HomeLatest ThreadsGreatest ThreadsForums & GroupsMy SubscriptionsMy Posts
DU Home » Latest Threads » Forums & Groups » Main » Latest Breaking News (Forum) » FBI, others crush REvil u...

Fri Oct 22, 2021, 04:45 PM

FBI, others crush REvil using ransomware gang's favorite tactic against it

Source: Ars Technica



Well, apparently, whoever relaunched REvil wasn’t the brightest bulb. Last night, Reuters reported that several countries working together took down the ransomware gang using one of the criminal organization’s favorite tactics—compromised backups.

Though the FBI isn’t commenting on the matter, private-sector cybersecurity experts and a former US official confirmed the operation, Reuters reports. “The FBI, in conjunction with Cyber Command, the Secret Service, and like-minded countries, have truly engaged in significant disruptive actions against these groups,” Tom Kellermann, VMware’s head of cybersecurity strategy and an adviser to the US Secret Service on cybercrime investigations, told Reuters. “REvil was top of the list.”



The newfound success against the slippery gang stems in part from the new legal freedom to pursue such criminal operations. US Deputy Attorney General Lisa Monaco recently determined that ransomware attacks on critical infrastructure are a national security threat on par with terrorism. That allowed the Justice Department to bring in assistance from the Pentagon and US intelligence agencies.

“Before, you couldn’t hack into these forums, and the military didn’t want to have anything to do with it,” Kellermann said. “Since then, the gloves have come off.”



Read more: https://arstechnica.com/tech-policy/2021/10/fbi-others-crush-revil-using-ransomware-gangs-favorite-tactic-against-it/?comments=1&start=40



So Biden has unleashed the hounds as it were. I'm not sure how I feel about offensive cyberoperations being carried out by the military / NSA against Russian civilians, but maybe this will have an effect.

17 replies, 4531 views

Reply to this thread

Back to top Alert abuse

Always highlight: 10 newest replies | Replies posted after I mark a forum
Replies to this discussion thread
Arrow 17 replies Author Time Post
Reply FBI, others crush REvil using ransomware gang's favorite tactic against it (Original post)
Sgent Oct 2021 OP
3Hotdogs Oct 2021 #1
Marthe48 Oct 2021 #4
BumRushDaShow Oct 2021 #8
ancianita Oct 2021 #2
RussBLib Oct 2021 #3
Sgent Oct 2021 #5
Marthe48 Oct 2021 #6
SheltieLover Oct 2021 #12
Historic NY Oct 2021 #7
NoNobigwick Oct 2021 #9
ShazzieB Oct 2021 #11
SheltieLover Oct 2021 #13
Eugene Oct 2021 #14
Pepsidog Oct 2021 #10
denbot Oct 2021 #15
Roisin Ni Fiachra Oct 2021 #16
BadGimp Oct 2021 #17

Response to Sgent (Original post)

Fri Oct 22, 2021, 05:06 PM

1. Yeah, Biden released the hounds. But

until he releases the Kraken, we know he ain't serious about the problem.

Reply to this post

Back to top Alert abuse Link here Permalink


Response to 3Hotdogs (Reply #1)

Fri Oct 22, 2021, 05:45 PM

4. Or release The Biden :)

There was a meme when Mr. Obama was President.

Reply to this post

Back to top Alert abuse Link here Permalink


Response to 3Hotdogs (Reply #1)

Fri Oct 22, 2021, 06:06 PM

8. Well

the Flyers beat them 6-1 this past Monday so they might not be that big of a thing...



They were no match for Gritty!





(and the Prez would agree )

Reply to this post

Back to top Alert abuse Link here Permalink


Response to Sgent (Original post)

Fri Oct 22, 2021, 05:07 PM

2. I trust US Deputy AG Monaco's judgment that these are on par with terrorist attacks.

These operations sound defensive, not offensive. They only look offensive when we win.

Reply to this post

Back to top Alert abuse Link here Permalink


Response to Sgent (Original post)

Fri Oct 22, 2021, 05:10 PM

3. isn't this the group that hacked Sinclair?

Last edited Fri Oct 22, 2021, 05:51 PM - Edit history (1)

or is that the "Evil Corp" that hacked Sinclair?

is it the same group?

Reply to this post

Back to top Alert abuse Link here Permalink


Response to RussBLib (Reply #3)

Fri Oct 22, 2021, 05:47 PM

5. No idea

but possibly.

This one attacked the oil pipeline and infiltrated a computer security firm which gave them access to over 1500 organizations.

Reply to this post

Back to top Alert abuse Link here Permalink


Response to Sgent (Original post)

Fri Oct 22, 2021, 05:49 PM

6. Our local hospital was hacked in August

I am glad that we are finally acting to defend the entities at risk.

Reply to this post

Back to top Alert abuse Link here Permalink


Response to Marthe48 (Reply #6)

Fri Oct 22, 2021, 07:25 PM

12. +1,000!

Reply to this post

Back to top Alert abuse Link here Permalink


Response to Sgent (Original post)

Fri Oct 22, 2021, 06:05 PM

7. He told Putin he was going to stop the cyber attacks one way or another

Reply to this post

Back to top Alert abuse Link here Permalink


Response to Sgent (Original post)

Fri Oct 22, 2021, 06:16 PM

9. You assume civilians.

 

If it is Russian, it is Putin.

Reply to this post

Back to top Alert abuse Link here Permalink


Response to NoNobigwick (Reply #9)

Fri Oct 22, 2021, 07:19 PM

11. Putin's not directly involved, though.

The keyword being "directly."

The Russian government’s relationship with criminal hackers is different than that of other adversarial powers, like China or North Korea.

~snip~

China’s control of its hackers is similar to the kind of tight restrictions it places on society, business and its propaganda efforts.

But the Russian government has a different approach. Moscow allows oligarchs and criminal groups to follow their own plans, so long as they do not challenge the Kremlin and are generally working toward President Vladimir V. Putin’s goals, according to American government officials.


https://www.nytimes.com/2021/09/09/us/politics/russia-ransomware-hackers.html

Reply to this post

Back to top Alert abuse Link here Permalink


Response to ShazzieB (Reply #11)

Fri Oct 22, 2021, 07:26 PM

13. This!👆

Reply to this post

Back to top Alert abuse Link here Permalink


Response to ShazzieB (Reply #11)

Fri Oct 22, 2021, 08:03 PM

14. But when Russia asks them to do a favor, they will grant it.

Reply to this post

Back to top Alert abuse Link here Permalink


Response to Sgent (Original post)

Fri Oct 22, 2021, 07:10 PM

10. Before 2022 or 2024 election I fear a foreign cyber attack that seriously disrupts our country

that a tough talking fascist with a brain will be elected in a landslide. It’s like the oil pipeline earlier this year caused panic and chaos. Something like that happens again and takes out the internet or electrical grid would be all the reason a tough talking right wing fascist needs to get elected. The right exploits imaginary made-up crisis what happens when there is a real crisis that causes massive disruptions happens. We aren’t ready for that and the pandemic has exposed many of our weaknesses.

Reply to this post

Back to top Alert abuse Link here Permalink


Response to Sgent (Original post)

Sat Oct 23, 2021, 12:19 AM

15. The fire needs..

More fire. Throw every possible attack at them. At some point one of these rouge units can bring down a national economy if left to thrive.

Reply to this post

Back to top Alert abuse Link here Permalink


Response to Sgent (Original post)

Sat Oct 23, 2021, 09:44 AM

16. This would not have happened if TFG got a second term.

Joe Biden and crew: "Don't Mess With The US"

Reply to this post

Back to top Alert abuse Link here Permalink


Response to Sgent (Original post)

Sun Oct 24, 2021, 08:47 PM

17. A few thoughts of mine...

I've been following Ransomware for quite a while, and have learned a great deal about the subject since. The threat has always been there but it has now scaled to become a major global economic risk factor.

The Biden administration's actions stand in stark contrast to the absolute inaction of the TGS. Especially when you take into consideration how much of the Ransomware attacks have links to Russian aligned countries/players.

After 9/11, we saw the effect of bringing the entire capability of our US military and intelligence resources to bear on a serious global problem. The problem now as we are about to learn, is we are creating something much worse than a double edge sword. I worry that turning our Military into an offensive cyber force will create a monster that will likely be used in the not too distant future by corrupted players against US.

Reply to this post

Back to top Alert abuse Link here Permalink

Reply to this thread