Read The Times Australia

Daily Bulletin

Shadow Brokers promise release of more NSA hacks to be used against the world

  • Written by: David Glance, Director of UWA Centre for Software Practice, University of Western Australia
image

As if dealing with the continuing drama of the WannaCry global ransomware attack was not enough, the original group behind the leak of the US National Security Agency (NSA’s), hacking tools has announced it is going to release more tools that could be exploited in the near future.

The ShadowBrokers originally tried to auction the NSA hacking tools that they claimed were from the Equation Group, a hacker group tied to the NSA. After failing to get a bidder for the leaked files, the Shadow Brokers leaked in April 2017 a part of their horde, some of which was subsequently incorporated into the WannaCry ransomware.

In the Shadow Broker’s latest posting, they have threatened to release even more tools in June. Having failed to get anyone interested in an auction however, the group is starting up what they call something like the “wine of month club”. A subscription service where you get new exploits every month.

The exploits that the Shadow Brokers are threatening to pass on include vulnerabilities of browsers, mobile devices, Windows 10 and information about compromised banks and Russian, Chinese, Iranian and North Korean nuclear missile programs.

As a final offer, the Shadow Brokers have said that if someone buys the entire horde of data, they will “go dark permanently”, having no financial incentive to continue.

Although nobody knows who the Shadow Brokers are, various theories point to either a disgruntled insider or a group with ties to Russia. In another post the Shadow Brokers identify themselves as disappointed supporters of US President Donald Trump. The ideals espoused in the post celebrate all that they believed that Donald Trump stood for, “anti-globalism, anti-socialism, nationalism, isolationism” and racism.

Tellingly, the Shadow Brokers claimed its members to be originally all part of the “Deep State which lends credence to the fact that they may be disaffected insiders of the NSA itself.

In any event, it is likely that the exploits they have will find their way into the hands of groups who in turn will unleash them on the global public.

The only mitigating factor in this is that the NSA appears to have been informing companies about the different exploits and so allowing them to fix their products and issue updates to affected software and systems. It is likely that most, if not all of the outstanding exploits held by the Shadow Brokers have already been fixed by Microsoft, Google, Apple and others.

Despite the availability of fixes, the exploits that the Shadow Brokers still have could lead to even more damage on a global scale. The fact that the WannaCry attack has persisted as long as it has is an indication of the refusal of many people globally to update and protect their systems, despite the risks. Part of the blame for this has to be laid at the feet of people who have advised the public to switch off automatic software updates of their systems and do these manually, advice that has been condemned by cybersecurity experts.

Security is a balance of risk against cost and updates may seem like a painful ordeal, but the world is moving into an environment where this cost is nothing in comparison to the risks of doing nothing. Vendors do share part of the blame in not making these updates more seamless, but it may simply be impossible to do make updating completely transparent to users.

In assessing risk, the public, companies and government are not always in a position to make informed decisions. Experts are still trying to understand the threats themselves without having sufficient time to explain it in simple terms to the public. What has not helped has been the lack of response from governments and security agencies in all of this in comparison to the involvement of private security companies and individuals trying to battle the attack as it has unfolded.

When 22 year olds are the celebrated heroes of stemming the damage of a cyber attack rather than the agencies tasked to defend countries against these types of threat, it is perhaps time to question what these organisations have been doing over the past few days?

Authors: David Glance, Director of UWA Centre for Software Practice, University of Western Australia

Read more http://theconversation.com/shadow-brokers-promise-release-of-more-nsa-hacks-to-be-used-against-the-world-77831

Business News

The strategic rise of Bali as Australia’s next essential healthcare support hub

As Australian healthcare providers grapple with unprecedented operational bottlenecks, a new nearshore model is quietly transforming patient care delivery. Forward-thinking organisations,  including...

Daily Bulletin - avatar Daily Bulletin

Cost Savings and Benefits of Using Used Pallets in Logistics

In today’s competitive logistics and supply chain industry, businesses are constantly looking for ways to reduce operational costs without compromising efficiency and reliability. One of the most prac...

Daily Bulletin - avatar Daily Bulletin

How Fulfilment Services in Australia Help Businesses Scale Efficiently

The growth of e-commerce and modern retail has transformed customer expectations. Consumers now expect fast shipping, accurate order processing, and seamless delivery experiences regardless of where...

Daily Bulletin - avatar Daily Bulletin

Practical Ways Australian Workplaces Can Reduce Operating Costs

Reducing business costs doesn’t always mean cutting staff, shrinking services or making the workplace feel bare-bones. In many cases, the smarter savings are hiding in everyday operations: the light...

Daily Bulletin - avatar Daily Bulletin

Executive Recruitment Solutions That Help Organisations Secure Exceptional Leaders

Leadership has a direct impact on organisational performance, employee engagement, strategic growth, and long-term success. Businesses operating in increasingly competitive environments require experi...

Daily Bulletin - avatar Daily Bulletin

Why A WooCommerce Website Designer Matters For Online Growth

Running an online store today requires more than simply listing products and waiting for customers to arrive. Businesses need a website that is fast, reliable, easy to navigate, and designed to suppor...

Daily Bulletin - avatar Daily Bulletin

Turning Your Empty Tables into Revenue

The rise of AI demand tools in hospitality, the EatClub–CommBank partnership, and seven trends reshaping Australian dining  A growing number of Australian venues are turning to AI-powered demand mana...

Daily Bulletin - avatar Daily Bulletin

High-Impact Dental Marketing Strategies That Are Driving Real Practice Growth Today

The landscape of dental practice growth in Australia has shifted dramatically over recent years. Standard, broad-spectrum advertising campaigns no longer yield the return on investment they once did. ...

Daily Bulletin - avatar Daily Bulletin

How Telematics Helps Australian Companies Improve Productivity

Operating a commercial fleet in Australia is a uniquely demanding endeavour. Between the sprawling urban sprawl of cities like Sydney and Melbourne and the immense, unforgiving stretches of the Outb...

Daily Bulletin - avatar Daily Bulletin

The Daily Magazine

Lighting Shop in Perth: How The Right Lighting Can Transform Your Home And Business

The right lighting can completely change the look, feel, and functionality of any space. Whether it ...

Traffic Light System Solutions For Safer And More Efficient Traffic Management

Modern cities and growing communities rely heavily on effective traffic management to ensure safety...

Gold Migration Lawyers in Liquidation: How the Closure Affects Your ART Appeal

If your appeal was with Gold Migration Lawyers, a recent change to how the Tribunal decides cases ...

The pressure cooker: life in urban Australia in 2026

Australian cities have always been demanding. Long commutes, rising housing costs, busy schedules a...

What Actually Makes a Good Criminal Lawyer in Melbourne

Most people only think about this question once. That is usually too late. Most people charged wi...

Why Working With A Chatswood Tutor Can Improve Academic Performance

Academic expectations continue increasing for students across primary school, high school, and senio...

Is It Worth Getting Solar Panels in Melbourne?

The real question is not whether solar works in Melbourne. It works. The question is what it is co...

How A Diploma Of Project Management Builds Practical Skills For Modern Work Environments

Developing the ability to plan, execute, and deliver outcomes efficiently is a key requirement in to...

How to Choose the Right Football for Every Level

Choosing a football may seem straightforward, but the right option depends on who will be using it a...