A U.S. court has granted Microsoft the authority to seize domain names in order to take down a phishing campaign run by a notorious group of Iranian hackers.
In a poston Microsoft’s official blog, Customer Security & Trust VP Tom Burt shared details from the now unsealed caseit filed in the U.S. District Court for Washington D.C against the hacker group called Phosphorus. The group is also known under the names APT 35, Charming Kitten, and Ajax Security Team.
Microsoft’s Digital Crimes Unit was allowed to take control of 99 domains in order to stop the hackers’ attacks. Domains such as outlook-verify.net, yahoo-verify.net, and verification-live.com were being used in spear-phishing campaigns by the Iranian hackers.
Spear-phishing is a method of attack that relies on social engineering, where a hacker tricks an individual or group into believing that they are a trusted source through an email or web address. The hacker then uses that trust to obtain passwords or other sensitive information from their target.
Phosphorus targeted U.S. businesses and government agencies as well as activists and journalists. As Techcrunchpoints out, former U.S. Air Force intelligence officer turned spy Monica Witt reportedly has connections to the hacker group. Witt defected to Iran and is currently a fugitive wanted by the FBI for alleged espionage. It is believedthat Witt provided the Iranian hackers with intelligence regarding U.S. officials and her former colleagues. Using this information, the hackers can more accurately pinpoint their spear-phishing campaigns against certain individuals.
According to Microsoft, Phosphorus would send a link containing malicious software under the guise of a friendly source, sometimes even posing as a target’s contact on social media. The hackers would be able to use that software to access the victim’s computer. The group also deployed another attack using the now Microsoft-controlled domain names to trick its targets into thinking there was a security risk flagged on their Outlook or Yahoo account. Upon clicking on the phishing link, the target would be prompted to login to their account, effectively providing their password to the hackers.
This isn’t the first time a U.S. court granted Microsoft the authority to take control of domain names connected to phishing campaigns. Last year, a federal court injunction allowed Microsoft to seize domains deployed by hackers that infringe on the company’s trademarks. Microsoft used that authorityto terminate spear-phishing campaigns set up my the Russian hacker group known as Fancy Bear, which was targeting U.S. politicians, Congressional staffers, and think tanks.
Copyright © 2023 Powered by
Microsoft gains control of domains used by Iranian hackers linked to U.S. fugitive-款曲周至网
sitemap
文章
6
浏览
983
获赞
3
Uber Boat takes over London commuter ferry for water rides
UPDATE: Aug. 3, 2020, 10:03 a.m. BST Uber Boat has launched in London, setting sail on the River ThaResearchers once again hack a Tesla Model S key fob
Owners of one Tesla model should maybe stop relying on just their key fob to unlock their car.ResearMichael Jordan joked about his crying meme during speech about Kobe
Michael Jordan delivered a powerful speech honoring Kobe Bryant at a public event on Monday celebratHow Italy is fighting its coronavirus isolation with music
To curb the spread of the novel coronavirus, Italy has been put on total lockdown. Originally contaiFitbit has developed a ventilator to help COVID
Just like Dyson and NASA before it, Fitbit has now designed a ventilator in response to the coronaviHere's what actual Uber drivers have to say about 'Stuber'
A movie that featured the ride-hailing app Uber prominently came out over the weekend, and even itsInstagram is changing how people pack for travel
When Alyssa Ramospacks for a trip, functionality is far from her top priority. This solo traveler reTom Hanks and Rita Wilson test positive for coronavirus
As if the coronavirus pandemic didn't have everyone already on edge, there's now word that nationalThe 'Avengers' cast are arguing over a stolen pillow on Twitter
Admit it: if you got the chance to spend time on the movie set of one of the world's biggest film frStanley Hudson from 'The Office' is a Nap Icon we should cherish
Having trouble sleeping? Hit Snoozeis Mashable's deep dive into how we cope with our collective insoRyan Reynolds' birthday message to Hugh Jackman got very brutal, very fast
Ain't no feud like a Ryan Reynolds/Hugh Jackman feud.The two Marvel actors may be friends IRL, but tICE runs facial recognition searches on Maryland driver's licenses
Today in corrosive public policy, Immigration and Customs Enforcement has been running warrantless fWe shot Portrait mode video with this iPhone app
Ever take a Portrait mode photo on your iPhone and wish you could do the same with video?Well, you'rOppo's 'waterfall screen' pushes all
While everyone eagerly awaits Samsung's Galaxy Note 10, Apple's "iPhone 11," and foldable phones likSnapchat is more popular than ever
Snapchat is more popular than ever, and that's very good news for Snap. The company reported its sec