FBI may have disrupted major cyber attack on Ukraine

Updated 24 May 2018
Follow

FBI may have disrupted major cyber attack on Ukraine

  • Ukraine has been locked in a years-long struggle with Russia-backed separatists in the country’s east and has repeatedly been hit by cyberattacks of escalating severity. Last year witnessed the eruption of the NotPetya worm, which crippled critical system
  • Network technology company Cisco Systems and antivirus company Symantec have warned that a half-million Internet-connected routers had been compromised in a possible effort to lay the groundwork for a cyber-sabotage operation against targets in Ukraine.

LONDON: The FBI has put a spoke in the wheel of a major Russian digital disruption operation potentially aimed at causing havoc in Ukraine, evidence pieced together from researchers, Ukrainian officials and US court documents indicates.
On Wednesday, network technology company Cisco Systems and antivirus company Symantec warned that a half-million Internet-connected routers had been compromised in a possible effort to lay the groundwork for a cyber-sabotage operation against targets in Ukraine.
Court documents simultaneously unsealed in Pittsburgh the same day show the FBI has seized a key website communicating with the massive army of hijacked devices, disrupting what could have been — and might still be — an ambitious cyber attack by the Russian government-aligned hacking group widely known as Fancy Bear.
“I hope it catches the actors off guard and leads to the downfall of their network,” said Craig Williams, the director of outreach for Talos, the digital threat intelligence unit of Cisco that cooperated with the bureau. But he warned that the hackers could still regain control of the infected routers if they possessed their addresses and the right resources to re-establish command and control.
FBI Assistant Director Scott Smith said the agency “has taken a critical step in minimizing the impact of the malware attack. While this is an important first step, the FBI’s work is not done.”
Much about the hackers’ motives remains open to conjecture. Cisco said the malicious software, which it and Symantec both dubbed VPNFilter after a folder it creates, was sitting on more than 500,000 routers in 54 countries but mostly in Ukraine, and had the capacity to render them unusable — a massively disruptive move if carried out at such a scale.
“It could be a significant threat to users around the world,” said Williams.
The US Justice Department said the malware “could be used for a variety of malicious purposes, including intelligence gathering, theft of valuable information, destructive or disruptive attacks, and the mizattribution of such activities.”
Ukraine’s cyberpolice said in a statement that it was possible the hackers planned to strike during “large-scale events,” an apparent reference either to the upcoming Champions League game between Real Madrid and Liverpool in the capital, Kiev, on Saturday or to Ukraine’s upcoming Constitution Day celebrations.
Ukraine has been locked in a years-long struggle with Russia-backed separatists in the country’s east and has repeatedly been hit by cyberattacks of escalating severity. Last year witnessed the eruption of the NotPetya worm, which crippled critical systems, including hospitals , across the country and dealt hundreds of millions of dollars in collateral damage around the globe. Ukraine, the United States and Britain have blamed the attack on Moscow — a charge the Kremlin has denied.
Cisco and Symantec both steered clear of attributing the VPNFilter malware to any particular actor, but an FBI affidavit explicitly attributed it to Fancy Bear, the same group that hacked into the Democratic National Committee in 2016 and has been linked to a long series of digital intrusions stretching back more than a decade. The US intelligence community assesses that Fancy Bear acts on behalf of Russia’s military intelligence service.
An FBI affidavit — whose existence was first reported by The Daily Beast — said the hackers used lines of code hidden in the metadata of online photo albums to communicate with their network of seeded routers. If the photo albums disappeared, the hackers turned to a fallback website — the same site whose seizure the FBI ordered Tuesday.
An email sent to the website’s registered owner was returned as undeliverable.
When asked why the FBI specifically named Fancy Bear where Cisco did not, Williams noted that while attribution was extremely tricky based on malware analysis alone, “if you combine that knowledge with a traditional intelligence apparatus interesting things can come to light.”
In any case, he said, “we have a high degree of confidence that the actor behind this is acting against the Ukraine’s best interest.”
Cisco said in a research note that the malware affected devices geared for small and home offices from manufacturers including Netgear, TP-Link and Linksys and had the potential to disable “Internet access for hundreds of thousands of victims worldwide or in a focused region.”
The malware’s principal capabilities, the company said, included stealthy intelligence-collecting, monitoring industrial-control software and, if triggered, “bricking” or disabling routers. It also persists on the infected routers after they are rebooted.
 


Bangladesh’s Hindu minority in fear as attacks rise and a national election nears

Updated 2 sec ago
Follow

Bangladesh’s Hindu minority in fear as attacks rise and a national election nears

  • Among Hindus, fear has grown more pervasive as the Muslim-majority nation moves toward a national election
  • Attacks on Hindus in Bangladesh have also inflamed tensions with neighboring India
DHAKA: Dipu Chandra Das, a 27-year-old Hindu garment worker, was accused in December by several Muslim colleagues of making derogatory remarks about the Prophet Muhammad. The accusations drew a violent mob to his workplace. He was beaten to death, his body hung from a tree and set on fire.
Across Bangladesh, Hindus watched the recorded images on their phones with dread. Protests erupted in Dhaka and other cities, with demonstrators demanding justice and greater protections. The interim government, led by Muhammad Yunus, ordered an investigation, and police said that about a dozen people were arrested.
But human rights groups and Hindu leaders say the killing wasn’t an isolated act, but part of a wider surge in attacks on the minority community, fueled by rising polarization, the reemergence of Islamists and what they describe as a growing culture of impunity. Among Hindus, fear has grown more pervasive as the Muslim-majority nation moves toward a national election on Feb. 12.
“No one feels safe anymore,” said Ranjan Karmaker, a Dhaka-based Hindu human rights activist. “Everyone is terrified.”
Surge in attacks
Hindus make up a small minority in Bangladesh, about 13.1 million people, or roughly 8 percent of the country’s population of 170 million, while Muslims make up 91 percent.
The Bangladesh Hindu Buddhist Christian Unity Council, an umbrella group representing minority communities, says it documented more than 2,000 incidents of communal violence since the ouster of former Prime Minister Sheikh Hasina in a mass uprising in August 2024.
The group recorded at least 61 killings, 28 instances of violence against women — among them rape and gang rape — and 95 attacks on places of worship involving vandalism, looting and arson. It has also accused the Yunus-led administration of routinely dismissing or downplaying reports of such violence.
When contacted by The Associated Press for a response, an official from Yunus’ press team declined to comment. The administration headed by Yunus has consistently denied claims that it has failed to ensure adequate protection for minority communities and insisted that most incidents aren’t driven by religious hostility.
Previous elections in Bangladesh have also seen increases in violence, with religious minorities often bearing the brunt. But with Hasina’s Awami League party barred from contesting elections and with her living in exile in India, many Hindus fear the worst as they have long been viewed as aligned with Hasina.
Karmaker, the rights activist, said that Hindus are often perceived as voting en masse for one side, a perception that heightens their vulnerability. He said that the community was also gripped by fear because of a culture of impunity, and near-weekly incidents, warning that in some parts of the country the Hindu community was facing “an existential crisis.”
“The individuals involved in this violence are not being brought under the law, nor are they being held accountable through the justice system. It creates the impression that the violence will continue,” Karmaker said.
Islamists reclaim influence
The surge in attacks against Hindus has unfolded alongside the reemergence of Jamaat-e-Islami, Bangladesh’s largest Islamist party, and its student wing. After years on the political sidelines because of bans, arrests and sustained crackdowns under Hasina’s government, the party sees the election as an opportunity to reclaim influence.
Jamaat-e-Islami anchors a broader Islamist alliance of 11 parties, among them the student-led National Citizen Party, or NCP, whose leaders played a central role in the 2024 uprising.
As concerns grow over what its return could mean for religious minorities, Jamaat-e-Islami has moved to recast its public image, even though it advocates Shariah, or Islamic law. It has organized public rallies featuring Hindu participants and nominated a Hindu community leader as one of its candidates.
Meanwhile, NCP has pledged to support citizens facing religious discrimination and said that if elected, it would establish a dedicated unit within the Human Rights Commission to protect minority rights.
Political analyst Altaf Parvez said that such decisions were largely symbolic. He said that other political parties, including the Bangladesh Nationalist Party, had also failed minorities by nominating only a handful of candidates — a move, he said, that didn’t reflect a genuine political commitment to inclusive politics.
Parvez said a systematic pattern of attacks was taking place in rural areas to inject more fear among the minorities before the vote.
“It will impact the participation of the voters from the minority communities in the next elections too,” he said.
Tensions rise with India
Attacks on Hindus in Bangladesh have also inflamed tensions with neighboring India, prompting protests by Hindu nationalist groups and criticism from Indian Prime Minister Narendra Modi’s government.
India’s Foreign Ministry recently accused Bangladesh of downplaying a “disturbing pattern of recurring attacks” on Hindus, saying such violence was wrongly blamed on personal or political disputes. Bangladesh, in turn, described India’s criticism as “systematic attempts” to stoke anti-Bangladesh sentiments.
The dispute has spilled into diplomacy and sporting events. Both sides have suspended some visa services and accused each other of failing to protect diplomatic missions. Protests in India led cricket officials to bar a Bangladeshi player from the Indian Premier League tournament, followed by Bangladesh’s boycott of this month’s World Cup in India.
Sreeradha Datta, a Bangladesh expert at India’s Jindal School of International Affairs, said that India’s concerns were “legitimate.”
“Hindus in Bangladesh are a very vulnerable group that can’t defend themselves, and Yunus’ administration is in exit mode and deliberately looking the other way,” she said.
Families demand justice
For those caught in the violence, the losses have been deeply personal.
When word of Das’ killing reached his home village in Bangladesh’s Mymensingh district, disbelief settled in among relatives and neighbors. Many said they watched images of his killing on their phones.
“When people say they saw it on their phones, my chest feels like it is going to burst,” his father said.
Das was known as a quiet, well-behaved man. He was also the sole breadwinner for his family, relatives said, and his death has left his wife and mother facing an uncertain future.
His mother, Shefali Rani Das, said the family is seeking justice for the killing.
“They beat him, hung him from a tree, and burned him. I demand justice,” she said.