Вы находитесь на странице: 1из 5

8/8/2018 Russian APT28 espionage group targets democratic Senator Claire McCaskillSecurity Affairs

HomeHome
MUST Cyber Crime
READ Cyber
CyberAffairs
Security Crimewarfare APT 173
newsletterCyber
Round Data Breach
warfare
– News Deep
week Web
of theAPT Digital
Data ID
Breach Hacking
DeepHacktivism
Web
Intelligence Internet of Things Laws and regulations Malware Mobile Reports Security
Digital ID Hacking SocialHacktivism
Networks
Intelligence
Terrorism
Internet of Things
EXTENDED COOKIE POLICY Contact me

Laws and regulations Malware Mobile Reports Security

Social Networks Terrorism EXTENDED COOKIE POLICY Contact me

Russian APT28 espionage group targets democratic Senator Sponsored C

Claire McCaskill See Also

July 28, 2018 By Pierluigi Paganini 1 Microso

Like 25
2 Microso

3 Build Yo
The Russia-linked APT28 group targets Senator Claire
McCaskill and her staff as they gear up for her 2018 re- 4 Celebri

election campaign.
The Russian APT group tracked as Fancy Bear (aka APT28, Pawn Storm, Sofacy Digging the
Group, Sednit, and STRONTIUM), that operated under the Russian military agency GRU, continues of the web
to target US politicians.

This time the target is Senator Claire McCaskill and her staff as they gear up for her 2018 re-election
campaign.

The news was reported by The Daily Beast, McCaskill always expressed criticism of Russia and its
aggressive strategy in the cyberspace. McCaskill has repeatedly accused the Russian Government of
“cyber warfare against our democracy,” she defined President Vladimir Putin as a “thug” and a “bully.”
This site uses cookies, including for analytics, personalization, and advertising purposes. For more information or to change
Russian cyberspies launched spear-phishing attacks against the member of the staff aimed at
your cookie settings, click here. If you continue to browse this site without changing your cookie settings, you agree to this
stealing their credentials, a tactic already used against Hillary Clinton campaign manager John
use. Accept Read More
Podesta in 2016.

https://securityaffairs.co/wordpress/74843/cyber-warfare-2/apt28-targeted-senator-mccaskill.html 1/5
8/8/2018 Russian APT28 espionage group targets democratic Senator Claire McCaskillSecurity Affairs

The phishing
Home messages
Cyber Crime containedwarfare
fake notifications instructing
BreachtheAPT
victims to change their
ID Microsoft
Home CyberCyber
Crime APT warfare
Cyber Data Deep Web Digital
Data Breach Hacking
DeepHacktivism
Web
Exchange passwords.
Intelligence Internet of Things Laws and regulations Malware Mobile Reports Security
Digital ID Hacking Social
Hacktivism
Networks
Intelligence Internet of Things
“The attempt against McCaskill’s office was a variant of the Terrorism EXTENDED
password-stealing COOKIE
technique usedPOLICY
by Contact me
Russia’s so-called “Fancy Bear” hackers against Clinton’s campaign chairman, John Podesta, in
Laws and regulations Malware Mobile Reports Security
2016.” reads the report published by The Daily Beast.

Social Networks Terrorism EXTENDED COOKIE POLICY Contact me


“The hackers sent forged notification emails to Senate targets claiming the target’s Microsoft
Exchange password had expired, and instructing them to change it. If the target clicked on the link, he
or she was taken to a convincing replica of the U.S. Senate’s Active Directory Federation Services
(ADFS) login page, a single sign-on point for e-mail and other services.”

#infosec16 S
Personal Sec

In July, Microsoft helped the US Government is protecting at least three 2018 midterm election
candidates from attacks of Russian cyberspies.

The hackers sent spear-phishing messages to the candidates, the messages included links to a fake
Microsoft website used by the cyberspies to trick victims into providing their credentials.

“Earlier this year, we did discover that a fake Microsoft domain had been established as the landing
page for phishing attacks,” said Tom Burt, Microsoft’s vice president for customer security.

“And we saw metadata that suggested those phishing attacks were being directed at three candidates
who are all standing for election in the midterm elections.”

Once Microsoft discovered the phishing website it has taken down it and helped the US government
to “avoid anybody being infected by that particular attack.”

“In October,
This Microsoft
site uses cookies,wrested
includingcontrol of one personalization,
for analytics, of the spoofed website addresses—
and advertising purposes. For more information or to change
adfs.senate.qov.info.
your cookie settings,Seizing theIfRussians’
click here. malicious
you continue domain
to browse names
this site haschanging
without been easy forcookie
your Microsoft
settings, you agree to this
since August 2017, when a federal judge in Virginia
use. issued
Accepta permanent injunction against the GRU
Read More

https://securityaffairs.co/wordpress/74843/cyber-warfare-2/apt28-targeted-senator-mccaskill.html 2/5
8/8/2018 Russian APT28 espionage group targets democratic Senator Claire McCaskillSecurity Affairs

hackers, after
HomeHome Microsoft
Cyber Crime successfully sued them
APTas warfare
unnamed “John Doe” defendants.” continues the
CyberCyber warfare
Crime Cyber Data Breach Deep Web
APT Digital
Data ID
Breach Hacking
DeepHacktivism
Web
report.
Intelligence Internet of Things Laws and regulations Malware Mobile Reports Security
Digital ID Hacking
Microsoft made sinkholing of the website, in this
Social
Hacktivism
way it was Terrorism
Networks
Intelligence
able to trackEXTENDED
victims of the
Internet of Things
attacks POLICY
COOKIE that Contact me
were redirected to the phishing attack.
Laws and regulations Malware Mobile Reports Security
The Daily Beast identified McCaskill as a target while investigating statements made by Microsoft VP
Social Networks Terrorism
Tom Burt during his speech at the Aspen Security Forum.
EXTENDED COOKIE POLICY Contact me

Microsoft attributed the attacks to Russian APT28 group. +Pierluig

McCaskill released a statement confirming that cyberattack was unsuccessful. Pierluigi P

“Russia continues to engage in cyber warfare against our democracy. I will continue to speak out and (European
press to hold them accountable,” McCaskill said. Informati
Stakehold
“While this attack was not successful, it is outrageous that they think they can get away with this. I will
Workgrou
not be intimidated. I’ve said it before and I will say it again, Putin is a thug and a bully.”
Foreign A
See Also Cooperati
Microsoft New Releases Cyber Sec
University
Microsoft Encarta Premium
Evangelis
Writer. Ed
Phishing Scams
Magazine
Build Your Own Website
Sponsored C
Celebrity Photo Gallery

Pierluigi Paganini

(Security Affairs – McCaskill, APT28)

 APT28 Cyberespionage FANCY BEAR Hacking McCaskill Pierluigi Paganini

politics Russia Security Affairs

This site uses cookies, including for analytics, personalization, and advertising purposes. For more information or to change
your cookie settings, click here. If you continue to browse this site without changing your cookie settings, you agree to this
SHARE ON       
use. Accept Read More

https://securityaffairs.co/wordpress/74843/cyber-warfare-2/apt28-targeted-senator-mccaskill.html 3/5
8/8/2018 Russian APT28 espionage group targets democratic Senator Claire McCaskillSecurity Affairs

HomeHome
Cyber Crime
CyberCyber
Crimewarfare APT warfare
Cyber Data Breach APT
Deep Web Data
Digital ID
Breach Hacking
DeepHacktivism
Web
Pierluigi Paganini
Intelligence Internet of Things Laws and regulations Malware Mobile Reports Security
Digital ID Paganini
Pierluigi Hacking
is member Hacktivism
Socialof
Intelligence
the ENISA Terrorism
Networks (European Union Internet
AgencyCOOKIE
EXTENDED for Network of Things
POLICY Contact me
and Information Security) Threat Landscape Stakeholder Group and Cyber G7
Laws and regulations Malware Mobile Reports
Group, he is also a Security Evangelist, Security Analyst and Freelance Writer.
Security
Editor-in-Chief at "Cyber Defense Magazine", Pierluigi is a cyber security expert
Social Networks Terrorism EXTENDED COOKIE POLICY Contact me
with over 20 years experience in the field, he is Certified Ethical Hacker at EC
Council in London. The passion for writing and a strong belief that security is
founded on sharing and awareness led Pierluigi to find the security blog
"Security Affairs" recently named a Top National Security Resource for US.
Pierluigi is a member of the "The Hacker News" team and he is a writer for some
major publications in the field such as Cyber War Zone, ICTTF, Infosec Island,
Infosec Institute, The Hacker News Magazine and for many other Security
magazines. Author of the Books "The Deep Dark Web" and “Digital Virtual
Currency and Bitcoin”.

 PREVIOUS ARTICLE
Microsoft revealed details of a supply NEXT ARTICLE

chain attack at unnamed Maker of PDF Google bans cryptocurrency mining
Editor apps from the official Play Store

Sponsored C

YOU MIGHT ALSO LIKE Sponsored C

Sponsored C

Promote you

KICKICO security breach – hackers stole


over $7.7 million worth of KICK tokens
This site uses cookies, including for analytics, personalization, and advertising purposes. For more information or to change
July 30, 2018 By Pierluigi Paganini
your cookie settings, click here. If you continue to browse this site without changing your cookie settings, you agree to this
use. Accept Read More

https://securityaffairs.co/wordpress/74843/cyber-warfare-2/apt28-targeted-senator-mccaskill.html 4/5
8/8/2018 Russian APT28 espionage group targets democratic Senator Claire McCaskillSecurity Affairs

HomeHome
Cyber Crime
CyberCyber
Crimewarfare FELIXROOT
APT warfare
Cyber Data Breach APTBackdoor
Deep is back
Web Data
Digital ID in aHacking
Breach newDeepHacktivism
Web
Intelligence Internet of Things freshandspam
Laws campaign
regulations Malware Mobile Reports Security
Digital ID Hacking SocialHacktivism
Networks
Intelligence
Terrorism
Internet of Things
EXTENDED COOKIE POLICY Contact me
July 30, 2018 By Pierluigi Paganini

Laws and regulations Malware Mobile Reports Security

Social Networks Terrorism EXTENDED COOKIE POLICY Contact me

Copyright 2015 Security Affairs by Pierluigi Paganini All Right Reserved.

This site uses cookies, including for analytics, personalization, and advertising purposes. For more information or to change
your cookie settings, click here. If you continue to browse this site without changing your cookie settings, you agree to this
use. Accept Read More

https://securityaffairs.co/wordpress/74843/cyber-warfare-2/apt28-targeted-senator-mccaskill.html 5/5

Вам также может понравиться