Story image

Highly-targeted cyberattacks surround upcoming Winter Olympics

09 Jan 2018

Next month’s Winter Olympics have proved to be easy picking for cybercriminals.

McAfee released a report that revealed cybercriminals have targeted organisations that are involved in the fast approaching Winter Olympics held in South Korea.

The ‘hacking campaign’ has run from December 22 and, according to McAfee, has the signs of a ‘nation state adversary that speaks Korean’.

The investigation is ongoing so the attack has yet to be attributed, although the news comes at a delicate time given North Korea has agreed to hold high-level talks with South Korea in an effort to ease hostility between the two nations – it will be the first talks between the nations for two years.

McAfee states targets including ski suppliers and ice hockey teams received an email that claimed to be from South Korea’s national counter-terrorism council. The email contained a document with malicious intent that if opened would open a concealed back channel in their computers that hackers could exploit at a later date.

“Theoretically, if they get into the network hosting the Pyeongchang email network for the Olympics, they have any number of possibilities moving inside. It depends where the networks are connected — to specific teams, committees, planners at a high level,” says McAfee senior analyst, Ryan Sherstobitoff.

Sherstobitoff cautioned that this could only be the beginning as major events attract cybercriminals and hackers.

McAfee said the hackers used a more sophisticated method than the average “spear phishing” attack, installing malicious software without making the victim download a file, which would often be flagged by a security program.

These fileless malware attacks using Microsoft Powershell are becoming an increasingly popular tactic, with the number of attacks more than doubling in the third quarter of last year, McAfee said.

General manager for EMEA at Barracuda Networks, Wieland Alge says increasingly cybercriminals are targeting particular attacks rather than sending it to everyone.

"The malware infected emails targeted at organisations linked to the Winter Olympics fits into the general trend we are observing at the moment where cyber criminals are increasingly relying upon targeted attacks rather than mass attacks,” says Alge.

“Traditionally we have seen mass campaigns that promise something fairly generic – such as lottery winnings or free tickets to an event. However cyber attacks are becoming ever more targeted and sophisticated as spear phishing emails become an increasingly lucrative tool for cyber criminals.”

Salesforce continues to stumble after critical outage
“To all of our Salesforce customers, please be aware that we are experiencing a major issue with our service and apologise for the impact it is having on you."
D-Link hooks up with Alexa and Assistant with new smart camera
The new camera is designed for outdoor use within a wireless smart home network.
Slack users urged to update to prevent security vulnerability
Businesses that use popular messaging platform Slack are being urged to update their Slack for Windows to version 3.4.0 immediately.
Secureworks Magic Quadrant Leader for Security Services
This is the 11th time Secureworks has been positioned as a Leader in the Gartner Magic Quadrant for Managed Security Services, Worldwide.
Google puts Huawei on the Android naughty list
Google has apparently suspended Huawei’s licence to use the full Android platform, according to media reports.
Using data science to improve threat prevention
With a large amount of good quality data and strong algorithms, companies can develop highly effective protective measures.
General staff don’t get tech jargon - expert says time to ditch it
There's a serious gap between IT pros and general staff, and this expert says it's on the people in IT to bridge it.
ZombieLoad: Another batch of flaws affect Intel chips
“This flaw can be weaponised in highly targeted attacks that would normally require system-wide privileges or a complete subversion of the operating system."