Law Enforcement Battles Cyber Threats

0

[ad_1]

The United States Department of Homeland Security has published the results of its investigation into the teenage hacker group known as Lapsus$.

The report by the cyber safety review board (CSRB) found that a lack of government funding constrains law enforcement agencies. It also states that underreporting incidents further inhibits efforts to clamp down on cybercrime.

The Teenage Hacker Group That Attempted to Extort Microsoft and Nvidia

LapsusS rose to notoriety with a string of cyberattacks throughout 2022. The group’s first known target was the Brazilian Health Ministry, which had its computer systems compromised in December 2021.

Throughout 2022, LapsusS attacked a number of large technology firms, including Microsoft, Nvidia, Samsung, and Uber. Their tactics involve gaining access to private servers and then extorting victims with the threat of publishing or deleting their data.

In the UK, the group has become something of a media sensation due to the young age of some of its alleged core members. 

As reported by the BBC at the time, seven teenagers were arrested under suspicion of being involved with the Lapsus$ hacks. Among them was the then 16-year-old Arion Kurtaj, who is alleged to be a leading figure within the group known by the pseudonym “White.”

In a trial that started last month, Kurtaj and an unnamed 17-year-old are accused of hacking systems belonging to Nvidia, Rockstar Games, Revolut, and Uber. 

Despite Arrests, Cybersecurity Efforts Remain Hamstrung, Says CSRB

In its assessment of the threat posed by Lapsus$ and associated groups, the CSRB found that:

“Law enforcement remains underfunded for resource- and data-intensive investigations and disruptions against the full breadth of cyber threat actors.”

It also noted that “chronic underreporting” of cyber incidents hampers the government’s ability to warn other targeted entities, recommend mitigation measures, and seize stolen or extorted cryptocurrency and fiat money.

Crypto Central to Cyber Extortion 

The CSRB report discusses cryptocurrency’s central role in cybercrimes such as the Lapsus$ hacks.

For example, it notes that hackers often demand ransom payments in crypto. Moreover, the darknet markets, where stolen data is typically sold, tend to utilize privacy coins for facilitating transactions.

However, the CSRB found no evidence that any of the firms targeted by Lapsus$ actually paid ransoms. The report adds that the FBI was unaware of Lapsus$ selling stolen data.

Considering this, the report typically presents Lapsus$ as a collective of crypto-savvy hackers.

For example, it references an attempt by Lapsus$ members to extort Nvidia into updating its firmware in a way that would benefit Bitcoin miners. The hackers also offered to sell information that would allow miners to bypass hash rate limits imposed by Nvidia directly.

Lapsus$ hacker group telegram channel chat Nvidia
Message in Lapsus$ Telegram channel (Source: Telegram)

Recommendations From the Lapsus$ Report 

As well as documenting Lapsus$ exploits, the CSRB makes a number of recommendations that could help prevent future hacks.

Many of these reiterate commonly acknowledged cybersecurity best practices. For example, the report suggests organizations transition toward passwordless verification and embrace more advanced multi-factor authentication techniques. 

It also recommends the US government take a more proactive role in developing national cyber resilience. For example, it suggests ways the government could incentivize the adoption of more secure systems and procedures.

Finally, the CSRB advocates for a “whole-of-society” approach to threat mitigation.

The report notes that the juvenile status of Lapsus$ members complicated efforts to disrupt attacks. It recommends funding cybercrime prevention programs for young people to address this challenge.

Disclaimer

In adherence to the Trust Project guidelines, BeInCrypto is committed to unbiased, transparent reporting. This news article aims to provide accurate, timely information. However, readers are advised to verify facts independently and consult with a professional before making any decisions based on this content.

[ad_2]

Source link

Leave A Reply

Your email address will not be published.

bitcoin
Bitcoin (BTC) $ 95,345.00
ethereum
Ethereum (ETH) $ 3,316.52
tether
Tether (USDT) $ 0.999625
bnb
BNB (BNB) $ 951.60
xrp
XRP (XRP) $ 2.07
usd-coin
USDC (USDC) $ 1.01
tron
TRON (TRX) $ 0.314898
staked-ether
Lido Staked Ether (STETH) $ 3,315.83
dogecoin
Dogecoin (DOGE) $ 0.138563
figure-heloc
Figure Heloc (FIGR_HELOC) $ 1.03
cardano
Cardano (ADA) $ 0.399796
wrapped-steth
Wrapped stETH (WSTETH) $ 4,061.10
whitebit
WhiteBIT Coin (WBT) $ 57.35
wrapped-beacon-eth
Wrapped Beacon ETH (WBETH) $ 3,606.54
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 95,112.00
bitcoin-cash
Bitcoin Cash (BCH) $ 594.14
monero
Monero (XMR) $ 623.17
wrapped-eeth
Wrapped eETH (WEETH) $ 3,600.24
chainlink
Chainlink (LINK) $ 13.78
usds
USDS (USDS) $ 0.999659
binance-bridged-usdt-bnb-smart-chain
Binance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
leo-token
LEO Token (LEO) $ 9.04
weth
WETH (WETH) $ 3,315.88
stellar
Stellar (XLM) $ 0.231978
coinbase-wrapped-btc
Coinbase Wrapped BTC (CBBTC) $ 95,379.00
sui
Sui (SUI) $ 1.80
zcash
Zcash (ZEC) $ 401.54
ethena-usde
Ethena USDe (USDE) $ 1.00
hyperliquid
Hyperliquid (HYPE) $ 25.44
avalanche-2
Avalanche (AVAX) $ 13.78
litecoin
Litecoin (LTC) $ 74.51
hedera-hashgraph
Hedera (HBAR) $ 0.118874
shiba-inu
Shiba Inu (SHIB) $ 0.000009
usdt0
USDT0 (USDT0) $ 0.999289
world-liberty-financial
World Liberty Financial (WLFI) $ 0.169723
canton-network
Canton (CC) $ 0.121574
dai
Dai (DAI) $ 0.999757
susds
sUSDS (SUSDS) $ 1.08
the-open-network
Toncoin (TON) $ 1.73
crypto-com-chain
Cronos (CRO) $ 0.102357
ethena-staked-usde
Ethena Staked USDe (SUSDE) $ 1.21
paypal-usd
PayPal USD (PYUSD) $ 0.999910
polkadot
Polkadot (DOT) $ 2.19
usd1-wlfi
USD1 (USD1) $ 0.998757
uniswap
Uniswap (UNI) $ 5.38
rain
Rain (RAIN) $ 0.009448
mantle
Mantle (MNT) $ 0.956590
memecore
MemeCore (M) $ 1.56
aave
Aave (AAVE) $ 175.07
bittensor
Bittensor (TAO) $ 276.12
Shares