Template:Doug144

From Security Weekly Wiki
Jump to navigationJump to search
  • The White House and Equifax Agree: Social Security Numbers Should Go
  1. Designed in the 1930s
  2. 745 million numbers possible
  3. Lots of excluded blocks
  4. Biometrics? Block Chains?

https://www.wsj.com/articles/russian-hackers-stole-nsa-data-on-u-s-cyber-defense-1507222108

  • Russian Hackers Stole NSA Data on U.S. Cyber Defense

http://www.zdnet.com/article/what-role-did-kaspersky-play-in-nsa-data-theft/

  • What is Kaspersky's role in NSA data theft? Here are three likely outcomes
  1. Will Kaspersky survive this?
  2. All Federal use of Kaspersky has been stopped.
  3. Evidence?
  4. Russian law allows the govt to compel companies to intercept communications
  5. K's servers are in Russia
  6. K detects Eternal Blue
  7. R's see EB and figure they got a spy
  8. Or...Boris and Natasha did it

https://www.theguardian.com/technology/2017/oct/06/kaspersky-lab-denies-involvement-russian-hack-nsa-contractor-moscow

  • Kaspersky Lab denies involvement in Russian hack of NSA contractor
  1. Kaspersky Lab denies any involvement
  2. Says the product may be compromised essentially but "so is everyone else"
  3. Boris and Natasha

http://resources.infosecinstitute.com/duqu-2-0-the-most-sophisticated-malware-ever-seen/

  • Duqu 2.0: The Most Sophisticated Malware Ever Seen

https://securelist.com/files/2015/06/The_Mystery_of_Duqu_2_0_a_sophisticated_cyberespionage_actor_returns.pdf

  • The Duqu 2.0 Technical Paper from Kaspersky.com
  1. K got spear phished back in the day

https://www.helpnetsecurity.com/2017/10/10/formbook-malware/

  • Defense contractors, manufacturers targeted with malware-as-a-service infostealer
  • Formbook -- DOC/XLS files
  1. Also pdfs
  2. Logs keystrokes
  3. Basically grabs things
  4. They have multiple plans for every price point 99$ for 3 Months and they except bitcoin, Perfect Money, and Diner's Club