San Francisco, April 17: Cyber security representatives from the US and Britain have warned of Russian state-sponsored cyber-attacks that are targeting network infrastructure devices such as routers and firewalls, to compromise government and private sectors globally.

According to a US Computer Emergency Response Team (US-CERT), the Technical Alert (TA) provided information on the worldwide cyber exploitation of network infrastructure devices (routers, switches, firewalls, Network-based Intrusion Detection Systems) by Russian state-sponsored cyber actors.

The joint TA is the result of analytic efforts between the US Department of Homeland Security (DHS), the Federal Bureau of Investigation (FBI), and the UK's National Cyber Security Centre, according to information on the official website of the DHS.

"Victims were identified through a coordinated series of actions between US and international partners. The report builds on previous DHS reporting and advisories from the UK, Australia and the European Union," the website said.

"The FBI has high confidence that Russian state-sponsored cyber actors are using compromised routers to conduct man-in-the-middle attacks to support espionage, extract intellectual property, maintain persistent access to victim networks, and potentially lay a foundation for future offensive operations," the website added.

Since 2015, the US government has been receiving information from multiple sources -- including private and public sector cyber security research organisations and allies -- that cyber actors were exploiting large numbers of enterprise-class and residential routers and switches worldwide.

The US government assessed that cyber actors supported by the Russian government carried out this worldwide campaign.

These operations enable espionage and intellectual property that supports the Russian Federation's national security and economic goals, the website said.

Russian cyber actors leverage a number of legacy or weak protocols and service ports associated with network administration activities.

Cyber actors use these weaknesses to identify vulnerable devices, extract device configurations, harvest login credentials, modify device firmware, and copy or redirect victim traffic through Russian cyber-actor-controlled infrastructure.

Organisations can use publicly available cyber security guidance and best practices from DHS, allied governments, vendors and the private-sector cyber security community on mitigation strategies for the exploitation vectors to safeguard their networks.

 

Let the Truth be known. If you read VB and like VB, please be a VB Supporter and Help us deliver the Truth to one and all.



Mumbai, Jul 25 (PTI): Police have opposed the bail plea of the Bangladeshi national arrested for allegedly stabbing Bollywood actor Saif Ali Khan with a knife and injuring him at his home here in January this year, telling a Mumbai court there was "strong evidence" against the accused.

Citing a Forensic Science Laboratory report, police reiterated before the sessions court their earlier claim knife fragments that got lodged near the actor's spine during the attack as well as a part found at the crime spot have matched with the weapon recovered from the accused, Shariful Islam.

These three pieces were part of the same weapon (knife) used to attack the filmstar, the police said in a written response to the accused's plea submitted in the court on Thursday (July 24).

Khan was repeatedly stabbed with a knife by an intruder inside his 12th floor apartment in upscale Bandra on January 16 during a robbery attempt.

The 54-year-old actor underwent surgery at Lilavati Hospital to remove a piece of knife that got lodged near his spine during the attack. He was discharged from the private hospital after five days.

Shariful Islam, a Bangladeshi national, was arrested two days later for allegedly stabbing Khan.

The police, in their response, highlighted that the accused is a Bangladeshi citizen residing illegally in India.

If granted bail, there was a possibility that he may flee India and not appear before the court during the trial. The crime committed by the accused is of a "very serious nature, and strong evidence" is available against him, they argued.

In his bail plea, filed through advocate Vipul Dushing, the accused asserted he was innocent and had no prior criminal record.

Investigation into the case has practically concluded with only the filing of a chargesheet pending, the accused contended while seeking bail.

The alleged attacker has been booked under Bharatiya Nyaya Sanhita (BNS) sections related to house trespass, robbery and dacoity with attempt to cause death or grievous injury.