Weather
The Pine Tree, News for Calaveras County and Beyond Weather
Amador Angels Camp Arnold Bear Valley Copperopolis Murphys San Andreas Valley Springs Moke Hill/West Point Tuolumne
News
Business Directory
Weather & Roads
Sports
Real Estate
Search
Weekly & Grocery Ads
Entertainment
Life & Style
Government
Law Enforcement
Business
Wine News
Health & Fitness
Home & Garden
Food & Dining
Religion & Faith
Frogtown USA
Calendar
Polls
Columns
Free Classifieds
Letters to the Editor
Obituaries
About Us


Log In
Username

Password

Remember Me



Posted by: thepinetree on 07/02/2021 09:48 AM Updated by: thepinetree on 07/02/2021 09:48 AM
Expires: 01/01/2026 12:00 AM
:

NSA, Partners Release Cybersecurity Advisory on Brute Force Global Cyber Campaign

Fort Meade, MD...The National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI) and the UK’s National Cyber Security Centre (NCSC) released a Cybersecurity Advisory today exposing malicious cyber activities by Russian military intelligence against U.S. and global organizations, starting from mid-2019 and likely ongoing.  This advisory is being released as part of NSA's routine and continuing cybersecurity mission to warn network defenders of nation state threats.





“Russian GRU Conducting Global Brute Force Campaign to Compromise Enterprise and Cloud Environments” details how the Russian General Staff Main Intelligence Directorate (GRU) 85th Main Special Service Center (GTsSS) has targeted hundreds of U.S. and foreign organizations using brute force access to penetrate government and private sector victim networks. The advisory reveals the tactics, techniques, and procedures (TTPs) GTsSS actors used in their campaign to exploit targeted networks, access credentials, move laterally, and collect and exfiltrate data. It also arms system administrators with the mitigations needed to counter this threat.

Malicious cyber actors use brute force techniques to discover valid credentials often through extensive login attempts, sometimes with previously leaked usernames and passwords or by guessing with variations of the most common passwords. While the brute force technique is not new, the GTsSS uniquely leveraged software containers to easily scale its brute force attempts.

Once valid credentials were discovered, the GTsSS combined them with various publicly known vulnerabilities to gain further access into victim networks. This, along with various techniques also detailed in the advisory, allowed the actors to evade defenses and collect and exfiltrate various information in the networks, including mailboxes.

The advisory warns system administrators that exploitation is almost certainly ongoing. Targets have been global, but primarily focused on the United States and Europe. Targets include government and military, defense contractors, energy companies, higher education, logistics companies, law firms, media companies, political consultants or political parties, and think tanks.

NSA encourages Department of Defense (DoD), National Security Systems (NSS), and Defense Industrial Base (DIB) system administrators to immediately review the indicators of compromise (IOCs) included in the advisory and to apply the recommended mitigations. The most effective mitigation is the use of multi-factor authentication, which is not guessable during brute force access attempts. Read the advisory for a complete list of IOCs and mitigations.

Visit NSA.gov/What-We-Do/Cybersecurity/Advisories-Technical-Guidance/ to read more.


Comments - Make a comment
The comments are owned by the poster. We are not responsible for its content. We value free speech but remember this is a public forum and we hope that people would use common sense and decency. If you see an offensive comment please email us at news@thepinetree.net
Military Resources
Posted on: 2021-07-02 10:24:23   By: Anonymous
 
Perhaps it's time to stop buying M1s and Air Craft carriers by the dozen. I'd feel a lot safer with more military budget going into cyber and less into equipment to help us fight the Nazis on the fields of Belgium.

[Reply ]

    Re: Military Resources
    Posted on: 2021-07-02 15:49:28   By: Anonymous
     
    How about we start with stopping the NSA/FBI from spying and treating American citizens the way that they are doing NOW!

    [Reply ]


What's Related
These might interest you as well
Photo Albums

Local News

Calendar

phpws Business Directory

Web Pages


Mark Twain Medical Center
Meadowmont Pharmacy
Angels & San Andreas Memorial Chapels
Bear Valley Real Estate
Gerard Insurance
Bank of Stockton
Fox Security
Bistro Espresso
Chatom Winery
Middleton's Furniture
Bear Valley Mountain Resort
Cave, Mine & Zip Lines
High Country Spa & Stove
Ebbetts Pass Scenic Byway
Sierra Logging Museum Calaveras Mentoriing
Jenny's Kitchen

Copyright © The Pine Tree 2005-2023