Introduction to Cyber-Warfare by Paulo Shakarian & Jana Shakarian & Andrew Ruef & Sushil Jajodia

Introduction to Cyber-Warfare by Paulo Shakarian & Jana Shakarian & Andrew Ruef & Sushil Jajodia

Author:Paulo Shakarian & Jana Shakarian & Andrew Ruef & Sushil Jajodia
Language: eng
Format: epub
ISBN: 9780124079267
Publisher: Elsevier Inc.
Published: 2013-05-21T16:00:00+00:00


An Example of the Current State of the Art: Sykipot

In 2011, a class of malware known as “Sykipot” reemerged in cyber space. By this time, Sykipot had been around for a few years—with unconfirmed reports from as early as 2006.94 This particular piece of malware is a Trojan—installing a back door onto the target machine for the purposes of exfiltrating information. In March 2010, Sykipot was loaded onto target computers using a zero-day vulnerability in Microsoft Internet Explorer. In late 2011, the malware was again being used in conjunction with a zero-day vulnerability—this time in Adobe Acrobat and Acrobat Reader. The software was again distributed using spear phishing. The hackers sent e-mails to targeted individuals in federal agencies and contract organizations containing a malicious Adobe Acrobat PDF file that exploited the zero-day vulnerability, installing the back door that once initiated and created a secure connection with a command-and-control server. The modus operandi was very similar to the attacks described previously. The weakness in Adobe Acrobat was originally noticed by Lockheed Martin’s security response team and the Defense Security Information Exchange (DSIE)—a group of major U.S. defense contractors that share knowledge on assurance information.

The e-mails and PDF files used in the spear-phishing campaign were particularly well crafted. One such message contained a PDF file that had the latest per-diem rates (daily allowances for U.S. government employees on travel to defray the costs of meals and other incidental expenses).95 Another had a 2012 guide on the contract award process.96 As with the previous attacks in this chapter, these messages illustrate the great care taken by the attackers to select their targets—this was not a mass e-mail campaign, but rather a highly precise operation.

The security firm AlienVault examined traffic to the C&C servers transmitted by Sykipot and noticed that some of the exfiltrated data dealt with American technology for unmanned aerial vehicles (UAVs) and space technology. Specifically, they found unclassified documents relating to Boeing’s X-45 Unmanned Combat Air Vehicle (UCAV) and X-37 orbital vehicle.97 The researchers at AlienVault also managed to trace the controlling server’s traffic back to Chinese IP addresses. They noticed that the malware contained error messages in Chinese, a fact that was also confirmed by researchers at Symantec.98 Based on the Chinese principles of information warfare, it would be feasible that the Chinese government had a vested interest in supporting these missions as information on experimental aircraft furthers both economic and military goals as espoused in Unrestricted Warfare. Further, considering the Sykipot campaigns since 2007, there were six total observed zero-day exploits—five of which were used in 2010 or later. These vulnerabilities could indicate that the operations were sponsored by a well-funded organization (i.e., a nation-state). The use of highly targeted spear-phishing e-mails may also point to a nation-state as they likely required a good source of intelligence to develop (Figure 7.8).



Download



Copyright Disclaimer:
This site does not store any files on its server. We only index and link to content provided by other sites. Please contact the content providers to delete copyright contents if any and email us, we'll remove relevant links or contents immediately.
Popular ebooks
Eco-friendly approach of bio-indigo synthesis and developing purification methods towards isolation of indigo from indirubin and bacterial fragments by Ramalingam Manivannan & Kaliyan Prabakaran & Young-A Son(217258)
Personalized inhaled bacteriophage therapy for treatment of multidrug-resistant Pseudomonas aeruginosa in cystic fibrosis by unknow(185745)
CONSORT 2025 statement: updated guideline for reporting randomized trials by unknow(94087)
Critical evaluation of the ProfiLER-02 study design and outcomes by Vivek Subbiah & Razelle Kurzrock(93893)
Cardiac gene therapy makes a comeback by Oliver J. Müller & Susanne Hille & Anca Kliesow Remes(93519)
Whisky: Malt Whiskies of Scotland (Collins Little Books) by dominic roskrow(74472)
Unveiling the design rules for tunable emission in graphene quantum dots: A high-throughput TDDFT and machine learning perspective by Şener Özönder & Mustafa Coşkun Özdemir & Caner Ünlü(50916)
A yeast-based oral therapeutic delivers immune checkpoint inhibitors to reduce intestinal tumor burden by unknow(40299)
Covalent hitchhikers guide proteins to the nucleus by Alexander F. Russell & Madeline F. Currie & Champak Chatterjee(40237)
Meet the Authors: Christopher R. Mansfield and Emily R. Derbyshire by Christopher R. Mansfield & Emily R. Derbyshire(40124)
Alkaline-earth metals promote propane dehydrogenation with carbon dioxide through geometric effects: Altering the reaction pathway by unknow(32761)
Induced iron vacancies boosting FeOOH loaded on sustainable Fenton-like collagen fiber membrane for efficient removal of emerging contaminants by unknow(32544)
Efficient electric-field-assisted photochemical conversion of methane to n-propanol exclusively over penetrated TiO2Ti hollow fibers by Guanghui Feng(32476)
Bi2SiO5 nanosheets as piezo-photocatalyst for efficient degradation of 2,4-Dichlorophenol by Hangyu Shi & Yifu Li & Lishan Zhang & Guoguan Liu & Qian Zhang & Xuan Ru & Shan Zhong(32415)
A novel NDIPTA organic heterojunction photocatalyst with built-in electric field for efficient hydrogen production by Jiahui Yang & Baojun Ma & Yongfa Zhu(32386)
Enhanced conversion of methane to liquid-phase oxygenates via hollow ferrite nanotube@horseradish peroxidase based photoenzymatic catalysis by Jun Duan & Shiying Fan & Xinyong Li & Shaomin Liu(32353)
Ordered macroporous superstructure of defective carbon adorned with tiny cobalt sulfide for selective electrocatalytic hydrogenation of cinnamaldehyde by Xiao-Shi Yuan & Sheng-Hua Zhou & San-Mei Wang & Wenbo Wei & Xiaofang Li & Xin-Tao Wu & Qi-Long Zhu(32275)
What's Done in Darkness by Kayla Perrin(27168)
Topological analysis of non-conjugated ethylene oxide cored dendrimers decorated with tetraphenylethylene: Insights from degree-based descriptors using the polynomial approach by A Theertha Nair & D Antony Xavier & Annmaria Baby & S Akhila(26557)
Investigation of mechanical and self-healing properties of hydroxyl-terminated polybutadiene functionalized with 2-ureido-4-pyrimidinone by Mohsen Kazazi & Mehran Hayaty & Ali Mousaviazar(26490)