16 avril 2024 | International, Sécurité

TA558 Hackers Weaponize Images for Wide-Scale Malware Attacks

TA558 hackers are using steganography to hide and distribute malware like Agent Tesla, FormBook, Remcos RAT, LokiBot.

https://thehackernews.com/2024/04/ta558-hackers-weaponize-images-for-wide.html

Sur le même sujet

  • Are banned Chinese cameras watching the US military?

    7 novembre 2019 | International, C4ISR, Sécurité

    Are banned Chinese cameras watching the US military?

    By: Joe Gould WASHINGTON ― Amid news that thousands of banned Chinese-made surveillance devices are in use across American government installations, Sen. Marco Rubio, R-Fla., is asking the Pentagon to identify the Chinese gear in use at U.S. military facilities. In a letter to Defense Secretary Mark Esper made public Wednesday, Rubio said the Trump administration needs a comprehensive strategy to address the threats posed by foreign-sourced components and subcomponents. “The Department of Defense must act quickly to identify and remove this equipment as every day that passes only provides our adversaries additional time to infiltrate and exploit our national security networks as well as the ability to monitor U.S. military activities that may be of interest,” Rubio said. The letter comes after Forbes reported the government has made little progress complying with a legally mandated ban on Chinese surveillance tech. Government contractor Forescout found 3,500 devices from from telecom giants Huawei and ZTE, as well as surveillance camera-makers Dahua and Hikvision, on U.S. government systems a month before the ban was to take effect. Language in the fiscal 2019 National Defense Authorization Act banned the procurement of Chinese-produced cameras and associated electronics to ensure U.S. government installations are not at risk of surveillance by potentially malicious Chinese technology. The provision also prohibited the renewal of any contracts currently in use across the federal government. “As you continue to posture the Department of Defense in the era of great power competition, we must remain vigilant to attack from every possible source,” Rubio said in his letter to Esper. “I strongly urge you to implement a comprehensive and proactive approach meeting the requirements of the ban cited in the FY 2019 NDAA." Among other questions, Rubio's letter asked what steps the DoD has taken to address the NDAA's ban on procurement, whether the department has considered removing the technologies, and whether the future will bring further prohibitions on additional products or manufacturers. Rubio wanted to know whether the DoD has a way to purge nontraditional surveillance gear automatically. “How would you detect non-traditional IP-connected products, those beyond, if future prohibitions on such products materialize?" https://www.defensenews.com/congress/2019/11/06/are-banned-chinese-cameras-watching-the-us-military/

  • CAE Wants to Help the Pentagon Train Pilots Through Data Analysis

    29 avril 2019 | International, Aérospatial

    CAE Wants to Help the Pentagon Train Pilots Through Data Analysis

    By Brian Garrett-Glaser Canadian simulator and training provider CAE is in talks with the U.S. Navy to add its new high-tech data analysis tool suite, CAE Rise, to existing and future programs, including aircrew training services for the T-44C Pegasus, according to the company. Launched for the civil aviation market in 2017, CAE Rise allows instructors to objectively assess pilot competencies using live data during training sessions, accessible via iPad interface. CAE pitches the system as a means of using big data analysis to reduce subjectivity in pilot assessment, allow instructors to focus more on teaching and help create more efficient training programs. The CAE Rise system can "detect everything for a maneuver, and it's able to tell the instructor what parameter went out of whack, where [the pilot] did not do according to standards,” said Terry Constantakis, CAE's director of civil aviation training solutions. “So in terms of key benefits for CAE Rise, we often use the term ‘better than the naked eye' in terms of detecting errors and helping the instructor provide assessments,” he added. “It also allows the instructor to focus more on soft skills. For example, when we look at things like grading, we noticed that when instructors have RISE they spend more time providing comments on soft skills like teamwork, communication and workload management — things that are not necessarily performance-based or technical skills.” CAE Rise has been adopted by a number of airlines in Asia, including a five-year agreement with AirAsia to train its long-haul pilots to fly for affiliate airline AirAsia X on the Airbus A330. More recently, in late 2018, CAE released its RISE data suite for the defense market, with key features like development on Microsoft Azure Government for cloud computing to meet government cybersecurity and compliance requirements. The company is offering CAE Rise to the Pentagon as an enhancement to its current contract for T-44C aircrew training devices, which the company began delivering in 2014. “As far as what branches of the U.S. military have expressed an interest, I will say we have had ongoing discussions with the U.S. Navy,” said a company spokesperson. “We have briefed and demonstrated to the Navy how CAE Rise could be used to enhance and improve naval aviator training.” “There are no other CAE Rise customers on the defense side that we can disclose currently,” the spokesperson added. CAE hopes the platform will, in addition to improving the quality of aviation training services, help address the global civil and military pilot shortage that is expected to worsen in coming decades. The company's analysis on pilot demand published in 2016 estimated a need for 180,000 new captains globally within the next 10 years. Drivers of that shortage differ regionally but include aging populations of pilots reaching retirement, expected growth in air travel and falling supply from universities, business aviation and military training compared to previous decades. https://www.aviationtoday.com/2019/04/25/cae-wants-help-pentagon-train-pilots-data-analysis/

  • How to use automation and AI to give warfighters a strategic edge

    13 juin 2024 | International, C4ISR

    How to use automation and AI to give warfighters a strategic edge

    Opinion: Networks need to be able to quickly and automatically recover and repair themselves in the event of an issue without the need for human intervention.

Toutes les nouvelles