Fisher Ames Profile picture
Jan 29 14 tweets 3 min read
25 June 2019

Hackers broke into the systems of 12+ global telecom firms and stole huge amounts of data in a seven-year spying campaign, researchers from a cyber security company said, identifying links to previous Chinese cyber-espionage activities.

reuters.com/article/us-cyb…
Investigators at US-Israeli cyber firm Cybereason said the attackers compromised companies in 30+ countries and aimed to gather information on individuals in government, law-enforcement and politics.
The hackers also used tools linked to other attacks attributed to Beijing by the US & its Western allies, said Lior Div, CEO of Cybereason

“For this level of sophistication it’s not a criminal group. It is a government that has capabilities that can do this kind of attack”
Div later presented a step-by-step breakdown of the breach at a cybersecurity conference in Tel Aviv in the same session that the heads of U.S. and British cyber intelligence units and the head of Israel’s Mossad spy agency spoke.
“Right now we’re still tracking them,” he said. “On Saturday we debriefed 25+ different telcos, the biggest telcos in the world.”
A spokesman for China’s Foreign Ministry said he was not aware of the report, but added “we would never allow anyone to engage in such activities on Chinese soil or using Chinese infrastructure.”
Cybereason declined to name the companies affected or the countries they operate in, but people familiar with Chinese hacking operations said Beijing was increasingly targeting telcos in Western Europe.
Div said this latest campaign, which his team uncovered over the last nine months, compromised the internal IT network of some of those targeted, allowing the attackers to customize the infrastructure and steal vast amounts of data.
In some they managed to compromise a target’s entire active directory, giving access to every username and password in the organization. They also got hold of personal data, including billing information and call records, Cybereason said in a blog post.

cybereason.com/blog/operation…
“They built a perfect espionage environment,” said Div, a former commander in Israel’s military intelligence unit 8200. “They could grab information as they please on the targets that they are interested in.”
Cybereason said multiple tools used by the attackers had previously been used by a Chinese hacking group known as APT10.
The United States indicted two alleged members of APT10 in December and joined other Western countries in denouncing the group’s attacks on global technology service providers to steal intellectual property from their clients.
The company said on previous occasions it had identified attacks it suspected had come from China or Iran but it was never certain enough to name these countries.

Cybereason said: “This time as opposed to in the past we are sure enough to say that the attack originated in China”
“We managed to find not just one piece of software, we managed to find more than five different tools that this specific group used,” Div said.

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Fisher Ames

Fisher Ames Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @nimkef

Jan 30
The birth of Neustar

24 May 1997

Instead of unlisted phone numbers, maybe now they'll offer stealth phone numbers.

Defense industry colossus Lockheed Martin Corp. is poised to take over as administrator of the nation's telephone numbering system.

web.archive.org/web/2021062216…
An advisory panel [North American Numbering Council. NANC] to the Federal Communications Commission [FCC] has selected the Bethesda-based company as the North American Numbering Plan administrator. The FCC will make a final decision after July 3.
Put simply, the job involves coordinating what phone numbers go where. It's a bit like being the Geneva of the phone company wars, making detached and emotionless decisions on disputes involving area codes and dialing exchanges.
Read 11 tweets
Jan 29
7 Feb 2005

As part of it pursuit for more homeland security business and it efforts to grow its portfolio of third-party trusted services to communications providers, NeuStar acquired Herndon, Va.-based law enforcement compliance company, Fiducianet

web.archive.org/web/2014082210…
Fiducianet was founded by 29-year FBI veteran Mike Warren in January 2002 and began operations in May of that year with the industry's first service bureau for Communications Assistance for Law Enforcement Act (CALEA) compliance.
"He is a giant in the law enforcement community," said Jeffrey Ganek, chairman and CEO of NeuStar. "He will be an important addition to the NeuStar management team."
Read 15 tweets
Jan 27
21 Jan 2022

The draft executive order is dated 16 Dec 2020 & is consistent with proposals Sidney Powell made to Trump

18 Dec 2020
Powell, Michael Flynn, Trump admin lawyer Emily Newman & Patrick Byrne met w/ Trump in the Oval Office

H/T @seth_hettena

politico.com/news/2022/01/2…
In that meeting, Powell urged Trump to seize voting machines and to appoint her as a special counsel to investigate the election
The draft executive order credulously cites conspiracy theories about election fraud in Georgia and Michigan, as well as debunked notions about Dominion voting machines
Read 120 tweets
Jan 26
16 March 2018

US Gold refinery Elemetal LLC, (Dallas, TX) doing business as “Elemetal” and “NTR Metals,” pled guilty to a count of failure to maintain an adequate anti-money laundering program, in violation of the Bank Secrecy Act, as part of a plea deal

justice.gov/usao-sdfl/pr/u…
Aug 2012 to Nov 2016, Elemetal purchased and refined billions of dollars of gold from countries around the world, including from Central America, South America, the Caribbean and Europe.
Former NTR Metals Miami employees, Samer H. Barrage, Renato J. Rodriguez, and Juan P. Granda previously pled guilty to conspiracy to commit money laundering
Read 9 tweets
Jan 26
17 Feb 2015

Anatoly A. Sobchak, a former mayor of St. Petersburg and a mentor to Putin, died of a heart attack 15 years ago while on a trip to Kaliningrad.

businessinsider.com/the-mysterious…
He talked too much, just as Putin was dictating his new official life story to the 3 journalists, Sobchak was reminiscing, in response to questions asked by other journalists, & recounting key episodes of Putin’s career in ways that contradicted the story told by his old protégé.
Sobchak's two bodyguard-assistants, both physically fit young men, had had to be treated for mild symptoms of poisoning following Sobchak's death. This was a hallmark of contract killings by poisoning: many a bodyguard had fallen similarly ill when their bosses were killed
Read 5 tweets
Jan 25
2 March 2011

Julian Assange has been caught up in an anti-Semitism row after allegedly accusing a group of journalists of a 'Jewish conspiracy' against his website WikiLeaks.

dailymail.co.uk/news/article-1…
In Private Eye magazine, editor Ian Hislop wrote that Assange called him to complain about a previous piece on WikiLeaks contributor Israel Shamir.

Shamir is a Siberian-born Holocaust denier, was called 'a rabid anti-Semite' by Stephen Pollard, editor of The Jewish Chronicle
17 Dec 2010

Israel Shamir, WikiLeaks's spokesperson and conduit in Russia has been exposed in the Swedish media as an anti-semite and Holocaust denier;

theguardian.com/commentisfree/…
Read 50 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Too expensive? Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us on Twitter!

:(