Read The Times Australia

Daily Bulletin

Shadow Brokers promise release of more NSA hacks to be used against the world

  • Written by: David Glance, Director of UWA Centre for Software Practice, University of Western Australia
image

As if dealing with the continuing drama of the WannaCry global ransomware attack was not enough, the original group behind the leak of the US National Security Agency (NSA’s), hacking tools has announced it is going to release more tools that could be exploited in the near future.

The ShadowBrokers originally tried to auction the NSA hacking tools that they claimed were from the Equation Group, a hacker group tied to the NSA. After failing to get a bidder for the leaked files, the Shadow Brokers leaked in April 2017 a part of their horde, some of which was subsequently incorporated into the WannaCry ransomware.

In the Shadow Broker’s latest posting, they have threatened to release even more tools in June. Having failed to get anyone interested in an auction however, the group is starting up what they call something like the “wine of month club”. A subscription service where you get new exploits every month.

The exploits that the Shadow Brokers are threatening to pass on include vulnerabilities of browsers, mobile devices, Windows 10 and information about compromised banks and Russian, Chinese, Iranian and North Korean nuclear missile programs.

As a final offer, the Shadow Brokers have said that if someone buys the entire horde of data, they will “go dark permanently”, having no financial incentive to continue.

Although nobody knows who the Shadow Brokers are, various theories point to either a disgruntled insider or a group with ties to Russia. In another post the Shadow Brokers identify themselves as disappointed supporters of US President Donald Trump. The ideals espoused in the post celebrate all that they believed that Donald Trump stood for, “anti-globalism, anti-socialism, nationalism, isolationism” and racism.

Tellingly, the Shadow Brokers claimed its members to be originally all part of the “Deep State which lends credence to the fact that they may be disaffected insiders of the NSA itself.

In any event, it is likely that the exploits they have will find their way into the hands of groups who in turn will unleash them on the global public.

The only mitigating factor in this is that the NSA appears to have been informing companies about the different exploits and so allowing them to fix their products and issue updates to affected software and systems. It is likely that most, if not all of the outstanding exploits held by the Shadow Brokers have already been fixed by Microsoft, Google, Apple and others.

Despite the availability of fixes, the exploits that the Shadow Brokers still have could lead to even more damage on a global scale. The fact that the WannaCry attack has persisted as long as it has is an indication of the refusal of many people globally to update and protect their systems, despite the risks. Part of the blame for this has to be laid at the feet of people who have advised the public to switch off automatic software updates of their systems and do these manually, advice that has been condemned by cybersecurity experts.

Security is a balance of risk against cost and updates may seem like a painful ordeal, but the world is moving into an environment where this cost is nothing in comparison to the risks of doing nothing. Vendors do share part of the blame in not making these updates more seamless, but it may simply be impossible to do make updating completely transparent to users.

In assessing risk, the public, companies and government are not always in a position to make informed decisions. Experts are still trying to understand the threats themselves without having sufficient time to explain it in simple terms to the public. What has not helped has been the lack of response from governments and security agencies in all of this in comparison to the involvement of private security companies and individuals trying to battle the attack as it has unfolded.

When 22 year olds are the celebrated heroes of stemming the damage of a cyber attack rather than the agencies tasked to defend countries against these types of threat, it is perhaps time to question what these organisations have been doing over the past few days?

Authors: David Glance, Director of UWA Centre for Software Practice, University of Western Australia

Read more http://theconversation.com/shadow-brokers-promise-release-of-more-nsa-hacks-to-be-used-against-the-world-77831

Business News

How Australian Businesses Can Measure SEO ROI

SEO can feel vague when you are staring at a dashboard full of numbers that do not clearly connect to revenue. The key is to measure the right signals in the right order, then tie them back to outcome...

Daily Bulletin - avatar Daily Bulletin

How Commercial Roller Shutters Improve Site Security Without Slowing Operations

Security upgrades can be frustrating when they make everyday work harder. A door that takes too long to open, creates bottlenecks at shift change, or fails at the worst time can turn “better protectio...

Daily Bulletin - avatar Daily Bulletin

Why a Document Destruction Service Still Matters for Modern Businesses

Businesses generate large volumes of information every day, from staff records and contracts to invoices, reports and customer files. While attention often focuses on how documents are stored, the way...

Daily Bulletin - avatar Daily Bulletin

Bicycle Rack Safety and Space-Smart Storage

Bike storage problems usually show up as small annoyances first: tangled handlebars, scratched frames, and bikes that topple when you pull one out. Over time, those issues become safety risks, especia...

Daily Bulletin - avatar Daily Bulletin

How to Tell if a Childcare Centre Is a Good Fit for Your Child

Choosing childcare can feel like you’re making a huge decision with limited information. Tours are short, centres are often on their best behaviour, and your child might act differently in a new space...

Daily Bulletin - avatar Daily Bulletin

Car Import Timeline: What Usually Happens at Each Stage

Importing a car into Australia can feel confusing because multiple agencies and checkpoints are involved, and the timeline is shaped as much by paperwork quality as it is by shipping speed. The most u...

Daily Bulletin - avatar Daily Bulletin

Portable Toilet Hygiene Standards Explained: Clean vs Sanitised vs Disinfected

In portable toilet servicing, the words clean, sanitised, and disinfected often get used as if they mean the same thing. They don’t. And that difference matters because a unit can look tidy and still ...

Daily Bulletin - avatar Daily Bulletin

Options Available When a Company Faces Financial Distress

Financial distress can develop gradually or arrive suddenly, and when it does, the decisions made in the early stages often determine what options remain available later. Directors who act promptly ...

Daily Bulletin - avatar Daily Bulletin

What Healthcare Teams Look for When Choosing Specialist Surgical Supplies

In clinical environments, small details rarely stay small. A delayed instrument, a poorly matched device or inconsistent supply quality can affect theatre flow, staff confidence and patient outcomes. ...

Daily Bulletin - avatar Daily Bulletin

The Daily Magazine

How to Choose the Right Football for Every Level

Choosing a football may seem straightforward, but the right option depends on who will be using it a...

What to Ask a Wedding Photographer Before You Book

Booking a wedding photographer can feel deceptively simple: you like the photos, you like the vibe...

Why Stress Relief For Dogs Is Essential For Emotional Balance And Long-Term Wellbeing

Managing emotional health is just as important as physical care when it comes to pets, which is why ...

Australia’s Best Walking Trails and the Shoes You Need to Tackle Them

Australia is not short on spectacular walks. You can follow ocean cliffs in Victoria, cross ancien...

Why Pre-Purchase Building Inspections Are Essential Before Buying a Home in Australia

source Have you ever walked through an open home and started picturing your furniture, family d...

5 Signs Your Car Needs Immediate Attention Before It Breaks Down

Car problems rarely appear without warning. In most cases, your vehicle gives clear signals before...

Ensuring Safety and Efficiency with Professional Electrical Solutions

For businesses in Newcastle, a safe and fully functioning workplace remains a key part of day-to-d...

Choosing The Right Bin Hire Solution For Hassle-Free Waste Management

When it comes to managing waste efficiently, finding the right solution can save both time and eff...

Why Cleanliness Is Critical In Childcare Environments

Children explore the world with curiosity, often touching surfaces, sharing toys, and interacting ...