Archive for the ‘NSA’ Category

NSA, FBI Reveal Hacking Methods Used by Russian Military Hackers – The Hacker News

An ongoing brute-force attack campaign targeting enterprise cloud environments has been spearheaded by the Russian military intelligence since mid-2019, according to a joint advisory published by intelligence agencies in the U.K. and U.S.

The National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), and the U.K.'s National Cyber Security Centre (NCSC) formally attributed the incursions to the Russian General Staff Main Intelligence Directorate (GRU) 85th Main Special Service Center (GTsSS).

The threat actor is also tracked under various monikers, including APT28 (FireEye Mandiant), Fancy Bear (CrowdStrike), Sofacy (Kaspersky), STRONTIUM (Microsoft), and Iron Twilight (Secureworks).

APT28 has a track record of leveraging password spray and brute-force login attempts to plunder valid credentials that enable future surveillance or intrusion operations. In November 2020, Microsoft disclosed credential harvesting activities staged by the adversary aimed at companies involved in researching vaccines and treatments for COVID-19.

What's different this time around is the actor's reliance on software containers to scale its brute-force attacks.

"The campaign uses a Kubernetes cluster in brute force access attempts against the enterprise and cloud environments of government and private sector targets worldwide," CISA said. "After obtaining credentials via brute force, the GTsSS uses a variety of known vulnerabilities for further network access via remote code execution and lateral movement."

Some of the other security flaws exploited by APT28 to pivot inside the breached organizations and gain access to internal email servers include -

The threat actor is also said to have utilized different evasion techniques in an attempt to disguise some components of their operations, including routing brute-force authentication attempts through Tor and commercial VPN services, such as CactusVPN, IPVanish, NordVPN, ProtonVPN, Surfshark, and WorldVPN.

The agencies said the attacks primarily focused on the U.S. and Europe, targeting government and military, defense contractors, energy companies, higher education, logistics companies, law firms, media companies, political consultants or political parties, and think tanks.

"Network managers should adopt and expand usage of multi-factor authentication to help counter the effectiveness of this capability," the advisory noted. "Additional mitigations to ensure strong access controls include time-out and lock-out features, the mandatory use of strong passwords, implementation of a Zero Trust security model that uses additional attributes when determining access, and analytics to detect anomalous accesses."

Read the original:
NSA, FBI Reveal Hacking Methods Used by Russian Military Hackers - The Hacker News

Netflix Pulls NSA-Themed Show in Vietnam Over Offensive Maps – Gizmodo

Scene from the Netflix show Pine Gap, showing one of the maps that the government of Vietnam took issue with.Screenshot: Netflix

Netflix has pulled a spy drama called Pine Gap from the video streaming platform in Vietnam after the government complained about maps that appear in at least two episodes. The maps are a misrepresentation of Vietnams sovereignty, according to officials in Hanoi.

The maps in Pine Gap include the so-called nine-dash line, which appears on maps promoted by the Chinese government. The maps show Chinas claim to water and islands in the South China Sea, something Vietnam doesnt recognize.

Its at least the third time Vietnams government has complained to Netflix about maps showing the nine-dash line, which appears in an unaltered screenshot from the program above in red, and annotated in yellow below.

Netflixs violations angered and hurt the feelings of the entire people of Vietnam, Vietnams Authority of Broadcasting and Electronic Information said on Thursday, according to a report from Reuters.

G/O Media may get a commission

Pine Gap is a fictional portrayal of the very real U.S. spy facility located in the middle of Australia. The real Pine Gap was created with an agreement between the U.S. and Australian governments in 1966 and has been used since the first Cold War to collect signals intelligence for the Five Eyes spy alliance. Its more or less the CIA and NSAs hub for hoovering up information from all of Asia.

The two episodes of Pine Gap in question, both the second and third in the series, briefly show maps that include the nine-dash line. Several countries in Southeast Asia, including Vietnam and the Philippines, dont recognize Chinas territorial claims in the South China Sea. China regularly spars with countries over even the smallest incursions into what the Chinese Communist Party sees as its territory.

As Reuters notes, authorities in Vietnam banned the DreamWorks animated movie Abominable in 2019 over maps showing the nine-dash line. Vietnam has also taken issue with nine-dash line maps in a Chinese show called Put Your Head on My Shoulder, which has been pulled from Netflix, as well as the U.S. series Madam Secretary, which is still available in the country.

The nine-dash line that appears in Put Your Head on My Shoulder, flashes on screen for roughly one second and is hard to make out, as you can see in the screenshot Gizmodo captured below from the ninth episode of the series.

Following a written legal demand from the Vietnamese regulator, we have removed the licensed series, Pine Gap, from Netflix in Vietnam, to comply with local law. It remains available on our service in the rest of the world, a Netflix spokesperson told Gimzodo early Friday via email.

View original post here:
Netflix Pulls NSA-Themed Show in Vietnam Over Offensive Maps - Gizmodo

Episode 343: Tucker Takes on the NSA – National Review

Fox personality Tucker Carlson speaks at a Business Insider conference in New York, N.Y., November 30, 2017. (Lucas Jackson/REUTERS)

Today onThe Editors, Rich, Charlie, and Michael discuss Tuckers accusations against the NSA, todays Supreme Court decisions, New Yorks disastrous mayoral election mess-up, and much more.

Editors picks: Rich: Dan McLaughlins piece Is Ranked-Choice Voting a Voting Rights Act Violation? Charlie: Dan McLaughlins pieces onall the recent SCOTUS decisions MBD: Richs piece The Absurdly Misleading Attacks on Anti-CRT Rules

Light items: Rich: Ryan Reeves history lectures on YouTube Charlie: Rewatching old Westerns MBD: A close encounter with a bear

Sponsors:MoinkThe Bahnsen Group

The Editorsis hosted by Rich Lowry and produced by Sarah Schutte.

July 2, 2021

Rich is joined by acclaimed historians Richard Brookhiser and Allen Guelzo for a discussion of the American Founding, George Washington, and much more.

July 1, 2021

Rich, Charlie, and Michael discuss Tuckers accusations against the NSA, todays Supreme Court decisions, New Yorks disastrous mayoral election mess-up, and much more.

June 29, 2021

Rich, Charlie, Alexandra, and Jim discuss the bipartisan infrastructure bill, the horrific Surfside building collapse, and Garry Willss sophomoric NYT op-ed.

June 25, 2021

Rich, Charlie, Alexandra, and Michael discuss the dying infrastructure bill, Bidens shifting crime stance, and Pences recent comments about the 2020 election.

June 22, 2021

Kyrsten Sinemas op-ed, the ridiculous infrastructure talks, and the Sheldon Whitehouse beach club scandal.

June 21, 2021

On this special edition ofThe Editors, Rich is joined by Daniel Grant, co-founder and CEO of 2ndVote Advisers.

June 17, 2021

SCOTUS rulings, Bidens meeting with Putin, and the growing critical race theory uproar.

June 15, 2021

Bidens performance at the G-7 summit, the woke scolds coming for Tom Hanks, Lin-Manuel Miranda, and Ellie Kemper, and more.

June 11, 2021

Today on The Editors, Rich, Charlie, and Michael discuss whether the Republican Party is anti-democracy and wonder why on earth Jeffrey Toobin is back on CNN.

June 8, 2021

The Editors, Rich, Charlie, and Jim discuss the new January 6 report, Kamala Harriss speech in Guatemala, and the ProPublica IRS document leak.

Read more:
Episode 343: Tucker Takes on the NSA - National Review

NSA New England Chapter – Home

We are living in unprecedented times. Now, more than ever, the world needs to hear your message. NSE New England can help you do that.

We are not just speakers. We are thought leaders, authors, coaches, trainers, consultants, virtual instructors, entrepreneurs, and facilitators. We are your tribe. We understand. We are united by one singular mission: to help each other succeed.

Whether you are established or just exploring, we invite you to take advantage of our supportive community and rich programming. We cover it allinsights from million-dollar speakers, sales and marketing fundamentals, platform skills, writing, websites and other tools, the nuts and bolts of running a business.

Dont go it alone. Join us, as a member or guest. Have a look at our event schedule and membership options for more details.

Yes, these are topsy-turvy times, but there is no better time to sharpen your skills, fine-tune your business, and do your part to make the world a better place.

Roger Grannis

NSA New EnglandPresident, 2020-2021

More here:
NSA New England Chapter - Home

Massachusetts NSA – Drama Free Dating in Massachusetts …

Seems like a dream come true for those who want no commitments whatsoever. Loveawake.com does not only provide contacts that are game for flings, but it is also free. This means that you do not have to provide your credit card number. So, the user is totally uncommitted, not even having to commit important financial information to our site. You may even think of Loveawake.com as a sort of dating social network in the most accurate sense. It is like Facebook for those whose aim is mainly to find someone from United States to hook up with. Loveawake also has features that allow Massachusetts users to get to know some of the other members before the hookup itself.

The match up that Loveawake offers is no-nonsense. Users browse for possible hookups by looking at profiles that resemble those of mainstream social networks'. You get to read about the person according to what the person chooses to share. So, some may actually look for something a little deeper than a few dates here and there. Still, the match-ups are not really based on anything scientific. But hey, even in real life it is like that. You first see someone and find that person attractive. Then, once you have gone on a few dates, you get to know each other better, if that is what you are looking for. For most of Loveawake's Massachusetts users though, the personality part may just be important to find someone they will have fun with. You can even pick someone who is the opposite of your personality, if that is your choice.

Here is the original post:
Massachusetts NSA - Drama Free Dating in Massachusetts ...