A U.S. court has granted Microsoft the authority to seize domain names in order to take down a phishing campaign run by a notorious group of Iranian hackers.
In a poston Microsoft’s official blog, Customer Security & Trust VP Tom Burt shared details from the now unsealed caseit filed in the U.S. District Court for Washington D.C against the hacker group called Phosphorus. The group is also known under the names APT 35, Charming Kitten, and Ajax Security Team.
Microsoft’s Digital Crimes Unit was allowed to take control of 99 domains in order to stop the hackers’ attacks. Domains such as outlook-verify.net, yahoo-verify.net, and verification-live.com were being used in spear-phishing campaigns by the Iranian hackers.
Spear-phishing is a method of attack that relies on social engineering, where a hacker tricks an individual or group into believing that they are a trusted source through an email or web address. The hacker then uses that trust to obtain passwords or other sensitive information from their target.
Phosphorus targeted U.S. businesses and government agencies as well as activists and journalists. As Techcrunchpoints out, former U.S. Air Force intelligence officer turned spy Monica Witt reportedly has connections to the hacker group. Witt defected to Iran and is currently a fugitive wanted by the FBI for alleged espionage. It is believedthat Witt provided the Iranian hackers with intelligence regarding U.S. officials and her former colleagues. Using this information, the hackers can more accurately pinpoint their spear-phishing campaigns against certain individuals.
According to Microsoft, Phosphorus would send a link containing malicious software under the guise of a friendly source, sometimes even posing as a target’s contact on social media. The hackers would be able to use that software to access the victim’s computer. The group also deployed another attack using the now Microsoft-controlled domain names to trick its targets into thinking there was a security risk flagged on their Outlook or Yahoo account. Upon clicking on the phishing link, the target would be prompted to login to their account, effectively providing their password to the hackers.
This isn’t the first time a U.S. court granted Microsoft the authority to take control of domain names connected to phishing campaigns. Last year, a federal court injunction allowed Microsoft to seize domains deployed by hackers that infringe on the company’s trademarks. Microsoft used that authorityto terminate spear-phishing campaigns set up my the Russian hacker group known as Fancy Bear, which was targeting U.S. politicians, Congressional staffers, and think tanks.
Copyright © 2023 Powered by
Microsoft gains control of domains used by Iranian hackers linked to U.S. fugitive-寸地尺天网
sitemap
文章
57
浏览
52154
获赞
5183
Holocaust denial is now banned on Facebook
Facebook is expanding its recent crackdown on dangerous conspiracy theories to include Holocaust denHow to create folders (aka labels) in Gmail
Google's email service Gmail lets you organize your inbox as much or little as you want. You can letApple Watch 7 might have a bigger battery, report claims
Quick, Apple Watch owners: Name the biggest flaw of your smartwatch! I bet you answered battery lifeTikTok's new privacy features make teens think about their decisions
TikTok has revealed new privacy settings for teens, aiming to protect them from predatory DM slidesiPhone users can use Live View in Google Maps to better share locations
Augmented reality in Google Maps brings digital arrows, pins, and markers right in front of you as yThe DeFi hacker who stole $600 million in crypto is... giving it back?
Well that was unexpected. The hacker responsible for one of the largest cryptocurrency thefts in hisJohn Lewis mourners push back against hypocritical GOP remembrances
As the nation mourns the loss of Representative John Lewis (D-GA), a lifelong civil rights advocateFacebook adds end
With video calls taking hold as a major part of our lives during a way-too-long pandemic, Facebook iTikTok will reportedly sell to Oracle after Microsoft bid rejected
Oracle has beat out Microsoft to win the bid for TikTok's U.S. operations, according to a report byApple's mixed reality headset might require an iPhone to work
Apple is coming for Facebook's Oculus and Snapchat's Spectacles with a mixed reality headset of itsApple postpones return to office until 2022
Apple has postponed the mandatory return to office until 2022 at the earliest. In an internal memo sTeachers are doing their best to make socially distanced classrooms less scary
A new school year is starting soon, and the coronavirus is forcing teachers to get extra creative wiBarack Obama speaks out against online cancel culture
Next time you feel the urge to call someone out on social media, maybe stop and think about Barack OHow to turn off read receipts on your iPhone, you old
Who among us has not at some point in time been shaken to their cores by the sheer sight of a read rHow to reset your Apple Watch
Whether you're selling an Apple Watch, giving it away, or trading it in for a newer model, you'll wa