[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Sign-in]  [Mail]  [Setup]  [Help] 

Status: Not Logged In; Sign In

Chabria: ICE arrested a California union leader. Does Trump understand what that means?Anita Chabria

White House Staffer Responsible for ‘Fanning Flames’ Between Trump and Musk ID’d

Texas Yanks Major Perk From Illegal Aliens - After Pioneering It 24 Years Ago

Dozens detained during Los Angeles ICE raids

Russian army suffers massive losses as Kremlin feigns interest in peace talks — ISW

Russia’s Defense Collapse Exposed by Ukraine Strike

I heard libs might block some streets. 🤣

Jimmy Dore: What’s Being Said On Israeli TV Will BLOW YOUR MIND!

Tucker Carlson: Douglas Macgregor- Elites will be overthrown

🎵Breakin' rocks in the hot sun!🎵

Musk & Andreessen Predict A Robot Revolution

Comedian sentenced to 8 years in prison for jokes — judge allegedly cites Wikipedia during conviction

BBC report finds Gaza Humanitarian Foundation hesitant to answer questions

DHS nabbed 1,500 illegal aliens in MA—

The Day After: Trump 'Not Interested' In Talking As Musk Continues To Make Case Against BBB

Biden Judge Issues Absurd Ruling Against Trump and Gives the Boulder Terrorist a Win

Alan Dershowitz Pushing for Trump to Pardon Ghislaine Maxwell

Signs Of The Tremendous Economic Suffering That Is Quickly Spreading All Around Us

Joe Biden Used Autopen to Sign All Pardons During His Final Weeks In Office

BREAKING NEWS: Kilmar Abrego Garcia Coming Back To U.S. For Criminal Prosecution, Report Says

he BEST GEN X & Millennials Memes | Ep 79 - Nostalgia 60s 70s 80s #akornzstash

Paul Joseph Watson They Did Something Horrific

Romantic walk under Eiffel Tower in conquered Paris

srael's Attorney General orders draft for 50,000 Haredim amid Knesset turmoil

Elon Musk If America goes broke, nothing else matters

US disabilities from BLS broke out to a new high in May adding 739k.

"Discrimination in the name of 'diversity' is not only fundamental unjust, but it also violates federal law"

Target Replaces Pride Displays With Stars and Stripes, Left Melts Down [WATCH]

Look at what they are giving Covid Patients in other Countries Whole packs of holistic medicine Vitamins and Ivermectin

SHOCKING Gaza Aid Thefts Involve Netanyahu Himself!


World News
See other World News Articles

Title: Chinese Hackers Compromised Organizations In 70 Nations, Warn US Federal Agencies
Source: [None]
URL Source: https://www.zerohedge.com/political ... tions-warn-us-federal-agencies
Published: Feb 25, 2025
Author: Tyler Durden
Post Date: 2025-02-25 06:30:06 by Horse
Keywords: None
Views: 27

Authored by Naveen Athrappully via The Epoch Times (emphasis ours),

A ransomware group called “Ghost” is exploiting the network vulnerabilities of various organizations to gain access to their systems, according to a joint advisory issued by multiple U.S. federal agencies.

Beginning early 2021, Ghost actors began attacking victims whose internet-facing services ran outdated versions of software and firmware,” the Cybersecurity and Infrastructure Security Agency (CISA) said in the Feb. 19 joint advisory. “Ghost actors, located in China, conduct these widespread attacks for financial gain.”

The attacks have targeted schools and universities, government networks, critical infrastructure, technology and manufacturing companies, health care, and several small and mid-sized businesses.

“This indiscriminate targeting of networks containing vulnerabilities has led to the compromise of organizations across more than 70 countries, including organizations in China,” CISA, the FBI, and the Multi-State Information Sharing and Analysis Center said in the advisory.

Ghost actors are also associated with other names such as Cring, Crypt3r, HsHarada, Hello, Wickrme, Phantom, Rapture, and Strike.

The criminals use publicly available code to exploit “common vulnerabilities and exposures” of their targets to secure access to servers. They leverage vulnerabilities in servers running Adobe ColdFusion, Microsoft Exchange, and Microsoft SharePoint.

Threat actors use tools to “collect passwords and/or password hashes to aid them with unauthorized logins and privilege escalation or to pivot to other victim devices,” the warning read. Attackers typically only spend a few days on their target’s networks.

The advisory recommended organizations patch known network vulnerabilities by applying “timely security updates” to firmware, software, and operating systems.

Organizations must train users to recognize phishing attempts, it said. Entities should identify, investigate, and issue alerts regarding any “abnormal network activity.”

“Maintain regular system backups that are known-good and stored offline or are segmented from source systems,” the advisory added.

“Ghost ransomware victims whose backups were unaffected by the ransomware attack were often able to restore operations without needing to contact Ghost actors or pay a ransom.”

Pre-Positioning by China The advisory was issued as part of an ongoing effort to counter ransomware threats.

CISA has previously warned about Chinese cyber threats facing the United States. Chinese state-sponsored cyber actors are looking to pre-position themselves on IT networks to carry out “disruptive or destructive cyberattacks” against critical American infrastructure in case Beijing engages in a conflict with Washington, the agency says.

Volt Typhoon, a Beijing-sponsored cyber actor, has compromised the IT environments of several critical infrastructure organizations in sectors such as energy, transportation, communications, and water systems.

In November, CISA and the FBI detailed a “broad and significant cyber espionage” campaign conducted by Chinese hackers that compromised the networks of U.S. telecommunication providers.

Hackers stole customer call records and private communications from “a limited number of individuals who are primarily involved in government or political activity.”

Rep. Mark Green (R-Tenn.), chairman of the House Committee on Homeland Security, said “the Chinese Communist Party’s exploitation of vulnerabilities in major internet service providers is just the newest alarm to sound as Beijing, Tehran, and Moscow work to gain strategic advantages through cyber espionage, manipulation, and destruction.”


Poster Comment:

French Government Proves JD Vance Right After Silencing Conservative Broadcaster

Much of the progressive establishment believes in democracy only so far as they can exploit the idea as a moral shield for their authoritarian activities...

https://www.zerohedge.com/geopolitical/french-government-proves-jd-vance-right- after-silencing-conservative-broadcaster

Post Comment   Private Reply   Ignore Thread  



[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Sign-in]  [Mail]  [Setup]  [Help]