Sunday, February 5, 2023
News 21 AV
  • Home
  • Tech News
    Ban predictive policing systems in EU AI Act, says civil society

    Insights on Nordic artificial intelligence strategies

    Unionised contract workers who train Google’s AI win pay rise

    Unionised contract workers who train Google’s AI win pay rise

    Government given until autumn 2023 to create technology roadmap to support net-zero strategy

    Government given until autumn 2023 to create technology roadmap to support net-zero strategy

    Ellison-founded sailing league SailGP plumps for Oracle NetSuite to expand

    Ellison-founded sailing league SailGP plumps for Oracle NetSuite to expand

    Cabinet Office looks to expand public data sharing for digital ID

    Cabinet Office looks to expand public data sharing for digital ID

    A pandemic retail trend that’s here to stay?

    LockBit cartel suspected of Royal Mail cyber attack

    Umbrella firm Parasol confirms ‘malicious activity’ as root cause of ongoing systems outage

    Government accused of leaving umbrella company regulation in limbo by shelving enforcement body

    UK government completes trials of age estimation technology

    UK government completes trials of age estimation technology

    Cyber insurance: The good, the bad and the ugly

    Companies warned to step up cyber security to become ‘insurable’

  • Virtual reality
    Proptech in Review: Investors predict slower growth in 2023

    Proptech in Review: Investors predict slower growth in 2023

    Emperia

    Emperia is helping brands like Bloomingdales build shopping experiences in VR

    Gemba, a corporate VR training platform used by Coca-Cola and Pfizer, raises $18M

    Gemba, a corporate VR training platform used by Coca-Cola and Pfizer, raises $18M

    Microsoft is sunsetting social VR pioneer AltspaceVR

    Microsoft is sunsetting social VR pioneer AltspaceVR

    It's like the Power Glove, but for VR

    It’s like the Power Glove, but for VR

    Roblox may arrive on Meta Quest later this year

    Roblox may arrive on Meta Quest later this year

    With Kokomo VR meeting software, Canon takes a step away from its hardware roots

    With Kokomo VR meeting software, Canon takes a step away from its hardware roots

    Camera maker Canon leans into software at CES

    Camera maker Canon leans into software at CES

    Honda says VR is changing how it designs cars. You might not notice.

    Honda says VR is changing how it designs cars. You might not notice.

  • Lifestyle
    Best Grandparents Quotes

    5 Strategies to Easily Protect Your Family Estate in Old Age

    Hidden Figures

    10 Best Movies About Women’s Power You Need to See

    healthy teeth

    6 Reasons You Need To Visit A Teeth Whitening Specialist

    More Sleep Quotes & Sayings

    How To Stay Healthy All Year Round Living In A Metropolis

    Lovinouse 12FT x 30 Inch Above Ground Swimming Pool

    How To Choose The Right Pool Chemicals For Your Pool Type

    Preparing Your Home for a New Dog

    Big Dog, Small Trouble: How To Handle Large Dogs The Easy Way

    couple swing kiss

    Don’t Be The Girl He Strings Along. How To Know If He’s Really Into You or Just Stringing You Along

    5 Reasons Why You Should Take A Break From Social Media

    SMM: What It Is, How It Works, Pros and Cons

    v

    5 Ways To Stay Positive in a Toxic Workplace

  • Beauty
    Water Flosser

    This Bestselling Waterpik Is On Sale Right Now

    Proud To Be Pink Bobbi Brown Gloss Duo

    Proud To Be Pink Bobbi Brown Gloss Duo

    ColourPop x Snitchery Collection Swatches (Eyes & Cheeks)

    ColourPop x Snitchery Collection Swatches (Eyes & Cheeks)

    Image may contain Clothing Apparel Human Person Lingerie and Underwear

    Period Care Ads Are Woefully Lacking in Disability Representation

    mileys new years eve party

    Who Is Maxx Morando? – All About Miley Cyrus’s New Boyfriend

    Dior Cosmic Eyes (359) Eyeshadow Palette

    Dior Holiday 2022 Collection Swatches

    preview for How Emma Stone Became an Oscar-Winning Actress

    Who Is Dave McCary? Meet Emma Stone’s Husband and Baby Girl’s Dad

    Coloured Raine Sunset Chic Eyeshadow Palette Review & Swatches

    Coloured Raine Sunset Chic Eyeshadow Palette Review & Swatches

    Mila Kunis Criticizes Celebs Who Gave Will Smith a Standing Ovation at the Oscars After The Slap

    Mila Kunis Criticizes Celebs Who Gave Will Smith a Standing Ovation at the Oscars After The Slap

  • Health & Fitness
    Logo for WebMD

    COVID Emergency Orders Ending: What’s Next?

    Strongman Tyler Scott Obringer Axle Presses a Massive 192.8 Kilograms (425 Pounds)

    Strongman Tyler Scott Obringer Axle Presses a Massive 192.8 Kilograms (425 Pounds)

    Marriage Could Be a 'Buffer' Against Dementia

    Marriage Could Be a ‘Buffer’ Against Dementia

    Bodybuilding Fixture Johnnie Jackson Teases Masters Comeback at Age 52

    Bodybuilding Fixture Johnnie Jackson Teases Masters Comeback at Age 52

    radiance by webmd

    Black Hairdressers May Be at High Risk From Toxic Chemicals

    Powerlifter John Haack Deadlifts an Astonishing 415 Kilograms (915 Pounds) for a PR and Unofficial World Record

    Powerlifter John Haack Deadlifts an Astonishing 415 Kilograms (915 Pounds) for a PR and Unofficial World Record

    Troubling Signs TB Is Gaining Resistance Against Combo Antibiotics

    Troubling Signs TB Is Gaining Resistance Against Combo Antibiotics

    U.S. Parents Face Big Disparities in Access to Autism Care Services

    U.S. Parents Face Big Disparities in Access to Autism Care Services

    2023 Britain's Strongest Man Results — Adam Bishop Takes The Crown

    2023 Britain’s Strongest Man Results — Adam Bishop Takes The Crown

  • Equipment
  • Login
No Result
View All Result
News 21 AV
Home Tech News

US intelligence agencies issue advisory on BlackMatter gang

News 21 AV by News 21 AV
October 21, 2021
in Tech News
0
US intelligence agencies issue advisory on BlackMatter gang
0
SHARES
1
VIEWS
FacebookTwitter


The BlackMatter ransomware gang has targeted US-based critical infrastructure entities, including two food and agriculture sector organisations, according to a joint cyber security advisory issued by US intelligence agencies.

Related posts

Ban predictive policing systems in EU AI Act, says civil society

Insights on Nordic artificial intelligence strategies

January 14, 2023
Unionised contract workers who train Google’s AI win pay rise

Unionised contract workers who train Google’s AI win pay rise

January 14, 2023

The advisory, published on 18 October 2021 by the Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI) and the National Security Agency (NSA), provides an overview of the threat posed by BlackMatter and technical details of its attacks.

“First seen in July 2021, cyber actors leveraged BlackMatter with embedded, previously compromised credentials that enabled them to access the network and remotely encrypt hosts and shared drives,” said an NSA press release.

“When the actors found backup data stores and appliances on the network, not stored off-site, they wiped or reformatted the data. BlackMatter is a ransomware-as-a-service (RaaS) tool, which means the developers are able to profit from cyber criminal affiliates (ie BlackMatter actors) who deploy it.”

The advisory itself said: “BlackMatter is a possible rebrand of DarkSide, a RaaS which was active from September 2020 through May 2021. BlackMatter actors have attacked numerous US-based organisations and have demanded ransom payments ranging from $80,000 to $15,000,000 in bitcoin and monero.”

It added that the BlackMatter ransomware variant uses “embedded admin or user credentials that were previously compromised and NtQuerySystemInformation and EnumServicesStatusExW to enumerate running processes and services, respectively.”

It also noted that BlackMatter uses a separate encryption binary for Linux-based machines and routinely encrypts ESXi virtual machines: “Rather than encrypting backup systems, BlackMatter actors wipe or reformat backup data stores and appliances.”

Although the advisory lends credence to the view that BlackMatter is a rebrand of the now-defunct DarkSide ransomware – credited for the attack on Colonial Pipeline – the group itself has confirmed that, despite taking inspiration from the DarkSide operation and having worked with some of its affiliates in the past, it is its own distinct project.

Although US intelligence agencies did not confirm which two critical infrastructure organisations had been attacked, BlackMatter targeted US-based grain co-op New Cooperative in September 2021.

It claimed to have stolen financial and human resources data, research and development information, and the source code for New Cooperative’s proprietary SoilMap software – and demanded a $5.9m ransom.

According to Rob Joyce, director of cyber security at the NSA, the threat of ransomware has gone beyond the specific impacts to a victim company, and has risen to a national security issue. “NSA’s technical skills and threat intelligence will continue to support our partners across government and industry to degrade adversary footholds into networks where they launch ransomware,” he said.

“Employing the mitigations in the joint advisory with CISA and the FBI will protect networks and mitigate the risk against BlackMatter and other ransomware attacks.”

Earlier this month, US senator and former Democrat presidential candidate Elizabeth Warren, alongside North Carolina congresswomen Deborah Ross, introduced the bicameral Ransom Disclosure Act.

If enacted, the bill would require organisations that decide to pay a ransom – not private individuals – to disclose information about ransom payments within, and no later than, 48 hours after payment is made. This would include how much they paid, what currency was used, and any known information about their attackers.

Bryan Vorndran, assistant director of the FBI’s Cyber Division, said too many ransomware incidents go unreported, and urged the organisations affected to contact their local FBI field office.

“By reporting a cyber incident, targeted entities are enhancing our ability to respond and investigate with the goal of disrupting cyber criminal operations,” he said. “We will continue to leverage our unique authorities and capabilities to protect the American people from this threat. However, we cannot accomplish this alone.

“We remain committed to providing the public and our private sector partners with information that will bolster their ability to decrease vulnerabilities and increase awareness of potential exploits.”

The advisory also made a number of mitigation best practice recommendations for organisations to follow, such as: implementing and enforcing backup procedures; using strong, unique passwords; deploying multifactor authentication; and implementing network segmentation and traversal monitoring.

It also recommended limiting access to resources over the network by restricting privileges to only necessary service or user accounts, and using a host-based firewall to only allow connections to administrative shares via SMB from a limited set of administrator machines.

For critical infrastructure providers specifically, additional mitigation should come in the form of: disabling the storage of clear text passwords in LSASS memory; limiting New Technology Local Area Network Manager (NTLM) and WDigest Authentication; implementing credential guards for Windows 10 and Server 2016; and minimising the AD attack surface, it said.



Source link

Tags: advisoryagenciesBlackMattergangintelligenceissue
Previous Post

Introducing our 2 New TRX® Jump Ropes

Next Post

8 Vastly Different Types Of Mushrooms In The World

Next Post
8 Vastly Different Types Of Mushrooms In The World

8 Vastly Different Types Of Mushrooms In The World

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

RECOMMENDED NEWS

Collaborating to make the internet safer for all

Collaborating to make the internet safer for all

10 months ago
Vitiligo Is More Than a Cosmetic Condition

Vitiligo Is More Than a Cosmetic Condition

3 months ago
Getting a measure on the circular economy

Getting a measure on the circular economy

8 months ago
Logo for WebMD

Tiny, Menacing Microclots May Explain Long COVID’s Symptoms

2 months ago

BROWSE BY CATEGORIES

  • Beauty
  • Equipment
  • Health & Fitness
  • Lifestyle
  • Tech News
  • Virtual reality

BROWSE BY TOPICS

Beauty Equipment Health & Fitness Lifestyle Tech News Virtual reality

POPULAR NEWS

  • The 20 Best Leg Exercises for Size and Strength

    The 20 Best Leg Exercises for Size and Strength

    0 shares
    Share 0 Tweet 0
  • Who Is Dalton Gomez – Meet Ariana Grande’s Husband

    0 shares
    Share 0 Tweet 0
  • 14 Best Sanitary Napkins To Provide Comfort During Periods

    0 shares
    Share 0 Tweet 0
  • 10 Best CD Players in 2021

    0 shares
    Share 0 Tweet 0
  • Why Power Dressing is Important at Workplace For Women

    0 shares
    Share 0 Tweet 0
News 21 AV

We bring you the best of latest news articles with an emphasis. We offers an original take on the latest in Lifestyle, fashion, high tech and health & fitness informations and guides.

Follow us on social media:

Recent News

  • Ten Spanish apartment renovations characterised by eclectic tiles
  • Dennis James, Miloš Šarčev Believe Mamdouh “Big Ramy” Elssbiay Can Win 2023 Arnold Classic
  • Experiment for Best Results | Popular Woodworking

Category

  • Beauty
  • Equipment
  • Health & Fitness
  • Lifestyle
  • Tech News
  • Virtual reality

Recent News

Interior Design With Terrific Textures & Soft Neutral Tones

Interior Design With Terrific Textures & Soft Neutral Tones

February 2, 2023
Logo for WebMD

COVID Emergency Orders Ending: What’s Next?

February 2, 2023
  • Blog
  • Privacy Policy
  • Disclaimer
  • Terms and Conditions
  • Contact us

© 2021 News.21av - Popular News & magazine powred by Get solutions.

No Result
View All Result
  • Home
  • Tech News
  • Virtual reality
  • Lifestyle
  • Beauty
  • Health & Fitness
  • Equipment

© 2021 News.21av - Popular News & magazine powred by Get solutions.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In