[Cyber Security reading group] Some cyber news

Andrea Margheri A.Margheri at soton.ac.uk
Mon Jun 11 15:01:32 BST 2018


Dear all,
please accept this remainder for tomorrow talk by Enrico.

Please come numerous and remember your lunch

See you there,
Andrea

On 7 Jun 2018, at 11:48, Andrea Margheri <A.Margheri at soton.ac.uk<mailto:A.Margheri at soton.ac.uk>> wrote:

Dear all,
some piece of news on nation sponsored cyber espionage I found quite interesting. it would be great to have a chat at the next cyber reading group on latest news and learn from you thoughts.

Here the details of the next cyber reading meeting

When: Tuesday June 12th 1:00pm
Where: Demo room
Presenter: Enrico Steffinlongo
Title: Formal methods and its application to access control

Best,
Andrea

--
Andrea Margheri
Senior research fellow
Cyber security
University of Southampton


Begin forwarded message:

From: Cipher Editor <cipher-editor at ieee-security.org<mailto:cipher-editor at ieee-security.org>>
Subject: [Cipher Newsletter] IEEE CIPHER, Issue 144, June 4, 2018
Date: 5 June 2018 at 18:37:37 BST
To: <cipher at mailman.xmission.com<mailto:cipher at mailman.xmission.com>>
Reply-To: Cipher Editor <cipher-editor at ieee-security.org<mailto:cipher-editor at ieee-security.org>>

News briefs from past issues of Cipher are archived at
http://www.ieee-security.org/Cipher/NewsBriefs.html

------------------------------------------------------------------------------

There's a Russian in my router

U.S., British governments warn businesses worldwide of Russian
campaign to hack routers
The Washington Post
https://www.washingtonpost.com/world/national-security/us-british-governments-say-russia-has-hacked-routers-used-by-businesses-globally/2018/04/16/90e8d34c-4181-11e8-8569-26fda6b404c7_story.html
By Ellen Nakashima
April 16, 2018

Summary:
The US and British governments jointly issued a warning about malware
in computer routers and firewalls.  The White House has said that
there is "high confidence" that the malware is orchestrated by Russia
and is part of a long-term campaign to infiltrate the Internet
infrastructure for espionage purposes.


-----------------

U.S.-U.K. Warning on Cyberattacks Includes Private Homes
The New York Times
https://www.nytimes.com/2018/04/16/world/europe/us-uk-russia-cybersecurity-threat.html
By David D. Kirkpatrick and Ron Nixon
Apr 16, 2018

Summary:

A former director of the British electronic spying agency GCHQ said
that the joint warning of the US and British governments about router
malware was meant to serve as a warning to the Russians with the
message "We know where you are pre-positioned and if something
happens, we will know it is you."  According to officials, the Russian
efforts have been going on for at least 20 years, so the immediate
urgency of responding to the malware is unclear.  It may be a sort of
civilian cyber emergency drill.  We wonder if officials will check to
see how many people actually reboot or factory reset their routers in
response to the warning.

-----------------

Official Warning re Network Infrastructure Devices

Russian State-Sponsored Cyber Actors Targeting Network Infrastructure
    Devices
US-CERT, United States Computer Emergency Readiness Tream
https://www.us-cert.gov/ncas/alerts/TA18-106A
April 20, 2018

Summary:
The alert concerns vulnerabilities present in many router
devices, including inexpensive ones that would be used in homes or
small businesses, that are being exploited by malware.  The malware seems to
have come from Russia, and it is widespread.  It depends on a website
(reportedly shutdown prior to this alert), and the advice includes this
statement:
"... administrators should inspect the presence of protocol 47 traffic
flowing to or from unexpected addresses, or unexplained presence of
GRE tunnel creation, modification, or destruction in log files."

------------------------------------------------------------------------------

Please note: Cyber Security Reading Group is presently run by Aneesha Sethi and Andrea Margheri. The events run as part of this group are sponsored by Cyber Security Academy.
_______________________________________________
Cyber-reading mailing list
Cyber-reading at ecs.soton.ac.uk<mailto:Cyber-reading at ecs.soton.ac.uk>
http://mailman.ecs.soton.ac.uk/mailman/listinfo/cyber-reading

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ecs.soton.ac.uk/pipermail/cyber-reading/attachments/20180611/1c0fe064/attachment-0001.html 


More information about the Cyber-reading mailing list