To Be Pink Bobbi Brown Gloss Duo

    Proud To Be Pink Bobbi Brown Gloss Duo

    ColourPop x Snitchery Collection Swatches (Eyes & Cheeks)

    ColourPop x Snitchery Collection Swatches (Eyes & Cheeks)

    Image may contain Clothing Apparel Human Person Lingerie and Underwear

    Period Care Ads Are Woefully Lacking in Disability Representation

    mileys new years eve party

    Who Is Maxx Morando? – All About Miley Cyrus’s New Boyfriend

    Dior Cosmic Eyes (359) Eyeshadow Palette

    Dior Holiday 2022 Collection Swatches

    preview for How Emma Stone Became an Oscar-Winning Actress

    Who Is Dave McCary? Meet Emma Stone’s Husband and Baby Girl’s Dad

    Coloured Raine Sunset Chic Eyeshadow Palette Review & Swatches

    Coloured Raine Sunset Chic Eyeshadow Palette Review & Swatches

    Mila Kunis Criticizes Celebs Who Gave Will Smith a Standing Ovation at the Oscars After The Slap

    Mila Kunis Criticizes Celebs Who Gave Will Smith a Standing Ovation at the Oscars After The Slap

  • Health & Fitness
    Shop Around to Save on Drug Prices

    Shop Around to Save on Drug Prices

    Ukrainian Powerlifter Daria Rusanenko (84KG) Squats a World Record 275.5 Kilograms (607.4 Pounds)

    Ukrainian Powerlifter Daria Rusanenko (84KG) Squats a World Record 275.5 Kilograms (607.4 Pounds)

    Logo for WebMD

    Gene and Cell Therapies Used in Treatment

    Watch Ivan Makarov Lift a Milestone 190-Kilogram (418.9-Pound) Overhead Press

    Watch Ivan Makarov Lift a Milestone 190-Kilogram (418.9-Pound) Overhead Press

    Treating MS Pain With Virtual Reality

    Treating MS Pain With Virtual Reality

    Žydrūnas Savickas Wins the 2022 Masters World's Strongest Man Title

    Žydrūnas Savickas Wins the 2022 Masters World’s Strongest Man Title

    MS Questionnaire Helps Measure Symptoms and Spot Early Disease Changes

    MS Questionnaire Helps Measure Symptoms and Spot Early Disease Changes

    Shaun Clarida Will Stick with the 212 Division at the 2022 Mr. Olympia

    Shaun Clarida Will Stick with the 212 Division at the 2022 Mr. Olympia

    How to Focus on Your Mental Health With Relapsing-Remitting MS

    How to Focus on Your Mental Health With Relapsing-Remitting MS

  • Equipment
  • Login
No Result
View All Result
News 21 AV
Home Tech News

Alert over spate of Iran-linked BitLocker attacks

News 21 AV by News 21 AV
November 19, 2021
in Tech News
0
Alert over spate of Iran-linked BitLocker attacks
0
SHARES
0
VIEWS
FacebookTwitter


Australian, American and British cyber agencies have warned of a campaign of “ongoing malicious cyber activity” by an Iranian advanced persistent threat (APT) group exploiting well-known vulnerabilities in Fortinet and Microsoft products to conduct ransomware attacks.

Related posts

Ban predictive policing systems in EU AI Act, says civil society

Insights on Nordic artificial intelligence strategies

January 14, 2023
Unionised contract workers who train Google’s AI win pay rise

Unionised contract workers who train Google’s AI win pay rise

January 14, 2023

The government-sponsored group seems to attack somewhat indiscriminately and appears to be highly focused on exploiting a core set of known bugs, rather than targeting specific sectors, although it has been seen targeting victims in critical such as transport and healthcare.

The group’s activities seem to date back to March 2021, when the US’s FBI and the Cybersecurity and Infrastructure Security Agency (CISA) observed the group scanning for devices vulnerable to CVE-2018-13379, and enumerating devices for two other vulnerabilities, CVE-2020-12812 and CVE-2019-5591, all three of which are in the Fortinet FortiOS operating system.

Note that all three of the Fortinet bugs were the subject of a similar warning at the time, and the exploitation of CVE-2018-37779, a path traversal vulnerability, has also been linked to the Cring ransomware.

Two months later, the group was seen exploiting a vulnerable Fortigate appliance to target a local government authority in the US, and in June performed a similar attack to access environmental control networks belonging to a US-based children’s hospital.

According to the advisory, as of October, the group has turned its attention to a Microsoft Exchange ProxyShell vulnerability, CVE-2021-34473, which was the subject of a botched disclosure process in August.

After gaining access to its victims’ networks, its follow-on activities lead up include data exfiltration, encryption, and extortion using BitLocker, a legitimate full volume encryption feature that can be turned to malicious purposes such as ransomware.

Defenders should be alert to the use of various malicious and legitimate tools by the group, including the likes of Mimikatz for credential theft, WinPEAS for privilege escalation, WinRAR for archiving data, and FileZilla for file transfer.

The group has also been seen making modifications to the Task Scheduler that may display as unrecognised scheduled tasks or actions, and establishing new user accounts on domain controllers, servers, workstations and active directories, many of which may appear to the casual viewer to look similar to the victim’s legitimate accounts.

The full advisory, including specific indicators of compromise (IoCs) and mitigation advice, can be read here.

According to Microsoft threat researchers, there are several Iranian APT groups currently deploying ransomware, conducting a series of attacks in waves launched every six to eight weeks.

In research published alongside CyberWarCon, Microsoft detailed the activity of a group it tracks as Phosphorus, which is known to have been scanning widely for devices vulnerable to CVE-2018-13379 at about the same time as the FBI/CISA observed activity. It is also keen on using BitLocker for encryption and extortion activities.

The Phosphorus APT group is also distinctive for its social engineering tactics, conducting back and forth conversations with its intended targets that appear at first to be a benign approach from a recruiter, inviting the victims to test a tainted Google Meeting link, but becoming increasingly pestering and aggressive should the link not be clicked.



Source link

Tags: AlertattacksBitLockerIranlinkedspate
Previous Post

Turn the Heat Up with TRX® Indoor Workouts

Next Post

The Anvil Test | Popular Woodworking Magazine

Next Post
The Anvil Test | Popular Woodworking Magazine

The Anvil Test | Popular Woodworking Magazine

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

RECOMMENDED NEWS

Chanel Vital Beige (3) No. 1 de Chanel Lip & Cheek Balm

Chanel Vital Beige No. 1 Lip & Cheek Balm Review & Swatches

1 year ago
Lidar-powered lawn care solves big problem for utilities

Lidar-powered lawn care solves big problem for utilities

1 year ago
Luxury Home With Infinity Pool in Mallorca, Spain [Video]

Luxury Home With Infinity Pool in Mallorca, Spain [Video]

4 months ago
51 Living Room Chandeliers for Effective Illumination with Unforgettable Style

51 Living Room Chandeliers for Effective Illumination with Unforgettable Style

10 months ago

BROWSE BY CATEGORIES

  • Beauty
  • Equipment
  • Health & Fitness
  • Lifestyle
  • Tech News
  • Virtual reality

BROWSE BY TOPICS

Beauty Equipment Health & Fitness Lifestyle Tech News Virtual reality

POPULAR NEWS

  • The 20 Best Leg Exercises for Size and Strength

    The 20 Best Leg Exercises for Size and Strength

    0 shares
    Share 0 Tweet 0
  • Who Is Dalton Gomez – Meet Ariana Grande’s Husband

    0 shares
    Share 0 Tweet 0
  • 14 Best Sanitary Napkins To Provide Comfort During Periods

    0 shares
    Share 0 Tweet 0
  • 10 Best CD Players in 2021

    0 shares
    Share 0 Tweet 0
  • Why Power Dressing is Important at Workplace For Women

    0 shares
    Share 0 Tweet 0
News 21 AV

We bring you the best of latest news articles with an emphasis. We offers an original take on the latest in Lifestyle, fashion, high tech and health & fitness informations and guides.

Follow us on social media:

Recent News

  • Should You Train the Deadlift on Back Day or Leg Day? What to Know for Results and Recovery
  • Common Woodworking Mistakes | Popular Woodworking
  • How To Choose The Right Pool Chemicals For Your Pool Type

Category

  • Beauty
  • Equipment
  • Health & Fitness
  • Lifestyle
  • Tech News
  • Virtual reality

Recent News

Cancer

6 Most Common Cancers and Their Symptoms

November 22, 2022
Government launches AI-focused green innovation programme

Government launches AI-focused green innovation programme

November 22, 2022
  • Blog
  • Privacy Policy
  • Disclaimer
  • Terms and Conditions
  • Contact us

© 2021 News.21av - Popular News & magazine powred by Get solutions.

No Result
View All Result
  • Home
  • Tech News
  • Virtual reality
  • Lifestyle
  • Beauty
  • Health & Fitness
  • Equipment

© 2021 News.21av - Popular News & magazine powred by Get solutions.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In