Calgarypuck Forums - The Unofficial Calgary Flames Fan Community

Go Back   Calgarypuck Forums - The Unofficial Calgary Flames Fan Community > Main Forums > The Off Topic Forum
Register Forum Rules FAQ Community Calendar Today's Posts Search

Reply
 
Thread Tools Search this Thread
Old 12-17-2020, 04:42 PM   #1
Khel
Crash and Bang Winger
 
Khel's Avatar
 
Join Date: Aug 2005
Location: Calgary
Exp:
Default Solarstorm / Sunburst Hack

Developing story on what is likely to go down as the largest and scariest Cyber attack in history.

Started with a story on how FireEye, one of the worlds leading firms got breached and their red team tools stolen, and has evolved from there.

Threat Actor managed to compromise the supply chain of a well established network monitoring tool vendor, and remain hidden in networks for MONTHS, which is just scary bad news.

Same actor and method behind the breaches of multiple US Gov agencies the last few days, including the agency responsible for the Nuclear weapons and there will be more to come.

https://krebsonsecurity.com/

https://www.fireeye.com/blog/threat-...eam-tools.html

https://www.fireeye.com/blog/threat-...-backdoor.html

https://threatpost.com/nuclear-weapo...attack/162387/

https://unit42.paloaltonetworks.com/...orm-supernova/

Last edited by Khel; 12-17-2020 at 04:51 PM.
Khel is offline   Reply With Quote
The Following User Says Thank You to Khel For This Useful Post:
Old 12-17-2020, 04:44 PM   #2
Wastedyouth
Truculent!
 
Join Date: Aug 2013
Exp:
Default

Who was the actor? Raimi Malek?
__________________
Quote:
Originally Posted by Poe969 View Post
It's the Law of E=NG. If there was an Edmonton on Mars, it would stink like Uranus.
Wastedyouth is offline   Reply With Quote
Old 12-17-2020, 04:46 PM   #3
Fuzz
Franchise Player
 
Fuzz's Avatar
 
Join Date: Mar 2015
Exp:
Default

Microsoft, too.
Quote:
Microsoft was hacked as part of the suspected Russian campaign that has hit multiple U.S. government agencies by taking advantage of the widespread use of software from SolarWinds Corp, according to people familiar with the matter.

https://www.reuters.com/article/glob...-idUSL1N2IX33C
Fuzz is offline   Reply With Quote
Old 12-17-2020, 04:49 PM   #4
Khel
Crash and Bang Winger
 
Khel's Avatar
 
Join Date: Aug 2005
Location: Calgary
Exp:
Default

Quote:
Originally Posted by Fuzz View Post
Yeah, I think vmware and others were involved as part of this. No one has officially attributed it to the Russians, but whoever did this was likely well funded, and very skilled.

This story will likely only get bigger over the next couple days, and even months, tip of the iceberg.
Khel is offline   Reply With Quote
Old 12-17-2020, 05:26 PM   #5
monkeyman
First Line Centre
 
monkeyman's Avatar
 
Join Date: Feb 2005
Location: Calgary
Exp:
Default

Yikes! Thanks for sharing.
__________________
The Delhi police have announced the formation of a crack team dedicated to nabbing the elusive 'Monkey Man' and offered a reward for his -- or its -- capture.
monkeyman is offline   Reply With Quote
Old 12-17-2020, 09:10 PM   #6
Robo
Franchise Player
 
Join Date: Feb 2012
Location: Edmonton,AB
Exp:
Default

I thought this had something to do with the sun..... (shakes fist in air) damn you khellllllllllllllll!!!!
Robo is offline   Reply With Quote
The Following 4 Users Say Thank You to Robo For This Useful Post:
Old 12-17-2020, 09:25 PM   #7
RichieRich
First Line Centre
 
Join Date: Dec 2017
Exp:
Default

so how will this, if at all, affect us regular Joe's here in Canada? short / long term? I'm just not savvy enough to "get it" (nor have time to peruse all media narratives - mainstream or alternate, to get an idea of the impact). Can't wait to hear the conspiracy theory spins versus mainstream... and then figure out what is a truly centrist/likely view/result.
RichieRich is offline   Reply With Quote
Old 12-17-2020, 10:48 PM   #8
Khel
Crash and Bang Winger
 
Khel's Avatar
 
Join Date: Aug 2005
Location: Calgary
Exp:
Default

I think most people won't know or care. They may see the headlines about the Nukes and be concerned, but won't really know how big a deal this really is.

The system they compromised usually has highly elevated access to a companies network. And due to the length of time they went undetected who knows what else they did, stole, or compromised.

The motivation and objectives are currently unknown, but we are talking potentially hundreds or thousands of compromised companies, governments, etc. They had potentially full access into some of the biggest companies for months, you give an adversary with this kind of skill that much time, and there is no telling what they could have done.

This is likely a watershed moment in Cybersecurity. The story is still unfolding, and full impact could take months or years to understand.
Khel is offline   Reply With Quote
The Following 2 Users Say Thank You to Khel For This Useful Post:
Old 12-18-2020, 12:42 AM   #9
surferguy
Monster Storm
 
surferguy's Avatar
 
Join Date: Apr 2007
Location: Calgary
Exp:
Default

Perhaps Baron shouldn’t have been in charge of Cyber.
__________________
Shameless self promotion

surferguy is offline   Reply With Quote
The Following 3 Users Say Thank You to surferguy For This Useful Post:
Old 12-18-2020, 09:12 AM   #10
Weitz
Franchise Player
 
Join Date: Mar 2013
Exp:
Default

Quote:
Originally Posted by Khel View Post
Yeah, I think vmware and others were involved as part of this. No one has officially attributed it to the Russians, but whoever did this was likely well funded, and very skilled.

This story will likely only get bigger over the next couple days, and even months, tip of the iceberg.
CNN is saying it was Russian hackers.. But does that mean its could not be the state? Trying to understand here.
Weitz is offline   Reply With Quote
Old 12-18-2020, 09:12 AM   #11
RichieRich
First Line Centre
 
Join Date: Dec 2017
Exp:
Default

I propose we blame the CCP who masqueraded as the Russians.
RichieRich is offline   Reply With Quote
Old 12-18-2020, 09:21 AM   #12
Titan
First Line Centre
 
Titan's Avatar
 
Join Date: Dec 2006
Exp:
Default

After finishing Snowden's book, it is really scary how unprepared the gov't seems to be to manage these things. With the ####show of the last four years, it can't have gotten better.

I would give serious thought to bringing Snowden home, pardoning him, and making him the cyber czar. I am really conflicted as he did commit a crime but was that crime worthy of what the punishment could be? Taking into account how f'ed up the NSA programs were there should be some sort of whistleblower defence. Difficult issue.
Titan is offline   Reply With Quote
Old 12-18-2020, 10:11 AM   #13
Khel
Crash and Bang Winger
 
Khel's Avatar
 
Join Date: Aug 2005
Location: Calgary
Exp:
Default

Quote:
Originally Posted by Weitz View Post
CNN is saying it was Russian hackers.. But does that mean its could not be the state? Trying to understand here.
Typically threat intel teams try not to do attribution to a specific state.

They give them a fancy, totally made up name like 'Cozy Bear' or 'OilRig' and talk about their tactics and techniques and motivations.

The media is saying its suspected as Russia and likely is, as Cozy Bear has known connections to Russian intelligence.
Khel is offline   Reply With Quote
The Following User Says Thank You to Khel For This Useful Post:
Old 12-18-2020, 10:23 AM   #14
Ozy_Flame

Posted the 6 millionth post!
 
Ozy_Flame's Avatar
 
Join Date: Feb 2002
Exp:
Default

Quote:
Originally Posted by Titan View Post
I would give serious thought to bringing Snowden home, pardoning him, and making him the cyber czar. I am really conflicted as he did commit a crime but was that crime worthy of what the punishment could be? Taking into account how f'ed up the NSA programs were there should be some sort of whistleblower defence. Difficult issue.
Even in Hollywood movies, they hire the shady nerds who have hacked the Department of Defense like it was butter but will forgive their transgressions if they save the world. Maybe they're on to something.
Ozy_Flame is offline   Reply With Quote
Old 12-18-2020, 11:51 AM   #15
FlameOn
Franchise Player
 
FlameOn's Avatar
 
Join Date: Oct 2010
Location: Calgary
Exp:
Default

Not that this would have stopped the Russian attack, but Trump moved the US cyber security budget to trying to build his wall.

Seriously the breach of the DOE nuclear facilities by Russians would have sparked an international incident under any other administration.

https://www.independent.co.uk/news/w...-b1776007.html

Last edited by FlameOn; 12-18-2020 at 04:58 PM.
FlameOn is offline   Reply With Quote
Old 12-18-2020, 01:39 PM   #16
Flamenspiel
Lifetime Suspension
 
Join Date: Mar 2011
Exp:
Default

nm, why bother.
Flamenspiel is offline   Reply With Quote
The Following User Says Thank You to Flamenspiel For This Useful Post:
Old 12-18-2020, 08:03 PM   #17
Titan
First Line Centre
 
Titan's Avatar
 
Join Date: Dec 2006
Exp:
Default

Quote:
Originally Posted by Ozy_Flame View Post
Even in Hollywood movies, they hire the shady nerds who have hacked the Department of Defense like it was butter but will forgive their transgressions if they save the world. Maybe they're on to something.
Hmmm. Not sure, but it feels like you may be mocking me.
Titan is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -6. The time now is 03:24 PM.

Calgary Flames
2023-24




Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.
Copyright Calgarypuck 2021