Automatically translated.View original post

Detected hackers from Iran. Prepared to use the malware.

FBI warns! Hackers from Iran have been detected preparing to use malware to attack journalists around the world.

The recent Iranian war this year has been called a global impact, not even in the cybersecurity world, where Iranian hackers have been working on attacks against belligerent organizations and allied nations, and this has begun to spread to various journalists.

According to a report by NDTV World, the Federal Bureau of Investigation has mentioned that a group of hackers sponsored by the Iranian government is trying to attack Iranian journalists, journalism, and anti-government groups around the world through the Telegram chat application. In that attack, hackers will approach the victim by impersonating a Trusted Contact or a technical officer to trick the victim into pressing a link that claims to be a famous application like WhatsApp or Telegram. If the victim downloads it, it will lead to malware infection. It has the ability to steal the victim's machine data and take control of the victim's machine remotely. It also has the ability to smuggle screen records and record clips where the victim is using a video call. This malware is connected to a bot on Telegram's system that will be used as a command and receive stolen data. In addition, hiding on Telegram's system can disguise himself from being monitored by traffic.

The FBI has speculated that the hackers may have been sponsored by the Iranian Ministry of Intelligence and Security, and that the hackers may have been associated with another large group of hackers supporting the Iranian government, Handala. The group most recently attacked a major medical tool developer, Stryker, to the effect of thousands of employees' work devices.

# Trending # Lemon 8 Howtoo # lemon 8 diary # Iran # freedomhack

4/21 Edited to

... Read moreจากประสบการณ์ส่วนตัวด้านความปลอดภัยไซเบอร์ การโจมตีโดยแฮกเกอร์จากกลุ่มรัฐสนับสนุน เช่น กรณีจากอิหร่าน มักมีความซับซ้อนและปรับกลยุทธ์ให้หลบหลีกระบบป้องกันได้ดีขึ้นเรื่อยๆ โดยเฉพาะอย่างยิ่งการใช้แอปพลิเคชันยอดนิยมอย่าง Telegram เป็นฐานสั่งการ ทำให้การตรวจจับมัลแวร์และการโจมตีมีความยากลำบากขึ้นมาก เพราะการเชื่อมต่อและส่งข้อมูลจะซ่อนตัวอยู่ในทราฟฟิกของแอป Telegram ซึ่งได้รับการยอมรับว่าเป็นแอปที่มีความปลอดภัยสูงในระดับหนึ่ง แฮกเกอร์จะใช้กลวิธีเช่น การแอบอ้างเป็นคนรู้จักหรือเจ้าหน้าที่ฝ่ายเทคนิค เพื่อสร้างความไว้วางใจและล่อเหยื่อให้กดลิงก์ที่อันตราย ซึ่งเป็นบทเรียนสำคัญว่าเราควรตระหนักถึงการคลิกลิงก์จากคนที่ไม่รู้จัก หรือในกรณีที่ดูน่าสงสัย มัลแวร์ที่ถูกติดตั้งจะสามารถถ่ายภาพหน้าจอและบันทึกคลิปวิดีโอขณะเหยื่อใช้งานวิดีโอคอล ซึ่งถือเป็นการละเมิดความเป็นส่วนตัวอย่างร้ายแรง และยังทำให้ข้อมูลสำคัญหลุดออกไปยังกลุ่มแฮกเกอร์ เพื่อป้องกันตัวเอง แนะนำให้ติดตั้งแอปพลิเคชันจากแหล่งที่เชื่อถือได้เท่านั้น และตรวจสอบลิงก์ทุกครั้งก่อนคลิก นอกจากนี้ การอัปเดตระบบปฏิบัติการและแอปพลิเคชันอย่างสม่ำเสมอจะช่วยลดช่องโหว่ที่แฮกเกอร์อาจใช้โจมตี ในวงการข่าวสารและสื่อมวลชนที่ได้รับผลกระทบโดยตรง ปัจจุบันการใช้เครื่องมือด้านความปลอดภัย เพิ่มการตรวจสอบความผิดปกติของเครือข่ายและการสื่อสารภายในกลุ่มจึงเป็นสิ่งจำเป็นมากขึ้น สิ่งนี้ส่งสัญญาณเตือนสำคัญว่า ทุกคนในโลกออนไลน์ควรมีความตื่นตัวในการป้องกันภัยไซเบอร์อย่างจริงจัง เพื่อรักษาข้อมูลสำคัญและความเป็นส่วนตัวของตนเองให้อยู่รอดปลอดภัยในยุคดิจิทัล