Investigation detects cyber espionage network
April 1, 2009(PhysOrg.com) -- The Information Warfare Monitor - a joint effort of the SecDev Group (Ottawa) and the Citizen Lab (University of Toronto) - detected a cyber espionage network involving over 1,295 compromised computers in 103 countries.
As explained during a U of T news conference, Close to 30 per cent of the compromised computers are considered high value targets. They include the ministries of foreign affairs of Iran, Bangladesh, Latvia, Indonesia, Philippines, Brunei, Barbados and Bhutan; the embassies of India, South Korea, Indonesia, Romania, Cyprus, Malta, Thailand, Taiwan, Portugal, Germany and Pakistan; the ASEAN Secretariat, SAARC, and the Asian Development Bank, news organizations, and an unclassified computer located at NATO headquarters.
The report, entitled Tracking GhostNet: Investigating a Cyber Espionage Network, is a
product of a two-phase 10-month investigation, consisting of fieldwork, technical scouting, and laboratory analysis. The research began by focusing on allegations of Chinese cyber espionage against the Tibetan community in exile, and eventually led to a much wider network of compromised machines.
Investigators conducted field research in India, Europe and North America, including in the private office of the Dalai Lama, the Tibetan Government-in-Exile, and several Tibetan NGOs.
According to IWM investigator Greg Walton, "We uncovered real-time evidence of malware that had penetrated Tibetan computer systems, extracting sensitive documents from the private office of the Dalai Lama."
During the second phase of the investigation, the data led to the discovery of insecure, web-based interfaces to four control servers. The interfaces allow attacker(s) to send instructions to and receive data from compromised computers.
"What we found is not so much unprecedented in scope and sophistication," said Nart Villeneuve, a senior IWM analyst ,"but the relatively small size of the network and concentration of high value targets is significant. It does not fit the profile for a typical cyber crime network."
According to IWM principal investigators Ron Deibert of Citizen Lab, a professor at U of T's Munk Centre for International Studies, and Rafal Rohozinski (SecDev Group), "This report serves as a wake-up call. At the very least, the large percentage of high-value targets compromised by this network demonstrates the relative ease with which a technically unsophisticated approach can quickly be harnessed to create a very effective spynet...These are major disruptive capabilities that the professional information security community, as well as policymakers, need to come to terms with rapidly."
-
Researchers: Cyber spies break into govt computers
Mar 29, 2009 |
not rated yet |
0
-
YouTube confirms website blocked in China
Mar 24, 2009 |
not rated yet |
0
-
Google, Yahoo!, Microsoft urged not to censor search
Mar 06, 2009 |
not rated yet |
0
-
FBI survey finds cybercrime rising
Jan 24, 2006 |
not rated yet |
0
-
Fraudsters beware: Iowa State engineer is developing cyber technology to find you
Jan 07, 2008 |
not rated yet |
0
-
Engineers build first sub-10-nm carbon nanotube transistor
Feb 01, 2012 |
4.9 / 5 (33) |
30
-
Something old, something new: Evolution and the structural divergence of duplicate genes
Jan 31, 2012 |
4.6 / 5 (7) |
1
-
The hidden nanoworld of ice crystals: Revealing the dynamic behavior of quasi-liquid layers
Jan 30, 2012 |
5 / 5 (4) |
1
-
Stock market network reveals investor clustering
Jan 27, 2012 |
3.9 / 5 (23) |
8
-
Of microchemistry and molecules: Electronic microfluidic device synthesizes biocompatible probes
Jan 26, 2012 |
5 / 5 (2) |
0
-
Flushing RAM in Mathematica
2 hours ago
-
Synergistic relations between computer science and technology.
Feb 06, 2012
-
how do iphone gloves work?
Feb 05, 2012
-
iPhone battery over time
Jan 30, 2012
-
Best alternate Tablet to an iPad for writing math or physics equations?
Jan 26, 2012
-
Sending SMS to a website
Jan 20, 2012
- More from Physics Forums - Computing & Technology
More news stories
Japan's Fukushima reactor may be reheating: operator
Temperature readings at one of the crippled Fukushima nuclear reactors have risen above Japan's stringent new safety standard but there was no immediate danger, its operator said Sunday.
Technology / Energy & Green Tech
54 minutes ago |
1 / 5 (1) |
0
AT&T customers surprised by 'unlimited data' limit
(AP) -- Mike Trang likes to use his iPhone 4 as a GPS device, helping him get around in his job. Now and then, his younger cousins get ahold of it, and play some YouTube videos and games.
9 minutes ago |
not rated yet |
0
Google might launch Drive for cloud storage soon
(PhysOrg.com) -- Google's next big move, according to the Wall Street Journal, is a cloud storage service called Drive. Hardly first to the plate, Google is simply catching up to introducing its cloud reposi ...
Iran blocks email, restricts net access: reports
Iran has further restricted access to the Internet and blocked popular email services for the past few days, in a move a top lawmaker said could "cost the regime dearly," media reports said on Sunday.
14 hours ago |
5 / 5 (3) |
5
Walney offshore wind farm is world's biggest (for now)
(PhysOrg.com) -- The Walney wind farm on the Irish Sea--characterized by high tides, waves and windy weather--officially opened this week. The farm is treated in the press as a very big deal as the Walney ...
Integrated pest management recommendations for the southern pine beetle
The southern pine beetle, Dendroctonus frontalis Zimmermann, is a chronic insect pest within pine forests in the southeastern United States. Under favorable environmental and host conditions, it is an agg ...
Botox developer rues missing out on billions
Botox developer Alan Scott says he rues the day he handed over rights to the best-selling wrinkle-smoothing drug to a US company for just $4.5 million, saying he might have become a billionaire.
Australian women reject 'I love u' texts
Australian women may have embraced the digital era, but they prefer a face-to-face declaration of affection to an "I love u" text and find men addicted to their mobile phones a major turnoff.
Many lung cancer patients get radiation therapy that may not prolong their lives
A new study has found that many older lung cancer patients get treatments that may not help them live longer. Published early online in CANCER, a peer-reviewed journal of the American Cancer Society, the findings suggest that p ...
Young adults allowed to stay on parents' health insurance have improved access to care
Researchers from Mount Sinai School of Medicine have found that laws permitting children to stay on their parents' health insurance through age 26 result in improved access to health care compared to states without those ...
Cancer rate 4 times higher in children with juvenile arthritis
New research reports that incident malignancy among children with juvenile idiopathic arthritis (JIA) is four times higher than in those without the disease. Findings now available in Arthritis & Rheumatism, a journal publis ...