Kaspersky Archives - Cyber Secure Forum | Forum Events Ltd
Posts Tagged :

Kaspersky

Olympic Destroyer malware returns

960 640 Stuart O'Brien

Researchers at Kaspersky Lab have revealed that the malware that caused crippling sabotage on networks during their year’s Winter Games in Pyeongchang, South Korea, has returned.

Olympic Destroyer caused digital havoc during the games, and while the activity seen by Kaspersky has not yet turned destructive, early indicators suggest similar activity and point to the same group behind both attacks.

This time, however, the group look to be targeting financial organisations in Russia, and worryingly, biological and chemical threat prevention laborites throughout Europe and the Ukraine.

Tactics include spearphishing emails that present themselves as coming from a college or acquaintance with a decoy document attached. The emails target specific groups associated with an event, with every document opened triggering a malicious micro allowing multiple scripts that enable access to the target computer to run in the background.

Researchers at Kaspersky noted that lures suggest that they were “probably prepared with the help of a native [Russian] speaker and not automated translation software,” along with ties to the Ukraine, too.

That said, during the Winter Games Destroyer planted several false flags that were meant to confuse and misdirect attribution, making it very difficult to determine the group behind the latest attacks.

In a post from the website, Kaspersky concluded: “The best thing we can do as researchers is to keep tracking threats like this. We will keep monitoring Olympic Destroyer and report on new discovered activities of this group.”

Kaspersky software dropped by Barclays

960 640 Stuart O'Brien

High street bank Barclays will no longer offer free Kaspersky antivirus software to its new customers after an official warning from cyber security chiefs, amidst fears that the Kremlin could potentially use the software to control and monitor user’s devices.

 290,000 new online bankers of Barclays who signed up within the last 12 months have been notified as a ‘precautionary measure’.

 “The UK government has been advised… to remove any Russian products from all highly sensitive systems classified as secret or above. We’ve made the precautionary decision to no longer offer Kaspersky software to new users. However, there’s nothing to suggest that customers need to stop using Kaspersky. At this stage there is no action for you to take. It’s important that you continue to protect yourself with anti-virus software,” said a spokesperson for Barclays.

 “Even though this new guidance isn’t directed at members of the public, we have taken the decision to withdraw the offer of Kaspersky software from our customer website,” added the bank.

 Kaspersky said it was ‘disappointed’ by the news.