Incidents

Smack on the bot for the Beeb

The BBC’s Click program has been getting quite a bit of publicity after it “acquired” a botnet. It used the botnet to send spam (to specially created addresses) and bring down a website (with the consent of the site’s owners). This was all done in the name of consumer education.

Normally, the BBC does a great job telling people about the potential dangers of computing. But this time they’ve gone about it the wrong way. The Computer Misuse Act clearly states that a person is guilty of an offence if “he causes a computer to perform any function with intent to secure access to any program or data held in any computer”.

I’m not a lawyer, and smart lawyers often manage to find loopholes in the law. But I do work for a security company, and it’s my view that the Click guys certainly broke the spirit, if not the letter, of the law.

Accessing other people’s computers is wrong. Accessing other people’s computers to create TV content, even with the best of intentions, is very wrong indeed.

Smack on the bot for the Beeb

Your email address will not be published. Required fields are marked *

 

Reports

Ferocious Kitten: 6 years of covert surveillance in Iran

Ferocious Kitten is an APT group that has been targeting Persian-speaking individuals in Iran. Some of the TTPs used by this threat actor are reminiscent of other groups, such as Domestic Kitten and Rampant Kitten. In this report we aim to provide more details on these findings.

Andariel evolves to target South Korea with ransomware

In April 2021, we observed a suspicious Word document with a Korean file name and decoy. It revealed a novel infection scheme and an unfamiliar payload. After a deep analysis, we came to a conclusion: the Andariel group was behind these attacks.

Operation TunnelSnake

A newly discovered rootkit that we dub ‘Moriya’ is used by an unknown actor to deploy passive backdoors on public facing servers, facilitating the creation of a covert C&C communication channel through which they can be silently controlled. The victims are located in Africa, South and South-East Asia.

Subscribe to our weekly e-mails

The hottest research right in your inbox