イランのハッカー3名が衛星会社から知財を盗んだ理由等により起訴されていますね。。。
こんにちは、丸山満彦です。
イランのハッカー3名が衛星会社から知財を盗んだ理由等により起訴されていますね。。。
● DOJ
・2020.09.17 State-Sponsored Iranian Hackers Indicted for Computer Intrusions at U.S. Satellite Companies - Multi-Year Campaign Sought to Steal Sensitive Commercial Information, Intellectual Property, and Personal Data
・[PDF] 起訴状
To facilitate their victimization of these targets, the defendants engaged in a coordinated campaign of social engineering to identify real U.S. citizens working in the satellite and aerospace fields whose identities the defendants could assume online. The defendants then impersonated those individuals and used their stolen identities to register email addresses and fraudulently purchase domains and hacking tools for use in the scheme. The defendants then created customized spear phishing emails that purported to be from the individuals whose identities the defendants had stolen, in an attempt to entice the recipients to click on malicious links embedded in the emails. Once a recipient clicked on a malicious link, malware would be downloaded to the individual’s computer, giving the defendants unauthorized access to the recipient’s computer and network. The defendants then used additional hacking tools to maintain unauthorized access, escalate their privileges, and steal data sought by the IRGC. Using these methods, the defendants successfully compromised multiple victim networks, resulting in the theft of sensitive commercial information, intellectual property, and personal data from victim companies, including a satellite-tracking company and a satellite voice and data communication company.
● FBI
・2020.09.18 Combating the Iranian Cyber Threat - Republic at the Center of Cyber Crime Charges in Three Cases
Criminal charges announced this week against multiple alleged hackers in Iran show the breadth of the cyber threat emanating from that country and the FBI and partner agency efforts to neutralize it and hold the individuals accountable.
...
On Tuesday, Behzad Mohammadzadeh, of Iran, and Marwan Abusrour, of the Palestinian territories, were indicted in Massachusetts on charges of damaging multiple websites as retaliation for U.S. military action in January that killed the head of the Islamic Revolutionary Guard Corps-Quds Force, a U.S.-designated foreign terrorist organization.
On Wednesday, Hooman Heidarian and Mehdi Farhadi, both of Iran, were charged in New Jersey in connection with a coordinated cyber intrusion campaign. Investigators allege that the pair, sometimes at the behest of the government of Iran, targeted computers in New Jersey and around the world.
In addition to stealing hundreds of terabytes of sensitive data, the defendants also vandalized websites, often under the pseudonym “Sejeal,” and posted messages that appeared to signal the demise of Iran’s internal opposition, foreign adversaries, and countries identified as rivals, including Israel and Saudi Arabia.
On Thursday, an indictment unsealed in Virginia charged Said Pourkarim Arabi, Mohammad Reza Espargham, and Mohammad Bayati, all living in Iran, with engaging in a coordinated campaign of identity theft and hacking on behalf of Iran’s Islamic Revolutionary Guard Corps, a designated foreign terrorist organization.
■ 参考
● Cyberscoop
・2020.09.18 US charges alleged Iranian hackers with scheme to steal aerospace, satellite data
● XaCap
・2020.09.18 Трех иранских хакеров обвинили во взломе компаний аэрокосмического и спутникового сектора by Мария Нефёдова
● Braking Defense
・2020.09.16 Cyber Attack Most Likely Space Threat: Maj. Gen. Whiting by THERESA HITCHENS
"We know that cyber attack is where we are most likely to face the enemy in space," said Space Force deputy commander Maj. Gen. Stephen Whiting.
Comments