Russia's Secret Intelligence Agency (FSB) Hacked: 'Largest Data Breach In Its History'

FRANC THE GREAT

JF-Expert Member
May 27, 2016
5,416
7,828
Russian FSB Hacked: 'Largest Data Breach In Its History'

1563756828937.png


Hackers have successfully targeted FSB - Russia's Federal Security Service, reports say.

The perpetrators managed to steal 7.5 terabytes of data from a major contractor, exposing secret FSB projects to de-anonymize Tor browsing, scrape social media, and help the state split its internet off from the rest of the world. The data was passed to mainstream media outlets for publishing, Forbes wrote.

A week ago, on July 13, hackers under the name 0v1ru$ reportedly breached SyTech, a major FSB contractor. With the data stolen, 0v1ru$ left a smiling Yoba Face on SyTech's homepage alongside pictures purporting to showcase the breach.

0v1ru$ then passed the data itself to the larger hacking group Digital Revolution, which shared the files with various media outlets and the headlines with Twitter taunting FSB that the agency should maybe rename one of its breached activities "Project Collander." Digital Revolution has targeted FSB before. It is unknown how tightly the two hacking groups are linked.

1563755811327.png


BBC Russia broke the news that 0v1ru$ had breached SyTech's servers and shared details of contentious cyber projects, projects that included social media scraping (including Facebook and LinkedIn), targeted collection and the "de-anonymization of users of the Tor browser."

The BBC described the breach as possibly "the largest data leak in the history of Russian intelligence services." As well as defacing SyTech's homepage with the Yoba Face, 0v1ru$ also detailed the project names exposed: "Arion", "Relation", "Hryvnia," alongside the names of the SyTech project managers.

The BBC report claims that no actual state secrets were exposed. The projects themselves appear to be a mix of social media scraping (Nautilus), targeted collection against internet users seeking to anonymize their activities (Nautilus-S), data collection targeting Russian enterprises (Mentor), and projects that seem to relate to Russia's ongoing initiative to build an option to separate the internal internet from the world wide web (Hope and Tax-3).

The BBC claims that SyTech's projects were mostly contracted with Military Unit 71330, part of FSB's 16th Directorate which handles signals intelligence, the same group accused of emailing spyware to Ukranian intelligence officers in 2015.

There is nothing newsworthy in the projects exposed here, everything was known or expected. The fact of the breach itself, its scale and apparent ease is of more note. Contractors remain the weak link in the chain for intelligence agencies worldwide to emphasize the point, just last week, a former NSA contractor was jailed in the U.S. for stealing secrets over two decades. And the fallout from Edward Snowden continues to this day.

Digital Revolution passed the information to journalists without anything being edited, removed or changed they said. Little is known about 0v1ru$ and the group has not come forward with any comment. Neither, unsurprisingly, has FSB.


Sources: UNIAN | Asia Times | Getty Images
 
Kama CNN na BBC hawana hii habari, jua kwamba sio jambo kubwa limefanyika. Kama ingekuwa “leak” kama zile za wikileaks, hiyo ni breaking news dunia mzima.
BBC Hii Hapa:

Angalizo: Uwe Unakifahamu Kirusi

============================

Москит, Надежда, Наутилус: хакеры раскрыли суть проектов тайного подрядчика ФСБ

1563791513534.png


Хакеры взломали сервер крупного подрядчика российских спецслужб и ведомств, а затем поделились с журналистами описаниями десятков непубличных проектов в области интернета: от деанонимизации пользователей браузера Tor до исследования уязвимости торрентов.

Не исключено, что это крупнейшая в истории утечка данных о работе российских спецслужб в интернете.

Взлом произошел 13 июля 2019 года. Вместо главной страницы сайта московской IT-компании "Сайтэк" появилось изображение рожицы с широкой улыбкой и самодовольно прищуренными глазами (на интернет-сленге - "йоба-фейс").

Дефейс, то есть замена главной страницы сайта, является распространенной тактикой хакеров и демонстрацией того, что им удалось получить доступ к данным жертвы.

Снимок с "йоба-фейсом" появился в твиттер-аккаунте 0v1ru$, зарегистрированном в день атаки. Там же появились скриншоты папки "Компьютер", предположительно принадлежавшей жертве. На одном снимке виден общий объем информации - 7,5 терабайт. На следующем снимке видно, что большая часть этих данных уже удалена.

BBC Russia
 
Vyanzo Vinginevyo:

Russia's Secret Intelligence Agency Hacked: 'Largest Data Breach In Its History'


Hackers breach FSB contractor, expose Tor deanonymization project and more


Hackers expose Russian intelligence agency's secret internet projects in 'the largest data leak' the group has ever faced


Epic breach: Hackers have gained access to 7.5 terabytes of data from a Federal Security Service (FSB) contractor


Hackers broke into a contractor for Russia's spy agency


Hackers Stole 7.5TB Of Secret Data From Russia’s Intelligence Agency


Hackers reportedly breach contractor for Russian intelligence, exposing secret projects


Monday briefing: Hackers expose Russian intelligence research projects


Hackers broke into secret service server of FSB's contractor


Hackers steal secret data from Russian state security agency contractor
 
Kwa hiyo taarifa gani za maana zimepatikana...???
Taarifa za Miradi mbalimbali ya FSB (Russia's intelligence service):
  • Mbinu mbalimbali za Kiitelijensia ambazo zingetumika na Serikali ya Urusi kuwabaini watumiaji wa mtandao wa Internet wasiofahamika (Anonymous Users).
  • Programs za kukusanya taarifa binafsi za watumiaji wa mitandao ya kijamii na pia kuzichunguza kampuni za Kirusi.
  • Taarifa zinazohusiana na muundo wa sehemu ya mtandao wa Internet ya Urusi Taarifa ambazo zinahusiana pia na mfumo wa Urusi kujitoa katika Global Internet.

Projects hizi hapa chini:
  • Nautilus - a project for collecting data about social media users (such as Facebook, MySpace, and LinkedIn).
  • Nautilus-S - a project for deanonymizing Tor traffic with the help of rogue Tor servers.
  • Reward - a project to covertly penetrate P2P networks, like the one used for torrents.
  • Mentor - a project to monitor and search email communications on the servers of Russian companies.
  • Hope - a project to investigate the topology of the Russian internet and how it connects to other countries' network.
  • Tax-3 - a project for the creation of a closed intranet to store the information of highly-sensitive state figures, judges, and local administration officials, separate from the rest of the state's IT networks.
 
Back
Top Bottom