Iran blamed for cyber onslaught

2013-01-10 14:39
Kaspersky Lab does analysis of malware threats at its offices in Moscow. (Duncan Alfreds, News24)

Kaspersky Lab does analysis of malware threats at its offices in Moscow. (Duncan Alfreds, News24)

Multimedia   ·   User Galleries   ·   News in Pictures Send us your pictures  ·  Send us your stories

San Francisco - US financial institutions are being pounded with high-powered cyber attacks that some suspect are being orchestrated by Iran as payback for political sanctions.

"There is no doubt within the US government that Iran is behind these attacks," James Lewis, a former official in the state and commerce departments and now a computer security expert at the Centre for Strategic and International Studies, told the New York Times.

While the identities of those behind the online onslaught officially remain a mystery, it was clear they were using a potent new weapon for slamming bank websites with overwhelming numbers or requests for information.

The attackers infected data centres used to host services in the internet "cloud" and commandeered massive computing power to back distributed denial of service (DDoS) attacks, according to security experts.

DDoS attacks have been a basic hacker weapon for quite some time, but they have typically involved using armies of personal computers tainted with viruses and co-ordinated to make simultaneous requests at targeted websites.

Responsibility


"They are essentially going from a pistol to a cannon," Radware vice president of security solutions Carl Herberger said of cyber attackers using data centres. "That was one major achievement."

The top 20 US banks on Wednesday were being hit with a third wave of attacks, each of which has been preceded by a claim of responsibility by a group calling itself Izz ad-Din al-Qassam Cyber Fighters.

The attacks began in September of 2012, according to Radware, which specialises in commercial computer security and has been investigating the cyber assaults.

"The landscape we are seeing is essentially a persistent industry sector attack that is unprecedented," Herberger said.

"There have been a number of lulls in cyber fighting, with waves concluded and re-launched."

Attackers have shrewdly tailored requests to target encrypted pages or data, which are more complicated to process and therefore tax websites more, according to Radware.

"The world of DDoS is about consuming resources fast; however you can get inside an encrypted algorithm you can multiply your effect," Herberger said. "It is a wonderful tool from a perpetrator's perspective."

Caution

Such requests are particularly nefarious because encrypted exchanges are often shielded from security software intended to guard against attacks.

It appeared that no money was taken in the attacks, but Herberger warned that the full extent of the damage had yet to be assessed.

He described how hackers sometimes use DDoS attacks to trigger fail systems that can sometimes allow invaders to get to data.

"I call it the battering ram effect," Herberger said. "They literally batter in the front door; that is a really dark side of this world."

Attacks on banks could also be test runs for assaults on other business sectors or even smart systems controlling vital infrastructure.

"Let's suppose this is state sponsored," Herberger proposed. "Could these not be dry runs? If the banks are permeable what is the likelihood that other systems are?"

John Bumgarner of the US Cyber Consequences Unit, a non-profit group that studies the impact of cyber threats, cautioned against rushing to assign blame for the attacks.

"These attackers are using the anonymity of the cyber space to mask who they are," Bumgarner said. "There is not irrefutable evidence that the Iranian government was responsible."
Read more on:    us  |  iran  |  cybercrime  |  iran nuclear programme
NEXT ON NEWS24X
SHARE:

Read News24’s Comments Policy

24.com publishes all comments posted on articles provided that they adhere to our Comments Policy. Should you wish to report a comment for editorial review, please do so by clicking the 'Report Comment' button to the right of each comment.

Comment on this story
5 comments
Add your comment
Comment 0 characters remaining
 

Inside News24

 
/News
 

Joburg hot spots for cocktails, craft beer, tapas and wine!

It’s the season to be jolly – so we’ve rounded up some new Joburg hot spots!

 
 

I love summer.24

Christmas lingerie to make this festive season the best one ever!
13 things you might not know about Disneyland
The craziest deaths of 2014
How to make this a sensual, sexy summer!

Jobs in Cape Town [change area]

Property [change area]

Travel - Look, Book, Go!

Kalahari.com - shop online today

2DAYS ONLY – 30% off Appliances

Coffee makers, blenders, fans, juicers and more. T&Cs apply. Shop now!

2 DAYS ONLY – 40% off books

Get 40% off when you buy 2 books. For two days only! T&Cs apply. Buy now!

Up to 50% off on outdoor gear

Save on chairs, blankets, cooler bags, umbrellas and more. Shop now!

Save on Samsung

Cameras, mobile phones, TVs, Tablets and more. While stocks last. Shop now!

Grand Theft Auto 5

Now available on PS4, Xbox One and PC from R649. Buy now!

OLX Free Classifieds [change area]

Samsung Galaxy s4

Mobile, Cell Phones in South Africa, Western Cape, Cape Town. Date October 24

Best bargain in big bay

Real Estate, Houses - Apartments for Sale in South Africa, Western Cape, Cape Town. Date October 25

VW Golf 6, 1.6 Trendline (Excellent condition)

Vehicles, Cars in South Africa, Western Cape, Cape Town. Date October 25

Horoscopes
Aquarius
Aquarius

There is so much going on around you and inside your head. You may want to take your ideas to the next level. Romance may be...read more

There are new stories on the homepage. Click here to see them.
 
English
Afrikaans
isiZulu

Hello 

Create Profile

Creating your profile will enable you to submit photos and stories to get published on News24.


Please provide a username for your profile page:

This username must be unique, cannot be edited and will be used in the URL to your profile page across the entire 24.com network.

Settings

Location Settings

News24 allows you to edit the display of certain components based on a location. If you wish to personalise the page based on your preferences, please select a location for each component and click "Submit" in order for the changes to take affect.








Facebook Sign-In

Hi News addict,

Join the News24 Community to be involved in breaking the news.

Log in with Facebook to comment and personalise news, weather and listings.