Saturday, September 21, 2024
HomePoliticsU.S. says it has disabled major Russian cyberespionage operation

U.S. says it has disabled major Russian cyberespionage operation

Published on

spot_img



Federal law enforcement officials said Tuesday that they have hacked and disabled a complex Russian cyberespionage operation that allegedly was used for about 20 years to steal sensitive government materials from the United States and its allies.

Justice Department and FBI officials described the Russian operation as one of the country’s most powerful cyberespionage tools. They said the agency has been secretly investigating the network for nearly as long it was in operation but executed a court-authorized search warrant only this week to remotely hamper the Russian malware.

Law enforcement personnel had to surreptitiously develop their own cyber-infrastructure to interact with and disrupt the malware, which the Russians were constantly updating and changing, the officials said.

The U.S. government, which coordinated its investigative activities with foreign governments, also had to time the execution of the search warrant to access the compromised computers simultaneously to keep the Russians from reacting and thwarting the operation.

The law enforcement officials said they believe their actions this week will make it difficult for Russia to continuing operating this spying network.

The Russian Embassy in Washington did not immediately respond to a request for comment.

“Through a high-tech operation that turned Russian malware against itself, U.S. law enforcement has neutralized one of Russia’s most sophisticated cyber-espionage tools, used for two decades to advance Russia’s authoritarian objectives,” Deputy Attorney General Lisa Monaco said in a news release.

FBI officials said the malware, known as “Snake,” was developed and operated by the Federal Security Service, the Russian government’s main security agency, which uses the acronym FSB.

See also  Trump wins American Samoa GOP caucus

The Russians allegedly used the malware to steal sensitive information from computer systems in at least 50 countries, including members of the NATO alliance, and to spy on journalists and other Russian “targets of interest,” the officials said. Russian officials allegedly would steal the materials and route them through U.S. computers that had been infected with malware to try to avoid detection.

The U.S. government launched “Operation Medusa” — named for the Greek mythological figure known for having venomous snakes on her head instead of hair — to covertly disable Snake, officials said. The FBI did this by creating a cyber-tool called “Perseus,” which essentially used coding to demand that the Snake malware overwrote itself. Perseus is the Greek hero known for killing Medusa.

“Today, Snake is the FSB’s premier long-term cyberespionage malware implant,” said an FBI affidavit in support of a search warrant that was unsealed this week in the Eastern District of New York. “Most importantly, the worldwide collection of compromised computers acts as a covert peer-to-peer network, which utilizes customized communication protocols designed to hamper monitoring and collection efforts by adversary signals intelligence services.”

The investigation included asking a New York judge for permission to remotely access computers in multiple jurisdictions and then remotely seize data stored in these computers to counteract the Russian malware.

U.S. officials have used this law allowing remote access, known as Rule 41, to take down other foreign cyberespionage operations.



Source link

Latest articles

Fernando Tatis Jr. not ready to look ahead, Dylan Cease’s blessings – San Diego Union-Tribune

As he watched from afar as the 2022 Padres pushed past the Mets...

Marqueece Harris-Dawson sworn in as LA City Council president

LOS ANGELES - Marqueece Harris-Dawson was sworn in as City Council president Friday,...

Wayfair’s Fall Sale Has 87% Off Home Decor, Furniture, and More

By now, you’ve probably heard that another Amazon Prime Day is coming,...

This Semi-private Carrier Is Adding a New Way to Get to Las Vegas

Semi-private air carrier JSX is launching a new route to Las Vegas,...

More like this

Fernando Tatis Jr. not ready to look ahead, Dylan Cease’s blessings – San Diego Union-Tribune

As he watched from afar as the 2022 Padres pushed past the Mets...

Marqueece Harris-Dawson sworn in as LA City Council president

LOS ANGELES - Marqueece Harris-Dawson was sworn in as City Council president Friday,...

Wayfair’s Fall Sale Has 87% Off Home Decor, Furniture, and More

By now, you’ve probably heard that another Amazon Prime Day is coming,...