Showing posts with label Cyber Security. Show all posts
Showing posts with label Cyber Security. Show all posts

Tuesday, February 11, 2025

Artificial Intelligence has all sorts of nefarious possibilities

New AI “agents” could hold people for ransom in 2025

A paradigm shift in technology is hurtling towards us, and it could change everything we know about cybersecurity. Uhh, again, that is.

When ChatGPT was unveiled to the public in late 2022, security experts looked on with cautious optimism, excited about the new technology but concerned about its use in cyberattacks. But two years on, much of what ChatGPT and other generative AI chat tools offer attackers is a way to improve what already works, not new ways to deliver attacks themselves.

And yet, if artificial intelligence achieves what is called an “agentic” model in 2025, novel and boundless attacks could be within reach, as AI tools take on the roles of “agents” that independently discover vulnerabilities, steal logins, and pry into accounts.

These agents could even hold people for ransom by matching stolen data online with publicly known email addresses or social media accounts, composing messages and holding entire conversations with victims who believe a human hacker out there has access to their Social Security Number, physical address, credit card info, and more.

And if the model works for individuals, there’s little reason it wouldn’t work for individual business owners.

Click here to download the Report from Malwarebytes

Tuesday, December 31, 2024

Chinese Hackers compromised Treasury

China Hacked Treasury Dept. in ‘Major’ Breach

Chinese state-sponsored hackers breached the U.S. Treasury Department’s computer security guardrails this month and stole documents in what Treasury called a “major incident,” according to a letter to lawmakers that Treasury officials provided to Reuters on Monday.

The hackers compromised third-party cybersecurity service provider BeyondTrust and were able to access unclassified documents, the letter said.

According to the letter, hackers “gained access to a key used by the vendor to secure a cloud-based service used to remotely provide technical support for Treasury Departmental Offices (DO) end users.

With access to the stolen key, the threat actor was able to override the service’s security, remotely access certain Treasury DO user workstations, and access certain unclassified documents maintained by those users.”

Read more about it...

Sunday, November 3, 2024

We are the number one target for Cyber attacks by our enemies

'We are clearly under attack': Threats to U.S. critical infrastructure from China on the rise

Critical infrastructure in the U.S. is being threatened by the Communist Chinese government and many Americans are both oblivious and underprepared. Check Points Software Technologies recently reported "a 75 percent increase in global cyber-attacks during the third quarter [of 2024], with a 15 percent rise from the previous quarter."

And in the U.S., Industrial Cyber points out alarmingly that "cyberattacks have risen by 56 percent year-over-year, with a weekly average of 1,300 attacks per organization, 10 percent higher than the previous quarter." The area with the most attacks was the education and research sector.

While this is important, a surge in cyber-attacks against critical infrastructure has garnered the attention of many, including Craig Huey, an AI expert, political commentor and author of "The Great Deception," which highlights various AI dangers. Huey spoke to WorldNetDaily about the threat to critical infrastructure, including the reported 30 percent increase in cyber attacks the last year.

The primary target, Huey affirms, is the United States of America. According to Huey, the nation's electric grid, oil pipelines and its water, transportation and banking systems, as well as its telecommunications network, are all at extreme risk.

"And right now, watching the messaging from the Cybersecurity and Infrastructure Security Agency (CISA) and the FBI," he argued, "we are clearly under attack".

Read more...

Read what Chris Wray said in September

Tuesday, September 12, 2023

Cyber Threats and Digital Security now at risk

China-Based Hackers Impersonated US Voters With AI-generated Propaganda During 2022 Elections: Microsoft

And President Biden sought to downplay friction with China while in Vietnam

Know thy enemy!

China-based hackers impersonated American voters online and used artificial intelligence (AI) to create and promote divisive online content during the 2022 midterm elections, according to a report by Microsoft.

The effort was part of a series of covert influence operations by the Chinese Communist Party (CCP) intended to mimic U.S. voters from across the political spectrum and create controversy along racial, economic, and ideological lines, according to the Sept. 7 report.

“Ahead of the 2022 U.S. midterms, Microsoft and industry partners observed CCP-affiliated social media accounts impersonating U.S. voters—new territory for CCP-affiliated [influence operations],” the report reads.

The Report

Beginning in May 2023, Storm-0558, a China-based threat actor, accessed Microsoft customer email accounts of approximately 25 organizations including U.S. and European government entities. Microsoft assesses this activity was likely conducted for espionage purposes and has successfully blocked this campaign.

Monday, July 17, 2023

Dominion Voting Systems has Issues

Officials Admit Dominion Has Issues After All

Ok, so for the fact-checkers, we will quote directly from the CNN report published on their website on June 14, 2023.

According to the CNN report, Georgia election officials are aware of “existing vulnerabilities in the state’s voting software.” Those “vulnerabilities” have been known for two years but according to officials they won’t be fixed until after the 2024 election.

From CNN:
Georgia election officials have been aware of existing vulnerabilities in the state’s voting software for more than two years but continue to insist the system is safe and won’t be updated until after 2024, according to a report that was unsealed this week as part of a controversial court case in Georgia.

The report’s findings focus on weaknesses in software for certain Dominion Voting machines. Those weaknesses were previously verified by federal cybersecurity officials, who urged election officials across the country to update their systems. Georgia has refused to do so.
Read the 96 page Report issued on 6-14-23

Friday, July 14, 2023

Communist China hackers targeting major telecommunications companies and network service providers

CCP Hackers Caught Targeting US Telecom Companies

U.S. security agencies have put out the alert that hackers backed by the Chinese government have actually been targeting “major telecommunications companies and network service providers” since 2020.

In a June 7 cybersecurity advisory, they advised those impacted to take instant therapeutic action.

They advised prospective victims to support their networks by using immediate patches, updating infrastructure, and disabling unnecessary ports and protocols.

America's Cyber Defense Agency

Monday, June 5, 2023

China and Cyberspace

As we spend billions on illegals, The New Green Deal and Ukraine, China is concentrating on taking control of space.

ANALYSIS – China has just announced that it plans to land its version of astronauts ‘taikonauts' on the moon by 2030. This would be a first for any country other than the United States, which last sent men to the moon on the Apollo 17 mission in 1972.

Along with China's other impressive space developments, this lunar goal is also pushing the U.S. and China closer to war in space.

China is increasingly posing a threat to the vital U.S. satellites the Pentagon relies on for almost everything.

In 2021 China launched a satellite with a robotic arm – Shijian-17, or SJ-17 – capable of grabbing other satellites and has developed a way to place explosives in their thruster nozzles.

Monday, May 29, 2023

Chinese Hack Attack

China Still Has Backdoor Access…

Not only did China hack “sensitive U.S. computer networks,” it seems they still have back door access. We’ve been targeted for months and one “top American cyber official” is “concerned” about the “scope and scale” of the intrusion.

Access to critical services

The current situation, National Security Agency Director of Cybersecurity Rob Joyce screams, is “unacceptable” because digital ninja’s “sought access to networks that might allow them to disrupt critical services in the future.”

The Chinese hack attack most recently revealed isn’t one of the ordinary snatch the data and go variety. This one was clearly backed by Beijing and “targeted key U.S. sectors like maritime and transportation networks.” That’s not good because we have a war brewing with them.

Read about it...

We have thousands of high paid tech savvy engineers in Silicon Valley. Why can't anyone write a program to stop this cyber hacking? This continues to happen and now with Biden's open door policy at our border, Chinese illegals are entering by the thousands. Only 1,970 illegal migrants from the People’s Republic of China were caught at the southern border by CBP throughout the entire 2022 fiscal year. How many got away? How many have entered our country this year? What are they up to? Biden and Democrats must take this invasion seriously.

Thursday, March 9, 2023

Senate passes RESTRICT ACT

Biden Admin Backs Bipartisan Bill That Allows U.S. to Battle Foreign Threats Including Popular Social Media App

On Tuesday afternoon, the administration of President Joe Biden announced its backing for a bipartisan bill proposed by a group of senators. The proposed legislation would enable the United States to prohibit TikTok and take measures against other foreign adversaries.

A group of 12 bipartisan senators, led by Sen. Mark R. Warner (D-VA), who serves as the Chairman of the Senate Select Committee on Intelligence, and Sen. John Thune (R-SD), who is the ranking member of the Commerce Committee's Subcommittee on Communications, Media and Broadband, have introduced the RESTRICT Act. This bill aims to limit the emergence of security threats that pose a risk to information and communications technology.

Under the proposed legislation, the Department of Commerce would be granted the authority to examine, stop, and lessen the potential hazards to the United States' economic and national security caused by information communications and technology (ICT) transactions.

The bill

Monday, January 16, 2023

META lawsuit against Israeli Cyber Intelligence Company

Supreme Court agrees to hear suit by Facebook parent company against cyber intelligence firm

In a major development, Breitbart reported that the Supreme Court agreed on Monday to hear a lawsuit involving Facebook parent company Meta.
 
The lawsuit pits Meta against the NSO Group, an Israeli cyber intelligence company that created a spyware program known as “Pegasus.” The Program is said to have targeted heads of state along with reporters and activists.

Meta contends that the Pegasus program allowed governments to spy on journalists, activists, and political figures who used its social media platform WhatsApp. “NSO’s spyware has enabled cyberattacks targeting human rights activists, journalists and government officials,” the company was quoted as saying in its brief.

Read about it...

Thursday, November 17, 2022

Google to pay Florida $26 million for Tracking

Attorney General Moody Secures $390 Million Action Against Google Over Location Tracking Practices

Attorney General Ashley Moody announced an historic multi-state action against Google over the tech giant’s location tracking practices.

The announcement follows an historic multi-state investigation by Attorney General Moody and 39 other state attorneys general into the company’s location tracking practices and cybersecurity disclosures.

As a result of the investigation, the business will pay the states $390 million—including $26 million to Florida. Google must also provide consumers more information and clearer options as it relates to tracking practices.

Read about it...

Friday, November 11, 2022

Chinese malicious cyber activities

CCP Hackers Caught Targeting US Telecom Companies

U.S. security agencies have put out the alert that hackers backed by the Chinese government have actually been targeting “major telecommunications companies and network service providers” since 2020.

In a June 7 cybersecurity advisory, they advised those impacted to take instant therapeutic action.

The advisory, coauthored by the National Security Agency (NSA), the Cybersecurity and Infrastructure Security Agency (CISA), and the Federal Bureau of Investigation (FBI), stated the hackers “continue to exploit publicly known vulnerabilities,” utilizing techniques to bypass defenses and keeping themselves unnoticed.

The agencies mentioned that the hackers presumably used open-source tools, such as RouterSploit and RouterScan, and understood software application defects in networking gadgets such as routers.

Read about it...

Monday, November 7, 2022

National Guard Cybersecurity Activated for November 8 Election

National Guard Cybersecurity Units Activated in 14 States Ahead of Midterm Elections

Cybersecurity units from the National Guard will be activated in 14 U.S. states to help counter any threats to election officials’ networks ahead of, during, and after the upcoming Nov. 8 midterm elections, according to reports.

The 14 include battleground states Arizona, Iowa, and Pennsylvania, as well as Colorado, Connecticut, Delaware, Hawaii, Illinois, Louisiana, North Carolina, New Mexico, New York, Washington, and West Virginia, reported Politico.

Trump had the right idea. According to its website, CISA was created in 2018 under the Trump administration to work with government and industry partners to defend against current and predicted threats to cyber and physical infrastructure, including election infrastructure.

Read more about it...

Sunday, August 1, 2021

Cyber Crime

DOJ: Russian Hackers Compromised Dozens of Federal Attorney's Offices

The Russian-based hackers behind last year’s SolarWinds cyberattack were also able to breach email accounts used in the offices of prominent federal prosecutors, according to the Justice Department.

The Associated Press reported Saturday that 80 percent of the Microsoft email accounts used by the four U.S. attorney’s offices in New York were targeted and compromised.

Read more...

What will Attorney General Merrick Garland do about it?

Friday, May 28, 2021

Cyber Hackers

HACKERS STRIKE AGAIN!

Insurance Company Forced to Pay HUGE Ransom After Holding Network Hostage

When they say "huge" it was ten times that of Colonial pipeline.

"Chicago-based CNA Financial, one of the top insurance companies in the United States, reportedly paid a $40 million USD ransom after getting hacked.

According to reports, hackers broke into the company’s network using Phoenix Locker, malware with links to Russia. Once they took over, they locked CNA out. After two weeks, CNA allegedly forked over the money to regain access. The company confirmed the attack but wouldn’t comment on whether or not they’d paid to end it."

Is President Biden going to address this at the summit with Vladimir Putin on June 16? Biden called Putin a "killer"...so much for detente.

Read about it...

Monday, May 17, 2021

So, who really paid the $5 million ransom to "Dark Side?"

The company paid the ransom in “untraceable cryptocurrency,” according to the outlet, and the Biden administration was aware that the company intended to pay the $5 million to hackers the White House suggested, Wednesday, could be Russian or affiliated with Russia. The group, which admitted they were responsible for locking up Colonial Pipeline’s servers on Monday, claims they are not affiliated with any government and that their motivation is primarily financial, not political.

Media outlets insisted, earlier this week, that Colonial Pipeline had no intention of paying the nearly $5 million that DarkSide demanded to release the clogged server. Fox Business reported Wednesday that “the pipeline operator refused to pay, enlisting help from the Department of Energy, as well as federal, state and local authorities instead.”

Sunday, May 16, 2021

Biden Goes Against FBI Policy on Cyber Hijackers

GAS HACKERS! Biden Would Rather Take The Cowards Way Out

Following the attack on the Colonial Pipeline via ransomware, An official with Biden’s White House who is the deputy adviser on national security for cyber and emerging technologies stated that private companies should just pay off the terrorist hackers ransomware demands.

Of course, this goes against the current FBI policy that these companies should not do so. This statement has ignited the cybersecurity experts to harshly criticize the White House.

FBI: How to Respond and Report

The FBI does not support paying a ransom in response to a ransomware attack. Paying a ransom doesn’t guarantee you or your organization will get any data back. It also encourages perpetrators to target more victims and offers an incentive for others to get involved in this type of illegal activity.

If you are a victim of ransomware:

Contact your local FBI field office to request assistance, or submit a tip online.
File a report with the FBI’s Internet Crime Complaint Center (IC3).

Read about it...

Tuesday, May 11, 2021

The Network Gang --The Darkside - Russian Hackers

Colonial Pipeline Cyber-Attacker Unmasked By The FBI


The operator of the country’s largest fuel pipeline, Colonial Pipeline, fell victim to a cybersecurity attack on Friday that involved ransomware, forcing it to temporarily shut down all pipeline operations and raising concern that the outage could lead to spot shortages of gas, diesel and jet fuel. CNBC's Brian Sullivan reports.

Tuesday, December 15, 2020

Security Breach of some U.S. government branches

HUGE Breach Discovered

One of the companies which uses the compromised software is Dominion Voting Systems. Identified as SolarWinds, its customers “include most of America’s Fortune 500 companies, the top 10 U.S. telecommunications providers, all five branches of the U.S. military, the State Department, the National Security Agency, and the Office of President of the United States.”

Read about it...

Saturday, March 21, 2020

FBI on the Trail and AG Barr is on the Case

Barr warns of ‘severe’ consequences for foreign governments who interfere in US coronavirus response

The attorney general’s warning came amid a cyberattack targeting the U.S. Department of Health and Human Services (HHS), as well as an alleged foreign disinformation campaign to stir panic in the United States, the AP reported. Barr did not say which government was involved, but the Trump administration has notably been involved in a war of words with China over the pandemic.

Read all about it...